From a1ad0499b43350368369ccd0f14abb8e89f358d3 Mon Sep 17 00:00:00 2001 From: Armin Kuster Date: Wed, 15 Sep 2021 19:28:29 -0700 Subject: nettle: Security fix for CVE-2021-3580 Source: https://git.lysator.liu.se/nettle/nettle MR: 112331 Type: Security Fix Disposition: Backport from https://git.lysator.liu.se/nettle/nettle/-/commit/0ad0b5df315665250dfdaa4a1e087f4799edaefe ChangeID: ffbbadbfa862e715ec7da4695d7db67484f8517a Description: Affects nettle < 3.7.3 (From OE-Core rev: ddcdb9baec74391844d5e3cf3c891d63d2eef865) Signed-off-by: Armin Kuster Signed-off-by: Steve Sakoman Signed-off-by: Richard Purdie --- meta/recipes-support/nettle/nettle_3.5.1.bb | 2 ++ 1 file changed, 2 insertions(+) (limited to 'meta/recipes-support/nettle/nettle_3.5.1.bb') diff --git a/meta/recipes-support/nettle/nettle_3.5.1.bb b/meta/recipes-support/nettle/nettle_3.5.1.bb index b2ec24b36c..9212d9deb5 100644 --- a/meta/recipes-support/nettle/nettle_3.5.1.bb +++ b/meta/recipes-support/nettle/nettle_3.5.1.bb @@ -18,6 +18,8 @@ SRC_URI = "${GNU_MIRROR}/${BPN}/${BP}.tar.gz \ file://Add-target-to-only-build-tests-not-run-them.patch \ file://run-ptest \ file://check-header-files-of-openssl-only-if-enable_.patch \ + file://CVE-2021-3580_1.patch \ + file://CVE-2021-3580_2.patch \ " SRC_URI_append_class-target = "\ -- cgit v1.2.3-54-g00ecf