]> git.ipfire.org Git - thirdparty/openembedded/openembedded-core.git/commit
binutils: Fix CVE-2025-5244
authorDeepesh Varatharajan <Deepesh.Varatharajan@windriver.com>
Tue, 10 Jun 2025 04:36:54 +0000 (21:36 -0700)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Thu, 12 Jun 2025 10:02:56 +0000 (11:02 +0100)
commit082c56061e910176dd464702a19858dc0d57431a
treeaac0e5132e04121f170daa8ebd7e3d52fc6a7309
parentefe2e5289333bb6e7fca9cdeff784ab7e4872227
binutils: Fix CVE-2025-5244

PR32858 ld segfault on fuzzed object
We missed one place where it is necessary to check for empty groups.

Backport a patch from upstream to fix CVE-2025-5244
Upstream-Status: Backport [https://sourceware.org/git/?p=binutils-gdb.git;a=patch;h=d1458933830456e54223d9fc61f0d9b3a19256f5]

Signed-off-by: Deepesh Varatharajan <Deepesh.Varatharajan@windriver.com>
Signed-off-by: Mathieu Dubois-Briand <mathieu.dubois-briand@bootlin.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
meta/recipes-devtools/binutils/binutils-2.44.inc
meta/recipes-devtools/binutils/binutils/0019-CVE-2025-5244.patch [new file with mode: 0644]