[OE-core] [PATCH 1/3] readline: Security Advisory - readline - CVE-2014-2524

Kang Kai Kai.Kang at windriver.com
Thu Oct 8 02:13:52 UTC 2015


On 2015年10月06日 23:30, Petter Mabäcker wrote:
>
> 2015-10-06 16:08 skrev Burton, Ross:
>
>>
>> On 6 October 2015 at 14:43, Petter Mabäcker <petter at technux.se 
>> <mailto:petter at technux.se>> wrote:
>>
>>     Great. As you will notice also when formatted properly it will
>>     not apply due to that readline63-001 and readline63-002 isn't
>>     applied so  'patchlevel' is incorrect. That makes me wondering
>>     what the patching strategy is? In my opinion we should consider
>>     adding the official readline-6.3 patches as well. Should I add a
>>     bug report for that or leave it as is (depending on the strategy...)?
>>
>>
>> Adding the rest of the patches would have been a sensible thing to 
>> do.  Right now, we're frozen as we're about to release 2.0, but a bug 
>> or patches post-release would be much appreciated.
>> Ross
> I have created a defect and assigned myself 
> (https://bugzilla.yoctoproject.org/show_bug.cgi?id=8451) and will send 
> something up when the normal integration is open again.
> BR Petter

Sorry for late reply that we had The National Day vacation. I can help 
for this defect if you please.

-- 
Regards,
Neil | Kai Kang

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openembedded.org/pipermail/openembedded-core/attachments/20151008/a0f2a105/attachment-0002.html>


More information about the Openembedded-core mailing list