]> git.ipfire.org Git - thirdparty/openembedded/openembedded-core.git/commit
libjpeg-turbo: patch CVE-2023-2804
authorPeter Marko <peter.marko@siemens.com>
Sun, 23 Jul 2023 11:09:22 +0000 (13:09 +0200)
committerSteve Sakoman <steve@sakoman.com>
Mon, 24 Jul 2023 16:04:09 +0000 (06:04 -1000)
commitca8ede6d29c04159e85c2bdd2b635c58ec6a1484
tree450c57d4c96b5eae1cd42d493804c181fed09f91
parente7d3e02a624f7ce23d012bb11ad1df2049066b37
libjpeg-turbo: patch CVE-2023-2804

Relevant links:
* linked fronm NVD:
  * https://github.com/libjpeg-turbo/libjpeg-turbo/issues/668#issuecomment-1492586118
* follow-up analysis:
  * https://github.com/libjpeg-turbo/libjpeg-turbo/issues/668#issuecomment-1496473989
  * picked commits fix all issues mentioned in this analysis

Signed-off-by: Peter Marko <peter.marko@siemens.com>
Signed-off-by: Steve Sakoman <steve@sakoman.com>
meta/recipes-graphics/jpeg/files/CVE-2023-2804-1.patch [new file with mode: 0644]
meta/recipes-graphics/jpeg/files/CVE-2023-2804-2.patch [new file with mode: 0644]
meta/recipes-graphics/jpeg/libjpeg-turbo_2.1.5.1.bb