diff options
author | Yi Zhao <yi.zhao@windriver.com> | 2018-03-20 07:53:20 +0800 |
---|---|---|
committer | Richard Purdie <richard.purdie@linuxfoundation.org> | 2018-03-25 09:40:41 +0100 |
commit | 7a8099635534a1c7991eb3e1da26398482f54a7c (patch) | |
tree | 2cfaa49c74b7a7de5cb38a915710bd4bf2799106 /meta/recipes-multimedia/libtiff/tiff_4.0.9.bb | |
parent | f49ee61422c867516db252054e993df29f775136 (diff) | |
download | poky-7a8099635534a1c7991eb3e1da26398482f54a7c.tar.gz |
tiff: Security fixes
Fix CVE-2017-99935, CVE-2017-18013, CVE-2018-5784
References:
https://nvd.nist.gov/vuln/detail/CVE-2017-9935
https://nvd.nist.gov/vuln/detail/CVE-2017-18013
https://nvd.nist.gov/vuln/detail/CVE-2018-5784
Patches from:
CVE-2017-9935:
https://gitlab.com/libtiff/libtiff/commit/3dd8f6a357981a4090f126ab9025056c938b6940
CVE-2017-18013:
https://gitlab.com/libtiff/libtiff/commit/c6f41df7b581402dfba3c19a1e3df4454c551a01
CVE-2018-5784:
https://gitlab.com/libtiff/libtiff/commit/473851d211cf8805a161820337ca74cc9615d6ef
(From OE-Core rev: 798b6b4b3ce370264d036e555185a99ce3aa97b7)
Signed-off-by: Yi Zhao <yi.zhao@windriver.com>
Signed-off-by: Ross Burton <ross.burton@intel.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
Diffstat (limited to 'meta/recipes-multimedia/libtiff/tiff_4.0.9.bb')
-rw-r--r-- | meta/recipes-multimedia/libtiff/tiff_4.0.9.bb | 3 |
1 files changed, 3 insertions, 0 deletions
diff --git a/meta/recipes-multimedia/libtiff/tiff_4.0.9.bb b/meta/recipes-multimedia/libtiff/tiff_4.0.9.bb index b8f895b143..8c3bba5c64 100644 --- a/meta/recipes-multimedia/libtiff/tiff_4.0.9.bb +++ b/meta/recipes-multimedia/libtiff/tiff_4.0.9.bb | |||
@@ -6,6 +6,9 @@ CVE_PRODUCT = "libtiff" | |||
6 | 6 | ||
7 | SRC_URI = "http://download.osgeo.org/libtiff/tiff-${PV}.tar.gz \ | 7 | SRC_URI = "http://download.osgeo.org/libtiff/tiff-${PV}.tar.gz \ |
8 | file://libtool2.patch \ | 8 | file://libtool2.patch \ |
9 | file://CVE-2017-9935.patch \ | ||
10 | file://CVE-2017-18013.patch \ | ||
11 | file://CVE-2018-5784.patch \ | ||
9 | " | 12 | " |
10 | 13 | ||
11 | SRC_URI[md5sum] = "54bad211279cc93eb4fca31ba9bfdc79" | 14 | SRC_URI[md5sum] = "54bad211279cc93eb4fca31ba9bfdc79" |