summaryrefslogtreecommitdiffstats
path: root/meta/recipes-support/libcroco/libcroco
Commit message (Collapse)AuthorAgeFilesLines
* libcroco: CVE-2017-7961Armin Kuster2018-10-101-0/+46
| | | | | | | | | | | | | | | | | * CVE-2017-7961 The cr_tknzr_parse_rgb function in cr-tknzr.c in libcroco has an "outside the range of representable values of type long" undefined behavior issue, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted CSS file. CVE: CVE-2017-7961 Ref: https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2017-7961 (From OE-Core rev: 9b321cf141c3fa18d5b85f17ffe1710f4555ca49) Signed-off-by: Sinan Kaya <okaya@kernel.org> Signed-off-by: Armin Kuster <akuster808@gmail.com> Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
* libcroco: patch for CVE-2017-7960Changqing Li2018-09-271-0/+56
(From OE-Core rev: 2539d7334cbe9693ebe68d33c7a97872a1645510) (From OE-Core rev: 3abf7932e43115cc6f9a1c85a00e6578bb327b9a) Signed-off-by: Changqing Li <changqing.li@windriver.com> Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org> Signed-off-by: Armin Kuster <akuster808@gmail.com> Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>