summaryrefslogtreecommitdiffstats
path: root/meta/recipes-support/curl/curl/CVE-2014-3707.patch
diff options
context:
space:
mode:
authorTudor Florea <tudor.florea@enea.com>2015-07-07 00:23:37 +0200
committerTudor Florea <tudor.florea@enea.com>2015-07-07 00:23:37 +0200
commit9631f6b1399b24433ef577e9f87c0320700f3460 (patch)
tree7165ac8cc44587788de6b818c2b8ffbfe97465a6 /meta/recipes-support/curl/curl/CVE-2014-3707.patch
parent35272ed55c848a63c2468b7ea1f0ddce64b4bd73 (diff)
downloadpoky-9631f6b1399b24433ef577e9f87c0320700f3460.tar.gz
curl: Security Advisory - curl - CVE-2014-3620
libcurl wrongly allows cookies to be set for Top Level Domains (TLDs), thus making them apply broader than cookies are allowed. This can allow arbitrary sites to set cookies that then would get sent to a different and unrelated site or domain. (From OE-Core rev: ddbaade8afbc9767583728bfdc220639203d6853) (From OE-Core rev: 13bb2ee98cfd159455e459501dda280a78cb5a3b) Signed-off-by: Chong Lu <Chong.Lu@windriver.com> Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org> Signed-off-by: Sona Sarmadi <sona.sarmadi@enea.com> Signed-off-by: Tudor Florea <tudor.florea@enea.com>
Diffstat (limited to 'meta/recipes-support/curl/curl/CVE-2014-3707.patch')
0 files changed, 0 insertions, 0 deletions