Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | jq-1.7.1: Backport multiple CVE fixes | Roland Kovacs | 2025-07-10 | 1 | -0/+3 |
| | | | | | | | | | | | | CVE: CVE-2024-23337 CVE: CVE-2024-53427 CVE: CVE-2025-48060 Patches CVE-2024-23337.patch and CVE-2024-53427.patch are backported from jq-1.8.0, and CVE-2025-48060.patch is backported from jq-1.8.1. Signed-off-by: Roland Kovacs <roland.kovacs@est.tech> Signed-off-by: Armin Kuster <akuster808@gmail.com> | ||||
* | jq: upgrade 1.7 -> 1.7.1 | Wang Mingyu | 2023-12-29 | 1 | -0/+46 |
Changelog: ========== - CVE-2023-50246: Fix heap buffer overflow in jvp\_literal\_number\_literal - CVE-2023-50268: fix stack-buffer-overflow if comparing nan with payload Signed-off-by: Wang Mingyu <wangmy@fujitsu.com> Signed-off-by: Khem Raj <raj.khem@gmail.com> |