]> git.ipfire.org Git - thirdparty/openembedded/openembedded-core-contrib.git/commit
connman: Fix for CVE-2017-12865
authorSona Sarmadi <sona.sarmadi@enea.com>
Mon, 21 Aug 2017 12:05:34 +0000 (14:05 +0200)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Wed, 23 Aug 2017 07:47:02 +0000 (08:47 +0100)
commit9086b525dd00f482ea68a384540cd30778413c9e
tree964deda3c0af8372664406c9ce0929b33bc6f9eb
parentc55b3706124ef0298be3697a4dcf1fc121f45d75
connman: Fix for CVE-2017-12865

dnsproxy: Fix crash on malformed DNS response
If the response query string is malformed, we might access memory
pass the end of "name" variable in parse_response().

[YOCTO #11959]

(From OE-Core rev: fb3e30e45eea2042fdb0b667cbc2c79ae3f5a1a9)

Signed-off-by: Sona Sarmadi <sona.sarmadi@enea.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
meta/recipes-connectivity/connman/connman/CVE-2017-12865.patch [new file with mode: 0644]
meta/recipes-connectivity/connman/connman_1.34.bb