]> git.ipfire.org Git - thirdparty/openembedded/openembedded-core-contrib.git/commit
ppp: patch CVE-2024-58250
authorPeter Marko <peter.marko@siemens.com>
Thu, 24 Apr 2025 17:39:36 +0000 (19:39 +0200)
committerSteve Sakoman <steve@sakoman.com>
Fri, 25 Apr 2025 14:58:06 +0000 (07:58 -0700)
commit5350ef531ded14f0b4c32c211aaf993354be1ec9
tree319bc8d4e047e9e7e6f2057f467ccf49715a91c3
parent78a04ce17e7d828c0cf8cae2164882683d46275e
ppp: patch CVE-2024-58250

Backport patch to remove vulnerable component.

This is a breaking change, but there will be no other fix for this CVE
as upstream did the deletion without providing a fix first.
If someone really needs this feature, which the commit message describes
as deprecated, bbappend with patch removal is possible.

License-Update: passprompt plugin removed

Signed-off-by: Peter Marko <peter.marko@siemens.com>
Signed-off-by: Steve Sakoman <steve@sakoman.com>
meta/recipes-connectivity/ppp/ppp/CVE-2024-58250.patch [new file with mode: 0644]
meta/recipes-connectivity/ppp/ppp_2.5.0.bb