diff options
author | Khairul Rohaizzat Jamaluddin <khairul.rohaizzat.jamaluddin@intel.com> | 2021-01-07 16:51:05 +0800 |
---|---|---|
committer | Anuj Mittal <anuj.mittal@intel.com> | 2021-01-14 10:46:18 +0800 |
commit | f1a0ea55c0ae2cce7f7c3c6c73f57c5b8222c860 (patch) | |
tree | ed29af72839b318db9f2838fb4122c3aff621298 /meta/lib | |
parent | d850874e865f2cb2417d520820c3c5288cae38c5 (diff) | |
download | openembedded-core-contrib-f1a0ea55c0ae2cce7f7c3c6c73f57c5b8222c860.tar.gz |
curl: Fix CVE-2020-8284, CVE-2020-8285, CVE-2020-8286
Backport the CVE patches from upstream
https://github.com/curl/curl/commit/ec9cc725d598ac
https://github.com/curl/curl/commit/a95a6ce6b809693a1195e3b4347a6cfa0fbc2ee7
https://github.com/curl/curl/commit/69a358f2186e04
https://github.com/curl/curl/commit/d9d01672785b.patch
0002-remove-void-protop-create-union-p.patch is added because the CVE-2020-8285 fix is
dependent on it.
CVE:
CVE-2020-8284
CVE-2020-8285
CVE-2020-8286
Signed-off-by: Khairul Rohaizzat Jamaluddin <khairul.rohaizzat.jamaluddin@intel.com>
Signed-off-by: Anuj Mittal <anuj.mittal@intel.com>
Diffstat (limited to 'meta/lib')
0 files changed, 0 insertions, 0 deletions