<feed xmlns='http://www.w3.org/2005/Atom'>
<title>linux/meta-openembedded.git/meta-networking, branch stable/dufell-nut</title>
<subtitle>Mirror of git.openembedded.org/meta-openembedded</subtitle>
<id>https://git.enea.com/cgit/linux/meta-openembedded.git/atom?h=stable%2Fdufell-nut</id>
<link rel='self' href='https://git.enea.com/cgit/linux/meta-openembedded.git/atom?h=stable%2Fdufell-nut'/>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/'/>
<updated>2021-12-27T21:23:37+00:00</updated>
<entry>
<title>dovecot: refresh patches</title>
<updated>2021-12-27T21:23:37+00:00</updated>
<author>
<name>Armin kuster</name>
<email>akuster808@gamil.com</email>
</author>
<published>2021-12-27T21:22:03+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=95969f0f5f4264644a5dbfb6d4fb66e2ac3a2cde'/>
<id>urn:sha1:95969f0f5f4264644a5dbfb6d4fb66e2ac3a2cde</id>
<content type='text'>
Signed-off-by: Armin kuster &lt;akuster808@gamil.com&gt;
</content>
</entry>
<entry>
<title>dovecot: Fix CVE-2020-12674</title>
<updated>2021-12-03T20:23:42+00:00</updated>
<author>
<name>sana kazi</name>
<email>sanakazisk19@gmail.com</email>
</author>
<published>2021-12-03T12:29:58+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=fba8ff0d916383ce65045c36ba4c805b5a2dfcc0'/>
<id>urn:sha1:fba8ff0d916383ce65045c36ba4c805b5a2dfcc0</id>
<content type='text'>
Added patch for CVE-2020-12674

Link: http://archive.ubuntu.com/ubuntu/pool/main/d/dovecot/dovecot_2.2.33.2-1ubuntu4.7.debian.tar.xz

Signed-off-by: Sana Kazi &lt;Sana.Kazi@kpit.com&gt;
Signed-off-by: Sana Kazi &lt;sanakazisk19@gmail.com&gt;
Signed-off-by: Armin Kuster &lt;akuster808@gmail.com&gt;
</content>
</entry>
<entry>
<title>dovecot: Fix CVE-2020-12673</title>
<updated>2021-12-03T20:23:38+00:00</updated>
<author>
<name>sana kazi</name>
<email>sanakazisk19@gmail.com</email>
</author>
<published>2021-12-03T12:29:08+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=7804c8e5bd2975c9829e1667ab1954373a3ede48'/>
<id>urn:sha1:7804c8e5bd2975c9829e1667ab1954373a3ede48</id>
<content type='text'>
Added patch for CVE-2020-12673

Link: http://archive.ubuntu.com/ubuntu/pool/main/d/dovecot/dovecot_2.2.33.2-1ubuntu4.7.debian.tar.xz

Signed-off-by: Sana Kazi &lt;Sana.Kazi@kpit.com&gt;
Signed-off-by: Sana Kazi &lt;sanakazisk19@gmail.com&gt;
Signed-off-by: Armin Kuster &lt;akuster808@gmail.com&gt;
</content>
</entry>
<entry>
<title>dovecot: Fix CVE-2020-12100</title>
<updated>2021-12-03T20:23:33+00:00</updated>
<author>
<name>sana kazi</name>
<email>sanakazisk19@gmail.com</email>
</author>
<published>2021-12-03T12:27:19+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=00ad99f4f9a06d66bd5686d2b1dd07c578c8dc2a'/>
<id>urn:sha1:00ad99f4f9a06d66bd5686d2b1dd07c578c8dc2a</id>
<content type='text'>
Added patches to fix CVE-2020-12100

Link: http://archive.ubuntu.com/ubuntu/pool/main/d/dovecot/dovecot_2.2.33.2-1ubuntu4.7.debian.tar.xz

Signed-off-by: Sana Kazi &lt;Sana.Kazi@kpit.com&gt;
Signed-off-by: Sana Kazi &lt;sanakazisk19@gmail.com&gt;
Signed-off-by: Armin Kuster &lt;akuster808@gmail.com&gt;
</content>
</entry>
<entry>
<title>recipes: Update SRC_URI branch and protocols</title>
<updated>2021-11-17T20:26:21+00:00</updated>
<author>
<name>Armin Kuster</name>
<email>akuster808@gmail.com</email>
</author>
<published>2021-11-07T19:09:24+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=59bff77ad0b3a66417194670de25f60183a4f6bb'/>
<id>urn:sha1:59bff77ad0b3a66417194670de25f60183a4f6bb</id>
<content type='text'>
This patch updates SRC_URIs using git to include branch=master if no branch is set
and also to use protocol=https for github urls as generated by the conversion script
in OE-Core.

Signed-off-by: Armin Kuster &lt;akuster808@gmail.com&gt;
</content>
</entry>
<entry>
<title>drdb-utils: Define SRCREV_FORMAT</title>
<updated>2021-11-02T12:47:24+00:00</updated>
<author>
<name>Andreas Weger</name>
<email>weger@hs-mittweida.de</email>
</author>
<published>2021-09-27T15:01:51+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=4b8f554f4d19b96700ac76f3174b6f7de90573fb'/>
<id>urn:sha1:4b8f554f4d19b96700ac76f3174b6f7de90573fb</id>
<content type='text'>
Since it uses multiple fetch URIs make it explicit to define SRCREV_FORMAT

Signed-off-by: Andreas Weger &lt;weger@hs-mittweida.de&gt;

Change-Id: Id1d0a1062d09f690123b2a1c06137ae5c04d7b20
Signed-off-by: Armin Kuster &lt;akuster808@gmail.com&gt;
</content>
</entry>
<entry>
<title>tcpdump: Update CVE-2020-8037 tag</title>
<updated>2021-10-01T21:49:10+00:00</updated>
<author>
<name>Purushottam Choudhary</name>
<email>purushottamchoudhary29@gmail.com</email>
</author>
<published>2021-09-29T12:52:00+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=3cf22d15885cf0e3e16078705e9a20f3d21f12db'/>
<id>urn:sha1:3cf22d15885cf0e3e16078705e9a20f3d21f12db</id>
<content type='text'>
CVE tag was missing inside the patch file
which is the remedy for CVE-2020-8037 and
tracked by cve-check.

Signed-off-by: Purushottam Choudhary &lt;purushottam.Choudhary@kpit.com&gt;
Signed-off-by: Purushottam Choudhary &lt;purushottamchoudhary29@gmail.com&gt;
Signed-off-by: Armin Kuster &lt;akuster808@gmail.com&gt;
</content>
</entry>
<entry>
<title>dnsmasq: Security fix CVE-2021-3448</title>
<updated>2021-09-10T22:16:48+00:00</updated>
<author>
<name>Armin Kuster</name>
<email>akuster@mvista.com</email>
</author>
<published>2021-09-10T22:16:48+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=2e7e98cd0cb82db214b13224c71134b9335a719b'/>
<id>urn:sha1:2e7e98cd0cb82db214b13224c71134b9335a719b</id>
<content type='text'>
Source: https://thekelleys.org.uk/dnsmasq.git
MR: 110238
Type: Security Fix
Disposition: Backport from https://thekelleys.org.uk/gitweb/?p=dnsmasq.git;a=commit;h=74d4fcd756a85bc1823232ea74334f7ccfb9d5d2
ChangeID: 3365bcc47b0467b487f14fc6bfad89bc560cd818
Description:

A flaw was found in dnsmasq in versions before 2.85. When configured to use a specific server for a given network interface, dnsmasq uses a fixed port while forwarding queries. An attacker on the network, able to find the outgoing port used by dnsmasq, only needs to guess the random transmission ID to forge a reply and get it accepted by dnsmasq. This flaw makes a DNS Cache Poisoning attack much easier. The highest threat from this vulnerability is to data integrity.

Signed-off-by: Armin Kuster &lt;akuster@mvista.com&gt;
</content>
</entry>
<entry>
<title>stunnel: upgrade 5.56 -&gt; 5.57</title>
<updated>2021-09-10T17:21:52+00:00</updated>
<author>
<name>Pierre-Jean Texier</name>
<email>pjtexier@koncepto.io</email>
</author>
<published>2020-10-19T18:30:24+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=892b724cd147de92dd806235e22c15516931ea64'/>
<id>urn:sha1:892b724cd147de92dd806235e22c15516931ea64</id>
<content type='text'>
Source: https://git.openembedded.org/meta-openembedded
MR: 109039
Type: Security Fix
Disposition: Backport from https://git.openembedded.org/meta-openembedded/commit/meta-networking/recipes-support/stunnel?h=gatesgarth&amp;id=b76712700c79e4627028787ae65ab306c21eed02
ChangeID: 2543a2516b0f00024ed117a1fe33d1157b3d725f
Description:

Affects &lt; 5.57

License-Update: copyright years updated.

This is a bug fix release:

 - X.509 v3 extensions required by modern versions of OpenSSL are added to generated self-signed test certificaes.
 - Fixed a tiny memory leak in configuration file reload error handling (thx to Richard Könning).
 - Merged Debian 05-typos.patch (thx to Peter Pentchev).
 - Merged with minor changes Debian 06-hup-separate.patch (thx to Peter Pentchev).
 - Merged Debian 07-imap-capabilities.patch (thx to Ansgar).
 - Merged Debian 08-addrconfig-workaround.patch (thx to Peter Pentchev).
 - Fixed tests on the WSL2 platform.

Signed-off-by: Pierre-Jean Texier &lt;pjtexier@koncepto.io&gt;
Signed-off-by: Khem Raj &lt;raj.khem@gmail.com&gt;
(cherry picked from commit b76712700c79e4627028787ae65ab306c21eed02)
[Includes CVE-2021-20230 per changelog
Full commit https://github.com/mtrojnar/stunnel/commit/ebad9ddc4efb2635f37174c9d800d06206f1edf9
]

Signed-off-by: Armin Kuster &lt;akuster@mvista.com&gt;
</content>
</entry>
<entry>
<title>tcpdump: Exclude CVE-2020-8036 from check</title>
<updated>2021-08-25T04:25:51+00:00</updated>
<author>
<name>Armin Kuster</name>
<email>akuster808@gmail.com</email>
</author>
<published>2021-08-22T15:44:44+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=b9fe34b1ad280d1ae7f8bc684715d2d1529c60fa'/>
<id>urn:sha1:b9fe34b1ad280d1ae7f8bc684715d2d1529c60fa</id>
<content type='text'>
This issue was introduce in 4.9 by 246ca110 Autosar SOME/IP protocol support which is after
4.9.3

Signed-off-by: Armin Kuster &lt;akuster808@gmail.com&gt;
</content>
</entry>
</feed>
