From 4811b04f120f0a90d047feed239caa37c7008cb9 Mon Sep 17 00:00:00 2001 From: Sona Sarmadi Date: Thu, 12 Mar 2015 11:01:01 +0100 Subject: e2fsprogs: CVE-2015-0247 Fixes a heap buffer overflow in lib/ext2fs/openfs.c which allows a trivial arbitrary memory write under certain conditions. References http://git.kernel.org/cgit/fs/ext2/e2fsprogs.git/commit/?id=f66e6ce4 http://www.ocert.org/advisories/ocert-2015-002.html (From OE-Core rev: 572437720b6698a3a10627fcd9654ef10f827836) Signed-off-by: Sona Sarmadi Signed-off-by: Ross Burton Signed-off-by: Richard Purdie --- meta/recipes-devtools/e2fsprogs/e2fsprogs_1.42.9.bb | 1 + 1 file changed, 1 insertion(+) (limited to 'meta/recipes-devtools/e2fsprogs/e2fsprogs_1.42.9.bb') diff --git a/meta/recipes-devtools/e2fsprogs/e2fsprogs_1.42.9.bb b/meta/recipes-devtools/e2fsprogs/e2fsprogs_1.42.9.bb index 656793f9ab..87e06e3b58 100644 --- a/meta/recipes-devtools/e2fsprogs/e2fsprogs_1.42.9.bb +++ b/meta/recipes-devtools/e2fsprogs/e2fsprogs_1.42.9.bb @@ -20,6 +20,7 @@ SRC_URI += "file://acinclude.m4 \ file://0001-e2fsprogs-fix-cross-compilation-problem.patch \ file://misc-mke2fs.c-return-error-when-failed-to-populate-fs.patch \ file://cache_inode.patch \ + file://CVE-2015-0247.patch \ " SRC_URI[md5sum] = "3f8e41e63b432ba114b33f58674563f7" -- cgit v1.2.3-54-g00ecf