[OE-core] [PATCH] unzip: drop 12-cve-2014-9636-test-compr-eb.patch

Burton, Ross ross.burton at intel.com
Mon Jun 29 14:44:44 UTC 2015


On 29 June 2015 at 09:06, <rongqing.li at windriver.com> wrote:

> 12-cve-2014-9636-test-compr-eb.patch is same as unzip-6.0_overflow3.diff,
> is to fix CVE-2014-9636
>

This is going to be sound really picky, but when a patch fixes a CVE I'd
like to start moving towards the patch naming reflecting that (for CVE
verification purposes).  Can you update this patch so it removes the
overflow3 patch instead?

Ross
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openembedded.org/pipermail/openembedded-core/attachments/20150629/e597a6d1/attachment-0002.html>


More information about the Openembedded-core mailing list