[OE-core] [PATCH] gcc-9.2: Security fix for CVE-2019-14250

akuster808 akuster808 at gmail.com
Mon Sep 2 21:33:02 UTC 2019



On 9/2/19 5:40 AM, Adrian Bunk wrote:
> On Sun, Sep 01, 2019 at 10:07:13AM -0700, akuster808 wrote:
>>
>> On 9/1/19 7:05 AM, Adrian Bunk wrote:
>>> thud and zeus are providing 2 gcc versions each that need fixing.
>> That is a true statement. What are you expecting?
> The other versions also being fixed?
>
> gcc-8 being fixed in warrior before it gets fixed in master would be
> the wrong order, and would introduce a security regression in master.
sent a patch. hope it is what is meant by the above.

>
> The code should be nearly identical in warrior and master, so fixing
> this also in gcc-8 in master should be trivial.
>
> Fixing gcc-7 in thud would be a bonus.
>
>> - armin
> cu
> Adrian
>



More information about the Openembedded-core mailing list