[oe] Dizzy backports

Viguera, Javier Javier.Viguera at digi.com
Mon Dec 15 17:05:15 UTC 2014


Hi all,

Could the following commits be considered for Dizzy backporting? The first one is absolutely needed as the SRC_URI for imagemagick is currently wrong in Dizzy. The second one would be nice to have as it removes a possible security hole.

Both of them are just a cherry-pick away so I don't include here the patches.

commit 7e034ebd5424a19a1a3a6d7a0d00f3c0b138359a
Author: Peter Bigot <pab at pabigot.com>
Date:   Sat Nov 1 16:27:23 2014 -0500

    imagemagick: update URI to allow fetching current and previous releases
    
    The only version available at the original URI is patch 9.  All releases
    are available at the /releases sub-path.
    
    Signed-off-by: Peter A. Bigot <pab at pabigot.com>
    Signed-off-by: Martin Jansa <Martin.Jansa at gmail.com>


commit 56dd9cb399f55223899dbee60a384f752cbc5db7
Author: Javier Viguera <javier.viguera at digi.com>
Date:   Wed Nov 26 09:34:14 2014 +0100

    xserver-common: disable TCP connections
    
    For security reasons disable TCP connections to the xserver.
    
    Signed-off-by: Javier Viguera <javier.viguera at digi.com>
    Signed-off-by: Martin Jansa <Martin.Jansa at gmail.com>


-- jviguera



More information about the Openembedded-devel mailing list