summaryrefslogtreecommitdiffstats
path: root/meta
diff options
context:
space:
mode:
authorVijay Anusuri <vanusuri@mvista.com>2024-02-26 12:25:30 +0530
committerSteve Sakoman <steve@sakoman.com>2024-03-01 03:19:04 -1000
commit5fc659fd026665cebf0980543a0ab3f3f4c7d127 (patch)
tree18e2815d6ebe1241dd6f14e6276ddb793b38ee72 /meta
parentdee3046d2b3ee1b9e29dc60f6bf3dd25ad001230 (diff)
downloadpoky-5fc659fd026665cebf0980543a0ab3f3f4c7d127.tar.gz
less: Fix for CVE-2022-48624
Upstream-Status: Backport [https://github.com/gwsw/less/commit/c6ac6de49698be84d264a0c4c0c40bb870b10144] (From OE-Core rev: e088a7e59532ede45549e6120be43531fa77855a) Signed-off-by: Vijay Anusuri <vanusuri@mvista.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
Diffstat (limited to 'meta')
-rw-r--r--meta/recipes-extended/less/less/CVE-2022-48624.patch41
-rw-r--r--meta/recipes-extended/less/less_551.bb1
2 files changed, 42 insertions, 0 deletions
diff --git a/meta/recipes-extended/less/less/CVE-2022-48624.patch b/meta/recipes-extended/less/less/CVE-2022-48624.patch
new file mode 100644
index 0000000000..409730bd4f
--- /dev/null
+++ b/meta/recipes-extended/less/less/CVE-2022-48624.patch
@@ -0,0 +1,41 @@
1From c6ac6de49698be84d264a0c4c0c40bb870b10144 Mon Sep 17 00:00:00 2001
2From: Mark Nudelman <markn@greenwoodsoftware.com>
3Date: Sat, 25 Jun 2022 11:54:43 -0700
4Subject: [PATCH] Shell-quote filenames when invoking LESSCLOSE.
5
6Upstream-Status: Backport [https://github.com/gwsw/less/commit/c6ac6de49698be84d264a0c4c0c40bb870b10144]
7CVE: CVE-2022-48624
8Signed-off-by: Vijay Anusuri <vanusuri@mvista.com>
9---
10 filename.c | 10 ++++++++--
11 1 file changed, 8 insertions(+), 2 deletions(-)
12
13diff --git a/filename.c b/filename.c
14index 5824e385..dff20c08 100644
15--- a/filename.c
16+++ b/filename.c
17@@ -972,6 +972,8 @@ close_altfile(altfilename, filename)
18 {
19 #if HAVE_POPEN
20 char *lessclose;
21+ char *qfilename;
22+ char *qaltfilename;
23 FILE *fd;
24 char *cmd;
25 int len;
26@@ -986,9 +988,13 @@ close_altfile(altfilename, filename)
27 error("LESSCLOSE ignored; must contain no more than 2 %%s", NULL_PARG);
28 return;
29 }
30- len = (int) (strlen(lessclose) + strlen(filename) + strlen(altfilename) + 2);
31+ qfilename = shell_quote(filename);
32+ qaltfilename = shell_quote(altfilename);
33+ len = (int) (strlen(lessclose) + strlen(qfilename) + strlen(qaltfilename) + 2);
34 cmd = (char *) ecalloc(len, sizeof(char));
35- SNPRINTF2(cmd, len, lessclose, filename, altfilename);
36+ SNPRINTF2(cmd, len, lessclose, qfilename, qaltfilename);
37+ free(qaltfilename);
38+ free(qfilename);
39 fd = shellcmd(cmd);
40 free(cmd);
41 if (fd != NULL)
diff --git a/meta/recipes-extended/less/less_551.bb b/meta/recipes-extended/less/less_551.bb
index a818c68fc7..401f40bed5 100644
--- a/meta/recipes-extended/less/less_551.bb
+++ b/meta/recipes-extended/less/less_551.bb
@@ -26,6 +26,7 @@ LIC_FILES_CHKSUM = "file://COPYING;md5=d32239bcb673463ab874e80d47fae504 \
26DEPENDS = "ncurses" 26DEPENDS = "ncurses"
27 27
28SRC_URI = "http://www.greenwoodsoftware.com/${BPN}/${BPN}-${PV}.tar.gz \ 28SRC_URI = "http://www.greenwoodsoftware.com/${BPN}/${BPN}-${PV}.tar.gz \
29 file://CVE-2022-48624.patch \
29 " 30 "
30 31
31SRC_URI[md5sum] = "4ad4408b06d7a6626a055cb453f36819" 32SRC_URI[md5sum] = "4ad4408b06d7a6626a055cb453f36819"