diff options
author | Catalin Popeanga <Catalin.Popeanga@enea.com> | 2014-10-09 14:24:29 +0200 |
---|---|---|
committer | Paul Eggleton <paul.eggleton@linux.intel.com> | 2014-10-12 21:24:36 +0100 |
commit | bdfe1e3770aeee9a1a7c65d4834f1a99820d3140 (patch) | |
tree | 54370e45086ad8b78c8ddaa1650e1da7f5bd6ddb /meta/recipes-extended/bash/bash_4.2.bb | |
parent | af1f65b57dbfcaf5fc7c254dce80ac55f3a632cb (diff) | |
download | openembedded-core-contrib-bdfe1e3770aeee9a1a7c65d4834f1a99820d3140.tar.gz |
bash: Fix for CVE-2014-7186 and CVE-2014-7187
This is a followup patch to incomplete CVE-2014-6271 fix code execution via
specially-crafted environment
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-7186
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-7187
(From OE-Core daisy rev: 153d1125659df9e5c09e35a58bd51be184cb13c1)
Signed-off-by: Sona Sarmadi <sona.sarmadi@enea.com>
Signed-off-by: Paul Eggleton <paul.eggleton@linux.intel.com>
Diffstat (limited to 'meta/recipes-extended/bash/bash_4.2.bb')
-rw-r--r-- | meta/recipes-extended/bash/bash_4.2.bb | 1 |
1 files changed, 1 insertions, 0 deletions
diff --git a/meta/recipes-extended/bash/bash_4.2.bb b/meta/recipes-extended/bash/bash_4.2.bb index 72222590ad..ae63ad3745 100644 --- a/meta/recipes-extended/bash/bash_4.2.bb +++ b/meta/recipes-extended/bash/bash_4.2.bb @@ -24,6 +24,7 @@ SRC_URI = "${GNU_MIRROR}/bash/${BPN}-${PV}.tar.gz;name=tarball \ file://cve-2014-6271.patch;striplevel=0 \ file://cve-2014-7169.patch \ file://Fix-for-bash-exported-function-namespace-change.patch;striplevel=0 \ + file://cve-2014-7186_cve-2014-7187.patch;striplevel=0 \ file://run-ptest \ " |