summaryrefslogtreecommitdiffstats
path: root/meta/recipes-core/gettext/gettext_0.19.8.1.bb
diff options
context:
space:
mode:
authorKai Kang <kai.kang@windriver.com>2018-11-14 00:46:32 -0500
committerRichard Purdie <richard.purdie@linuxfoundation.org>2018-11-16 11:46:07 +0000
commit6da5d5b3242f4f435628192c561a1d2115a9a9ee (patch)
tree1672ef5cec3f88baeca68bac76fe182c27dc45e9 /meta/recipes-core/gettext/gettext_0.19.8.1.bb
parentbe1c84a91eb3ddddbef5cb7d4f74ffbb0ffe5778 (diff)
downloadpoky-6da5d5b3242f4f435628192c561a1d2115a9a9ee.tar.gz
gettext: fix CVE-2018-18751
Backport patch to fix CVE-2018-18751 for gettext. Because po-gram-gen.y has been modified by fix-CVE-2018-18751.patch, it requires yacc which provided by bison-native to re-create po-gram-gen.c. Please remove bison-native from DEPENDS* when next upgrade. Ref: https://security-tracker.debian.org/tracker/CVE-2018-18751 (From OE-Core rev: 4b3a085d6c63fd8459bb084aaa277dd2e8949594) Signed-off-by: Kai Kang <kai.kang@windriver.com> Signed-off-by: Ross Burton <ross.burton@intel.com> Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
Diffstat (limited to 'meta/recipes-core/gettext/gettext_0.19.8.1.bb')
-rw-r--r--meta/recipes-core/gettext/gettext_0.19.8.1.bb8
1 files changed, 6 insertions, 2 deletions
diff --git a/meta/recipes-core/gettext/gettext_0.19.8.1.bb b/meta/recipes-core/gettext/gettext_0.19.8.1.bb
index 68f5cc329a..933baccd94 100644
--- a/meta/recipes-core/gettext/gettext_0.19.8.1.bb
+++ b/meta/recipes-core/gettext/gettext_0.19.8.1.bb
@@ -8,8 +8,11 @@ SECTION = "libs"
8LICENSE = "GPLv3+ & LGPL-2.1+" 8LICENSE = "GPLv3+ & LGPL-2.1+"
9LIC_FILES_CHKSUM = "file://COPYING;md5=d32239bcb673463ab874e80d47fae504" 9LIC_FILES_CHKSUM = "file://COPYING;md5=d32239bcb673463ab874e80d47fae504"
10 10
11DEPENDS = "gettext-native virtual/libiconv" 11# Because po-gram-gen.y has been modified by fix-CVE-2018-18751.patch,
12DEPENDS_class-native = "gettext-minimal-native" 12# it requires yacc which provided by bison-native
13# Please remove bison-native from DEPENDS* when next upgrade
14DEPENDS = "bison-native gettext-native virtual/libiconv"
15DEPENDS_class-native = "bison-native gettext-minimal-native"
13PROVIDES = "virtual/libintl virtual/gettext" 16PROVIDES = "virtual/libintl virtual/gettext"
14PROVIDES_class-native = "virtual/gettext-native" 17PROVIDES_class-native = "virtual/gettext-native"
15RCONFLICTS_${PN} = "proxy-libintl" 18RCONFLICTS_${PN} = "proxy-libintl"
@@ -18,6 +21,7 @@ SRC_URI = "${GNU_MIRROR}/gettext/gettext-${PV}.tar.gz \
18 file://add-with-bisonlocaledir.patch \ 21 file://add-with-bisonlocaledir.patch \
19 file://cr-statement.c-timsort.h-fix-formatting-issues.patch \ 22 file://cr-statement.c-timsort.h-fix-formatting-issues.patch \
20 file://use-pkgconfig.patch \ 23 file://use-pkgconfig.patch \
24 file://fix-CVE-2018-18751.patch \
21" 25"
22 26
23SRC_URI[md5sum] = "97e034cf8ce5ba73a28ff6c3c0638092" 27SRC_URI[md5sum] = "97e034cf8ce5ba73a28ff6c3c0638092"