diff options
author | Dan Andresan <Dan.Andresan@enea.com> | 2018-10-12 15:52:38 +0200 |
---|---|---|
committer | Dan Andresan <Dan.Andresan@enea.com> | 2018-10-25 12:49:51 +0200 |
commit | ef2a4c85d4e3db75f8a09f355f61ca38c1e3d148 (patch) | |
tree | 29bfecddb02dd8c4b6871ca574591be6aaa03b95 /recipes-core/libxml/libxml2/CVE-2017-16932-detect-infinite-recursion-in-parameter-entities.patch | |
parent | 5b8928cd5f01d83ae27824bb5d411723cabc3108 (diff) | |
download | meta-el-common-ef2a4c85d4e3db75f8a09f355f61ca38c1e3d148.tar.gz |
openssl: fix CVEs
CVE: CVE-2018-0732 CVE-2018-0737 CVE-2018-0739
OpenSSL in the upstream pyro is 1.0.2n.
CVE-2018-0732 and CVE-2018-0737 are first fixed in openssl 1.0.2p.
CVE-2018-0739 is fixed in openssl 1.0.2o.
Reference:
CVE-2018-0732 https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff_plain;h=3984ef0b72831da8b3ece4745cac4f8575b19098
CVE-2018-0737 https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff_plain;h=6939eab03a6e23d2bd2c3f5e34fe1d48e542e787
CVE-2018-0739 https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff_plain;h=9310d45087ae546e27e61ddf8f6367f29848220d
Change-Id: I46f80ef643e5f1c6857cc26086292cd393d3e748
Signed-off-by: Andreas Wellving <andreas.wellving@enea.com>
Signed-off-by: Adrian Mangeac <adrian.mangeac@enea.com>
Diffstat (limited to 'recipes-core/libxml/libxml2/CVE-2017-16932-detect-infinite-recursion-in-parameter-entities.patch')
0 files changed, 0 insertions, 0 deletions