diff options
author | Vijay Anusuri <vanusuri@mvista.com> | 2025-06-04 09:10:53 +0530 |
---|---|---|
committer | Khem Raj <raj.khem@gmail.com> | 2025-06-03 22:01:47 -0700 |
commit | 547f2a0939cb0335592fefaa5ad52f8514d68cd4 (patch) | |
tree | 3f036e5b1128f2940ec6e6ec34fb06cf27621bcd /meta-perl/recipes-perl/libxml/libxml-libxml-perl/using-DOCB-conditional.patch | |
parent | 09be9f040c7a6df7eba0386cffa6417c89178613 (diff) | |
download | meta-openembedded-547f2a0939cb0335592fefaa5ad52f8514d68cd4.tar.gz |
jq: upgrade 1.7.1 -> 1.8.0
Changelog:
==========
https://github.com/jqlang/jq/releases/tag/jq-1.8.0
Security fixes
* CVE-2024-23337: Fix signed integer overflow in jvp_array_write and jvp_object_rehash. @itchyny de21386
The fix for this issue now limits the maximum size of arrays and objects to 536870912 (2^29) elements.
* CVE-2024-53427: Reject NaN with payload while parsing JSON. @itchyny a09a4df
The fix for this issue now drops support for NaN with payload in JSON (like NaN123).
Other JSON extensions like NaN and Infinity are still supported.
* CVE-2025-48060: Fix heap buffer overflow in jv_string_vfmt. @itchyny c6e0416
* Fix use of uninitialized value in check_literal. @itchyny #3324
* Fix segmentation fault on strftime/1, strflocaltime/1. @itchyny #3271
* Fix unhandled overflow in @base64d. @emanuele6 #3080
Signed-off-by: Vijay Anusuri <vanusuri@mvista.com>
Signed-off-by: Khem Raj <raj.khem@gmail.com>
Diffstat (limited to 'meta-perl/recipes-perl/libxml/libxml-libxml-perl/using-DOCB-conditional.patch')
0 files changed, 0 insertions, 0 deletions