]> git.ipfire.org Git - thirdparty/openembedded/openembedded-core-contrib.git/commit
perl: patch CVE-2024-56406
authorPeter Marko <peter.marko@siemens.com>
Sun, 11 May 2025 20:50:51 +0000 (22:50 +0200)
committerSteve Sakoman <steve@sakoman.com>
Tue, 13 May 2025 13:41:55 +0000 (06:41 -0700)
commit8e3c821e9ce8f3a9667847a284bc5a6f4973ea13
treefa2dec6a8ebbd703e0590b1e4fb7b50cf6b2f8cb
parent00f7a2f60dd6de95a1a47fa642978613ce76dc56
perl: patch CVE-2024-56406

Pick patch mentioned in NVD links for this CVE.
Tested by runniing ptest and CVE reproducer (before&after).
Ptest fails on test dist/threads/t/join, however the same test also
fails without this patch.

Signed-off-by: Peter Marko <peter.marko@siemens.com>
Signed-off-by: Steve Sakoman <steve@sakoman.com>
meta/recipes-devtools/perl/files/0001-CVE-2024-56406-Heap-buffer-overflow-with-tr.patch [new file with mode: 0644]
meta/recipes-devtools/perl/perl_5.34.3.bb