diff options
author | Vijay Anusuri <vanusuri@mvista.com> | 2025-06-04 09:10:53 +0530 |
---|---|---|
committer | Armin Kuster <akuster808@gmail.com> | 2025-06-20 10:46:50 -0400 |
commit | 3e0cc26e96a5e05ec86b748f1d25f9aff332a4a0 (patch) | |
tree | 22bf771b368c01ac1ab74c7b356687bef24cc023 /meta-python/recipes-devtools/python/python-numeric/0001-it-tries-to-define-this-function-differently-than-it.patch | |
parent | 07be74adfaafda5653f0bcbd06ec3d1aecaa9be4 (diff) | |
download | meta-openembedded-3e0cc26e96a5e05ec86b748f1d25f9aff332a4a0.tar.gz |
jq: upgrade 1.7.1 -> 1.8.0
Changelog:
==========
https://github.com/jqlang/jq/releases/tag/jq-1.8.0
Security fixes
* CVE-2024-23337: Fix signed integer overflow in jvp_array_write and jvp_object_rehash. @itchyny de21386
The fix for this issue now limits the maximum size of arrays and objects to 536870912 (2^29) elements.
* CVE-2024-53427: Reject NaN with payload while parsing JSON. @itchyny a09a4df
The fix for this issue now drops support for NaN with payload in JSON (like NaN123).
Other JSON extensions like NaN and Infinity are still supported.
* CVE-2025-48060: Fix heap buffer overflow in jv_string_vfmt. @itchyny c6e0416
* Fix use of uninitialized value in check_literal. @itchyny #3324
* Fix segmentation fault on strftime/1, strflocaltime/1. @itchyny #3271
* Fix unhandled overflow in @base64d. @emanuele6 #3080
Signed-off-by: Vijay Anusuri <vanusuri@mvista.com>
Signed-off-by: Armin Kuster <akuster808@gmail.com>
Diffstat (limited to 'meta-python/recipes-devtools/python/python-numeric/0001-it-tries-to-define-this-function-differently-than-it.patch')
0 files changed, 0 insertions, 0 deletions