From b5093a5c875f50e716ed35f2a65f1ae21c603e4f Mon Sep 17 00:00:00 2001 From: Thiruvadi Rajaraman Date: Thu, 21 Sep 2017 19:06:01 +0530 Subject: binutils: CVE-2017-9749 Source: binutils-gdb.git MR: 74010 Type: Security Fix Disposition: Backport from binutils-2_29 ChangeID: 5b89fbcab899af53585b61bd40724a38bff831d3 Description: Prevent invalid array accesses when disassembling a corrupt bfin binary. PR binutils/21586 * bfin-dis.c (gregs): Clip index to prevent overflow. (regs): Likewise. (regs_lo): Likewise. (regs_hi): Likewise. Affects: <= 2.28 Author: Nick Clifton (From OE-Core rev: 3306cbace5069e58bb62f31ec91ca805410bd949) Signed-off-by: Thiruvadi Rajaraman Reviewed-by: Armin Kuster Signed-off-by: Armin Kuster Signed-off-by: Armin Kuster Signed-off-by: Richard Purdie --- meta/recipes-devtools/binutils/binutils-2.27.inc | 1 + 1 file changed, 1 insertion(+) (limited to 'meta/recipes-devtools/binutils/binutils-2.27.inc') diff --git a/meta/recipes-devtools/binutils/binutils-2.27.inc b/meta/recipes-devtools/binutils/binutils-2.27.inc index 5c3d3ca223..5e1e0be393 100644 --- a/meta/recipes-devtools/binutils/binutils-2.27.inc +++ b/meta/recipes-devtools/binutils/binutils-2.27.inc @@ -79,6 +79,7 @@ SRC_URI = "\ file://CVE-2017-7299_1.patch \ file://CVE-2017-7299_2.patch \ file://CVE-2017-9751.patch \ + file://CVE-2017-9749.patch \ " S = "${WORKDIR}/git" -- cgit v1.2.3-54-g00ecf