[OE-core] [daisy 0/5] Fix security related bugs

Maxin B. John maxin.john at enea.com
Wed Apr 29 09:02:17 UTC 2015


Fixes a number of security related bugs for daisy branch.

Sona Sarmadi (5):
  Qemu: CVE-2014-2894
  libpng16: CVE-2015-0973
  coreutils: parse-datetime: CVE-2014-9471
  elfutils: CVE-2014-9447
  e2fsprogs: CVE-2015-0247

 .../parse-datetime-CVE-2014-9471.patch             | 43 ++++++++++++++++
 meta/recipes-core/coreutils/coreutils_8.22.bb      |  1 +
 .../e2fsprogs/e2fsprogs/CVE-2015-0247.patch        | 58 ++++++++++++++++++++++
 .../recipes-devtools/e2fsprogs/e2fsprogs_1.42.9.bb |  1 +
 .../elfutils/elfutils/CVE-2014-9447.patch          | 50 +++++++++++++++++++
 meta/recipes-devtools/elfutils/elfutils_0.155.bb   |  1 +
 .../qemu/files/ide-CVE-2014-2894.patch             | 46 +++++++++++++++++
 meta/recipes-devtools/qemu/qemu_1.7.0.bb           |  3 +-
 .../libpng/libpng/libpng16-CVE-2015-0973.patch     | 47 ++++++++++++++++++
 meta/recipes-multimedia/libpng/libpng_1.6.8.bb     |  1 +
 10 files changed, 250 insertions(+), 1 deletion(-)
 create mode 100644 meta/recipes-core/coreutils/coreutils-8.22/parse-datetime-CVE-2014-9471.patch
 create mode 100644 meta/recipes-devtools/e2fsprogs/e2fsprogs/CVE-2015-0247.patch
 create mode 100644 meta/recipes-devtools/elfutils/elfutils/CVE-2014-9447.patch
 create mode 100644 meta/recipes-devtools/qemu/files/ide-CVE-2014-2894.patch
 create mode 100644 meta/recipes-multimedia/libpng/libpng/libpng16-CVE-2015-0973.patch

-- 
1.9.1




More information about the Openembedded-core mailing list