diff options
author | Thiruvadi Rajaraman <trajaraman@mvista.com> | 2017-08-30 17:54:52 +0530 |
---|---|---|
committer | Armin Kuster <akuster@mvista.com> | 2017-11-23 17:40:45 -0800 |
commit | fcd40bcd5d79e7ed928b51d48b6a68af3c6b45ca (patch) | |
tree | 4cd2cd8cfbcacadbf2677409a9cee396a16bfc4d /meta/recipes-devtools/binutils/binutils-2.27.inc | |
parent | b8eb2810d4efa5310ed7dbd64716d3d927754832 (diff) | |
download | meta-openembedded-contrib-fcd40bcd5d79e7ed928b51d48b6a68af3c6b45ca.tar.gz |
binutils: CVE-2017-12449, CVE-2017_12455, CVE-2017-12457, CVE-2017-12458, CVE-2017-12459
Source: git://sourceware.org/git/binutils-gdb.git
MR: 73867, 73788, 73762, 73749, 73734
Type: Security Fix
Disposition: Backport from binutils-2_29-branch
ChangeID: 29a1fd75a879d40560b3891305b7d9577e26ffe5
Description:
Fix address violation issues encountered when parsing corrupt binaries.
PR 21840
* mach-o.c (bfd_mach_o_read_symtab_strtab): Fail if the symtab
size is -1.
* nlmcode.h (nlm_swap_auxiliary_headers_in): Replace assertion
with error return.
* section.c (bfd_make_section_with_flags): Fail if the name or bfd
are NULL.
* vms-alpha.c (bfd_make_section_with_flags): Correct computation
of end pointer.
(evax_bfd_print_emh): Check for invalid string lengths.
Fix address violations when reading corrupt VMS records.
PR binutils/21618
* vms-alpha.c (evax_bfd_print_emh): Check for insufficient record
length.
(evax_bfd_print_eeom): Likewise.
(evax_bfd_print_egsd): Check for an overlarge record length.
(evax_bfd_print_etir): Likewise.
Affects: <= 2.29
Signed-off-by: Thiruvadi Rajaraman <trajaraman@mvista.com>
Reviewed-by: Armin Kuster <akuster@mvista.com>
Signed-off-by: Armin Kuster <akuster@mvista.com>
Signed-off-by: Armin Kuster <akuster808@gmail.com>
Diffstat (limited to 'meta/recipes-devtools/binutils/binutils-2.27.inc')
-rw-r--r-- | meta/recipes-devtools/binutils/binutils-2.27.inc | 2 |
1 files changed, 2 insertions, 0 deletions
diff --git a/meta/recipes-devtools/binutils/binutils-2.27.inc b/meta/recipes-devtools/binutils/binutils-2.27.inc index 772df0af30..8cb7abc08a 100644 --- a/meta/recipes-devtools/binutils/binutils-2.27.inc +++ b/meta/recipes-devtools/binutils/binutils-2.27.inc @@ -54,6 +54,8 @@ SRC_URI = "\ file://CVE-2017-9041_2.patch \ file://CVE-2017-7226.patch \ file://CVE-2017-12448.patch \ + file://CVE-2017-12449_12455_12457_1.patch \ + file://CVE-2017-12449_12455_12457.patch \ " S = "${WORKDIR}/git" |