diff options
author | Lee Chee Yang <chee.yang.lee@intel.com> | 2020-08-07 17:45:19 +0800 |
---|---|---|
committer | Steve Sakoman <steve@sakoman.com> | 2020-08-07 04:03:47 -1000 |
commit | c19c4ef4efeebe4df03c06a995a60d1a31c605d8 (patch) | |
tree | 304d34aafad769b20bf5b6b9581becfe01310f25 /meta | |
parent | d4662adbb34d8c4a23fe7f111c2c991b1aedeaef (diff) | |
download | openembedded-core-contrib-c19c4ef4efeebe4df03c06a995a60d1a31c605d8.tar.gz |
webkitgtk: fix CVE-2020-13753
Signed-off-by: Lee Chee Yang <chee.yang.lee@intel.com>
Signed-off-by: Steve Sakoman <steve@sakoman.com>
Diffstat (limited to 'meta')
-rw-r--r-- | meta/recipes-sato/webkit/webkitgtk/CVE-2020-13753.patch | 15 | ||||
-rw-r--r-- | meta/recipes-sato/webkit/webkitgtk_2.28.2.bb | 1 |
2 files changed, 16 insertions, 0 deletions
diff --git a/meta/recipes-sato/webkit/webkitgtk/CVE-2020-13753.patch b/meta/recipes-sato/webkit/webkitgtk/CVE-2020-13753.patch new file mode 100644 index 0000000000..d8504c2b36 --- /dev/null +++ b/meta/recipes-sato/webkit/webkitgtk/CVE-2020-13753.patch @@ -0,0 +1,15 @@ +Upstream-Status: Backport [https://trac.webkit.org/changeset/262368/webkit?format=diff&new=262368] +CVE: CVE-2020-13753 +Signed-off-by: Chee Yang Lee <chee.yang.lee@intel.com> + +Index: a/Source/WebKit/UIProcess/Launcher/glib/BubblewrapLauncher.cpp +=================================================================== +--- a/Source/WebKit/UIProcess/Launcher/glib/BubblewrapLauncher.cpp (revision 262367) ++++ b/Source/WebKit/UIProcess/Launcher/glib/BubblewrapLauncher.cpp (revision 262368) +@@ -642,5 +642,5 @@ + int r; + if (rule.arg) +- r = seccomp_rule_add(seccomp, SCMP_ACT_ERRNO(EPERM), scall, 1, rule.arg); ++ r = seccomp_rule_add(seccomp, SCMP_ACT_ERRNO(EPERM), scall, 1, *rule.arg); + else + r = seccomp_rule_add(seccomp, SCMP_ACT_ERRNO(EPERM), scall, 0); diff --git a/meta/recipes-sato/webkit/webkitgtk_2.28.2.bb b/meta/recipes-sato/webkit/webkitgtk_2.28.2.bb index 288c715cc3..9cfec83ec7 100644 --- a/meta/recipes-sato/webkit/webkitgtk_2.28.2.bb +++ b/meta/recipes-sato/webkit/webkitgtk_2.28.2.bb @@ -19,6 +19,7 @@ SRC_URI = "https://www.webkitgtk.org/releases/${BPN}-${PV}.tar.xz \ file://cross-compile.patch \ file://0001-Fix-build-with-musl.patch \ file://include_array.patch \ + file://CVE-2020-13753.patch \ " SRC_URI[md5sum] = "ec0ef870ca37e3a5ebbead2f268a28ec" SRC_URI[sha256sum] = "b9d23525cfd8d22c37b5d964a9fe9a8ce7583042a2f8d3922e71e6bbc68c30bd" |