From patchwork Thu Apr 13 22:36:52 2017 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Ross Burton X-Patchwork-Id: 97412 Delivered-To: patch@linaro.org Received: by 10.140.109.52 with SMTP id k49csp46904qgf; Thu, 13 Apr 2017 15:37:24 -0700 (PDT) X-Received: by 10.107.164.142 with SMTP id d14mr7078486ioj.29.1492123044171; Thu, 13 Apr 2017 15:37:24 -0700 (PDT) Return-Path: Received: from mail.openembedded.org (mail.openembedded.org. [140.211.169.62]) by mx.google.com with ESMTP id l126si477586ioa.19.2017.04.13.15.37.16; Thu, 13 Apr 2017 15:37:24 -0700 (PDT) Received-SPF: pass (google.com: best guess record for domain of openembedded-core-bounces@lists.openembedded.org designates 140.211.169.62 as permitted sender) client-ip=140.211.169.62; Authentication-Results: mx.google.com; dkim=neutral (body hash did not verify) header.i=@intel-com.20150623.gappssmtp.com; spf=pass (google.com: best guess record for domain of openembedded-core-bounces@lists.openembedded.org designates 140.211.169.62 as permitted sender) smtp.mailfrom=openembedded-core-bounces@lists.openembedded.org Received: from review.yoctoproject.org (localhost [127.0.0.1]) by mail.openembedded.org (Postfix) with ESMTP id EEFCE77E44; Thu, 13 Apr 2017 22:37:11 +0000 (UTC) X-Original-To: openembedded-core@lists.openembedded.org Delivered-To: openembedded-core@lists.openembedded.org Received: from mail-wr0-f171.google.com (mail-wr0-f171.google.com [209.85.128.171]) by mail.openembedded.org (Postfix) with ESMTP id 2392277E3E for ; Thu, 13 Apr 2017 22:36:53 +0000 (UTC) Received: by mail-wr0-f171.google.com with SMTP id o21so43310392wrb.2 for ; Thu, 13 Apr 2017 15:36:55 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=intel-com.20150623.gappssmtp.com; s=20150623; h=from:to:subject:date:message-id; bh=JiqYwcKyk3cEDX2hcImj6JPylzI/gbx9D3Snu7TVdV8=; b=nLb9TeD8Vt/8AD+aOA+UNCALZpVw87CnF4S7Q1T5QGXaa37LzqCrs7aoMSyDTKrfls bFfC/XsNxHusWwzIIdFI/9r7EzDvrONSy92vX/tHPXYUCT4lwwhEmk8/8pHK7ph3b5Iq MdOdYMgdKlNFM16lFdH48QyReatjLCZx6jINTHpIGkMkME0HVkOsOAuffMI9mmgPR/OW KBrlnduZUH/O18s3UF9MQnCR8t498K2R/741QiQOC6NyXvOChGAec6s3dXjq842CDCts Ks56dt1eBv345Tp9DzmhYvs5lJXYJrTJYU/ml/lDGA8fMmHfcGRqnxZfsrhBHvePEMXl XESw== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:from:to:subject:date:message-id; bh=JiqYwcKyk3cEDX2hcImj6JPylzI/gbx9D3Snu7TVdV8=; b=mFB8yVYyT21K5dXF8zZdsQBq9F2TNZGPhVUJujKyhtnavRIUTzF+kW8elrI5ocjJyG gYAXAq+Ecl9pqpBun6OIN4+S26myn5Ltsf1QELssUTNZi9jbuUAWKFIDkf/yKfl0pkId v729rPoGmly1WmC8fezfFfZJVCbji+TvYYvlMrykaN0R7HKuJC6cb/k03mRDheWlkJyt +h8Iwe4d/dv54xFD9Kk7fIw6sMmdybqfx48Ad2dhs6Hiufg8ELlwEiQ/upR19GauK5tT hiF0YJxba7l6vPrBDw7vg0Q1vDw3Ro+igov17cZeDbIAgL7bN4Bz7/7m29gXwQU21ChV /hWw== X-Gm-Message-State: AN3rC/6ECudcyvWQ+3io9h2L2nynUvXtIz4iIFxnWso0zuQF0sprNLlB E6Zse89YycvjFPPAOkI= X-Received: by 10.223.146.98 with SMTP id 89mr4662912wrj.71.1492123014387; Thu, 13 Apr 2017 15:36:54 -0700 (PDT) Received: from flashheart.burtonini.com (home.burtonini.com. [81.2.106.35]) by smtp.gmail.com with ESMTPSA id k13sm457770wmi.28.2017.04.13.15.36.53 for (version=TLS1_2 cipher=ECDHE-RSA-AES128-SHA bits=128/128); Thu, 13 Apr 2017 15:36:53 -0700 (PDT) From: Ross Burton To: openembedded-core@lists.openembedded.org Date: Thu, 13 Apr 2017 23:36:52 +0100 Message-Id: <1492123012-31330-1-git-send-email-ross.burton@intel.com> X-Mailer: git-send-email 2.8.1 Subject: [OE-core] [PATCH] unzip: add missing CVE headers to patches X-BeenThere: openembedded-core@lists.openembedded.org X-Mailman-Version: 2.1.12 Precedence: list List-Id: Patches and discussions about the oe-core layer List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , MIME-Version: 1.0 Sender: openembedded-core-bounces@lists.openembedded.org Errors-To: openembedded-core-bounces@lists.openembedded.org Signed-off-by: Ross Burton --- .../unzip/unzip/18-cve-2014-9913-unzip-buffer-overflow.patch | 2 +- .../unzip/unzip/19-cve-2016-9844-zipinfo-buffer-overflow.patch | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) -- 2.8.1 -- _______________________________________________ Openembedded-core mailing list Openembedded-core@lists.openembedded.org http://lists.openembedded.org/mailman/listinfo/openembedded-core diff --git a/meta/recipes-extended/unzip/unzip/18-cve-2014-9913-unzip-buffer-overflow.patch b/meta/recipes-extended/unzip/unzip/18-cve-2014-9913-unzip-buffer-overflow.patch index eb76e2e..3c02d59 100644 --- a/meta/recipes-extended/unzip/unzip/18-cve-2014-9913-unzip-buffer-overflow.patch +++ b/meta/recipes-extended/unzip/unzip/18-cve-2014-9913-unzip-buffer-overflow.patch @@ -6,7 +6,7 @@ Bug-Ubuntu: https://launchpad.net/bugs/387350 X-Debian-version: 6.0-21 Upstream-Status: Backport - +CVE: CVE-2014-9913 Signed-off-by: Zhixiong Chi --- a/list.c diff --git a/meta/recipes-extended/unzip/unzip/19-cve-2016-9844-zipinfo-buffer-overflow.patch b/meta/recipes-extended/unzip/unzip/19-cve-2016-9844-zipinfo-buffer-overflow.patch index fd0c024..ffadbc2 100644 --- a/meta/recipes-extended/unzip/unzip/19-cve-2016-9844-zipinfo-buffer-overflow.patch +++ b/meta/recipes-extended/unzip/unzip/19-cve-2016-9844-zipinfo-buffer-overflow.patch @@ -5,7 +5,7 @@ Bug-Ubuntu: https://launchpad.net/bugs/1643750 X-Debian-version: 6.0-21 Upstream-Status: Backport - +CVE: CVE-2016-9844 Signed-off-by: Zhixiong Chi --- a/zipinfo.c