diff options
| author | Steve Sakoman <steve@sakoman.com> | 2022-02-28 05:31:13 -1000 |
|---|---|---|
| committer | Richard Purdie <richard.purdie@linuxfoundation.org> | 2022-03-09 17:30:48 +0000 |
| commit | 746111afa001dc99c95fc56dc242b5f00a0bc1b9 (patch) | |
| tree | 84219a53467479ab47a4a62826da401782e8d52a /scripts/lib/devtool/package.py | |
| parent | e8fef0c8cfe6d110d9c63ded1bc329fd4b77df48 (diff) | |
| download | poky-746111afa001dc99c95fc56dc242b5f00a0bc1b9.tar.gz | |
expat: fix CVE-2022-25236
xmlparse.c in Expat (aka libexpat) before 2.4.5 allows
attackers to insert namespace-separator characters into
namespace URIs.
Backport patches from:
https://github.com/libexpat/libexpat/pull/561/commits
CVE: CVE-2022-25236
(From OE-Core rev: 72ab213c128ef75669447eadcae8219a9f87f941)
Signed-off-by: Steve Sakoman <steve@sakoman.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
Diffstat (limited to 'scripts/lib/devtool/package.py')
0 files changed, 0 insertions, 0 deletions
