diff options
author | Stefan Agner <stefan.agner@toradex.com> | 2017-12-19 22:26:36 +0100 |
---|---|---|
committer | Richard Purdie <richard.purdie@linuxfoundation.org> | 2018-01-06 10:13:54 +0000 |
commit | 2b2d6b6c1bbd1d7844b9ab658c6486752476cd88 (patch) | |
tree | e29dcad3afcb26aac61b03676ca88f55bb8122bf /meta/recipes-connectivity/openssl/openssl-1.0.2m/debian/no-rpath.patch | |
parent | 64390f742bea1137ef56a55dbea81e99adf35b64 (diff) | |
download | poky-2b2d6b6c1bbd1d7844b9ab658c6486752476cd88.tar.gz |
openssl10: Upgrade 1.0.2l -> 1.0.2m
Deals with two CVEs:
* bn_sqrx8x_internal carry bug on x86_64 (CVE-2017-3736)
* Malformed X.509 IPAddressFamily could cause OOB read (CVE-2017-3735)
(From OE-Core rev: 7767625370b106bd493fdd5264181a7159e5c300)
Signed-off-by: Stefan Agner <stefan.agner@toradex.com>
Acked-by: Otavio Salvador <otavio@ossystems.com.br>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
Diffstat (limited to 'meta/recipes-connectivity/openssl/openssl-1.0.2m/debian/no-rpath.patch')
-rw-r--r-- | meta/recipes-connectivity/openssl/openssl-1.0.2m/debian/no-rpath.patch | 15 |
1 files changed, 15 insertions, 0 deletions
diff --git a/meta/recipes-connectivity/openssl/openssl-1.0.2m/debian/no-rpath.patch b/meta/recipes-connectivity/openssl/openssl-1.0.2m/debian/no-rpath.patch new file mode 100644 index 0000000000..1ccb3b86ee --- /dev/null +++ b/meta/recipes-connectivity/openssl/openssl-1.0.2m/debian/no-rpath.patch | |||
@@ -0,0 +1,15 @@ | |||
1 | Upstream-Status: Backport [debian] | ||
2 | |||
3 | Index: openssl-1.0.0c/Makefile.shared | ||
4 | =================================================================== | ||
5 | --- openssl-1.0.0c.orig/Makefile.shared 2010-08-21 13:36:49.000000000 +0200 | ||
6 | +++ openssl-1.0.0c/Makefile.shared 2010-12-12 16:13:36.000000000 +0100 | ||
7 | @@ -153,7 +153,7 @@ | ||
8 | NOALLSYMSFLAGS='-Wl,--no-whole-archive'; \ | ||
9 | SHAREDFLAGS="$(CFLAGS) $(SHARED_LDFLAGS) -shared -Wl,-Bsymbolic -Wl,-soname=$$SHLIB$$SHLIB_SOVER$$SHLIB_SUFFIX" | ||
10 | |||
11 | -DO_GNU_APP=LDFLAGS="$(CFLAGS) -Wl,-rpath,$(LIBRPATH)" | ||
12 | +DO_GNU_APP=LDFLAGS="$(CFLAGS)" | ||
13 | |||
14 | #This is rather special. It's a special target with which one can link | ||
15 | #applications without bothering with any features that have anything to | ||