diff options
author | Ross Burton <ross.burton@intel.com> | 2019-03-05 23:38:15 +0000 |
---|---|---|
committer | Richard Purdie <richard.purdie@linuxfoundation.org> | 2019-07-27 18:05:18 +0100 |
commit | fc06d9b06d11845a140b9f3d615679eb155cc62d (patch) | |
tree | dd1b1be38370b27958b39da22296f978918f58ee /meta/recipes-graphics/cairo/cairo_1.14.12.bb | |
parent | f24f3614046b708e8833dc41ced3eef4141de3fa (diff) | |
download | poky-fc06d9b06d11845a140b9f3d615679eb155cc62d.tar.gz |
cairo: fix CVE-2018-19876 CVE-2019-6461 CVE-2019-6462
Source: OpenEmbedded.org
MR: 97538, 97543
Type: Security Fix
Disposition: Backport from https://git.openembedded.org/openembedded-core/commit/meta/recipes-graphics/cairo?h=warrior&id=078e4d5c2114d942806cd0d5ad501805a011e841
ChangeID: fa8bdd44ad8613bb0679a1f6d9d670c3b47a0677
Description:
CVE-2018-19876 is a backport from upstream.
CVE-2019-6461 and CVE-2019-6462 are patches taken from Clear Linux.
(From OE-Core rev: 8b5e68afc9767d8b6b966503e9353cadafae9bfb)
Signed-off-by: Ross Burton <ross.burton@intel.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
[Dropped CVE-2018-19876, not affected]
Issue was introduced in 1.15.8 by:
commit 721b7ea0a785afaa04b6da63f970c3c57666fdfe
Signed-off-by: Armin Kuster <akuster@mvista.com>
Signed-off-by: Armin Kuster <akuster808@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
Diffstat (limited to 'meta/recipes-graphics/cairo/cairo_1.14.12.bb')
-rw-r--r-- | meta/recipes-graphics/cairo/cairo_1.14.12.bb | 2 |
1 files changed, 2 insertions, 0 deletions
diff --git a/meta/recipes-graphics/cairo/cairo_1.14.12.bb b/meta/recipes-graphics/cairo/cairo_1.14.12.bb index 18b947948a..08026c462d 100644 --- a/meta/recipes-graphics/cairo/cairo_1.14.12.bb +++ b/meta/recipes-graphics/cairo/cairo_1.14.12.bb | |||
@@ -25,6 +25,8 @@ DEPENDS = "fontconfig glib-2.0 libpng pixman zlib" | |||
25 | SRC_URI = "http://cairographics.org/releases/cairo-${PV}.tar.xz \ | 25 | SRC_URI = "http://cairographics.org/releases/cairo-${PV}.tar.xz \ |
26 | file://cairo-get_bitmap_surface-bsc1036789-CVE-2017-7475.diff \ | 26 | file://cairo-get_bitmap_surface-bsc1036789-CVE-2017-7475.diff \ |
27 | file://0001-cairo-Fix-CVE-2017-9814.patch \ | 27 | file://0001-cairo-Fix-CVE-2017-9814.patch \ |
28 | file://CVE-2019-6461.patch \ | ||
29 | file://CVE-2019-6462.patch \ | ||
28 | " | 30 | " |
29 | 31 | ||
30 | SRC_URI[md5sum] = "9f0db9dbfca0966be8acd682e636d165" | 32 | SRC_URI[md5sum] = "9f0db9dbfca0966be8acd682e636d165" |