diff options
author | Jasper Orschulko <jasper@fancydomain.eu> | 2021-06-21 17:33:22 +0200 |
---|---|---|
committer | Richard Purdie <richard.purdie@linuxfoundation.org> | 2021-07-02 07:44:59 +0100 |
commit | fbb58d5344a17600264529016e75bbe92480b44f (patch) | |
tree | 1d316af80121d36b8c7597ad5520fbb823fe3f55 /scripts/lib/devtool/deploy.py | |
parent | 8a496e9eb9f0540cb5c319451413812b7c51caf9 (diff) | |
download | poky-fbb58d5344a17600264529016e75bbe92480b44f.tar.gz |
libxml2: Fix CVE-2021-3518
There's a flaw in libxml2 in versions before 2.9.11. An attacker who is able to submit a crafted file to be processed by an application linked with libxml2 could trigger a use-after-free. The greatest impact from this flaw is to confidentiality, integrity, and availability.
Upstream-Status: Backport [from fedora:
https://bugzilla.redhat.com/show_bug.cgi?id=1954243]
(From OE-Core rev: ef2a81a473e7c36a36facb209ca907a7439d36f2)
Signed-off-by: Jasper Orschulko <jasper@fancydomain.eu>
Signed-off-by: Steve Sakoman <steve@sakoman.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
Diffstat (limited to 'scripts/lib/devtool/deploy.py')
0 files changed, 0 insertions, 0 deletions