diff options
author | Kai Kang <kai.kang@windriver.com> | 2018-11-14 00:46:32 -0500 |
---|---|---|
committer | Richard Purdie <richard.purdie@linuxfoundation.org> | 2018-11-16 11:46:07 +0000 |
commit | 6da5d5b3242f4f435628192c561a1d2115a9a9ee (patch) | |
tree | 1672ef5cec3f88baeca68bac76fe182c27dc45e9 /meta/recipes-core/gettext/gettext_0.19.8.1.bb | |
parent | be1c84a91eb3ddddbef5cb7d4f74ffbb0ffe5778 (diff) | |
download | poky-6da5d5b3242f4f435628192c561a1d2115a9a9ee.tar.gz |
gettext: fix CVE-2018-18751
Backport patch to fix CVE-2018-18751 for gettext. Because po-gram-gen.y
has been modified by fix-CVE-2018-18751.patch, it requires yacc which
provided by bison-native to re-create po-gram-gen.c. Please remove
bison-native from DEPENDS* when next upgrade.
Ref:
https://security-tracker.debian.org/tracker/CVE-2018-18751
(From OE-Core rev: 4b3a085d6c63fd8459bb084aaa277dd2e8949594)
Signed-off-by: Kai Kang <kai.kang@windriver.com>
Signed-off-by: Ross Burton <ross.burton@intel.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
Diffstat (limited to 'meta/recipes-core/gettext/gettext_0.19.8.1.bb')
-rw-r--r-- | meta/recipes-core/gettext/gettext_0.19.8.1.bb | 8 |
1 files changed, 6 insertions, 2 deletions
diff --git a/meta/recipes-core/gettext/gettext_0.19.8.1.bb b/meta/recipes-core/gettext/gettext_0.19.8.1.bb index 68f5cc329a..933baccd94 100644 --- a/meta/recipes-core/gettext/gettext_0.19.8.1.bb +++ b/meta/recipes-core/gettext/gettext_0.19.8.1.bb | |||
@@ -8,8 +8,11 @@ SECTION = "libs" | |||
8 | LICENSE = "GPLv3+ & LGPL-2.1+" | 8 | LICENSE = "GPLv3+ & LGPL-2.1+" |
9 | LIC_FILES_CHKSUM = "file://COPYING;md5=d32239bcb673463ab874e80d47fae504" | 9 | LIC_FILES_CHKSUM = "file://COPYING;md5=d32239bcb673463ab874e80d47fae504" |
10 | 10 | ||
11 | DEPENDS = "gettext-native virtual/libiconv" | 11 | # Because po-gram-gen.y has been modified by fix-CVE-2018-18751.patch, |
12 | DEPENDS_class-native = "gettext-minimal-native" | 12 | # it requires yacc which provided by bison-native |
13 | # Please remove bison-native from DEPENDS* when next upgrade | ||
14 | DEPENDS = "bison-native gettext-native virtual/libiconv" | ||
15 | DEPENDS_class-native = "bison-native gettext-minimal-native" | ||
13 | PROVIDES = "virtual/libintl virtual/gettext" | 16 | PROVIDES = "virtual/libintl virtual/gettext" |
14 | PROVIDES_class-native = "virtual/gettext-native" | 17 | PROVIDES_class-native = "virtual/gettext-native" |
15 | RCONFLICTS_${PN} = "proxy-libintl" | 18 | RCONFLICTS_${PN} = "proxy-libintl" |
@@ -18,6 +21,7 @@ SRC_URI = "${GNU_MIRROR}/gettext/gettext-${PV}.tar.gz \ | |||
18 | file://add-with-bisonlocaledir.patch \ | 21 | file://add-with-bisonlocaledir.patch \ |
19 | file://cr-statement.c-timsort.h-fix-formatting-issues.patch \ | 22 | file://cr-statement.c-timsort.h-fix-formatting-issues.patch \ |
20 | file://use-pkgconfig.patch \ | 23 | file://use-pkgconfig.patch \ |
24 | file://fix-CVE-2018-18751.patch \ | ||
21 | " | 25 | " |
22 | 26 | ||
23 | SRC_URI[md5sum] = "97e034cf8ce5ba73a28ff6c3c0638092" | 27 | SRC_URI[md5sum] = "97e034cf8ce5ba73a28ff6c3c0638092" |