[OE-core] [master][PATCH] 3/5] bzip2: Security fix CVE-2016-3189

Alexander Kanavin alexander.kanavin at linux.intel.com
Mon Aug 8 12:41:23 UTC 2016


On 07/17/2016 02:04 AM, Armin Kuster wrote:
> +Upstream-Status: Backport
> +https://bugzilla.suse.com/attachment.cgi?id=681334
> +
> +CVE: CVE-2016-3189

Backport means the patch is taken from upstream development repository, 
and it's also good to provide a link to where it is in the upstream.

This looks like a distro vendor fix, so the upstream-status should be 
either pending or inappropriate (depending on the upstream development 
situation).


Alex



More information about the Openembedded-core mailing list