From 14d23c29a2d6a9944233983d64109037077db49e Mon Sep 17 00:00:00 2001 From: Armin Kuster Date: Thu, 30 May 2019 09:46:57 -0700 Subject: busybox: Security fixes for CVE-2018-20679 CVE-2019-5747 Source: busybox.git MR: 97332 Type: Security Fix Disposition: Backport from busybox.git ChangeID: ec203c79e7322de1ed5721d08b6f59b1eca67c7d Description: Affects < 1.30.0 Fixes: CVE-2018-20679 CVE-2019-5747 (From OE-Core rev: 7db146abad6d2bbb7d7a549e7091412e0e494db2) Signed-off-by: Armin Kuster Signed-off-by: Richard Purdie --- meta/recipes-core/busybox/busybox_1.29.3.bb | 2 ++ 1 file changed, 2 insertions(+) (limited to 'meta/recipes-core/busybox/busybox_1.29.3.bb') diff --git a/meta/recipes-core/busybox/busybox_1.29.3.bb b/meta/recipes-core/busybox/busybox_1.29.3.bb index 6064e9fdc6..5714d70768 100644 --- a/meta/recipes-core/busybox/busybox_1.29.3.bb +++ b/meta/recipes-core/busybox/busybox_1.29.3.bb @@ -41,6 +41,8 @@ SRC_URI = "http://www.busybox.net/downloads/busybox-${PV}.tar.bz2;name=tarball \ file://rcS \ file://rcK \ file://makefile-libbb-race.patch \ + file://CVE-2018-20679.patch \ + file://CVE-2019-5747.patch \ " SRC_URI_append_libc-musl = " file://musl.cfg " -- cgit v1.2.3-54-g00ecf