summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorSteve Sakoman <steve@sakoman.com>2022-01-31 07:15:20 -1000
committerAnuj Mittal <anuj.mittal@intel.com>2022-02-07 11:01:23 +0800
commita32cee6c9e1ff53e424b8386c36555e6cf3bf3af (patch)
treecb8608acdcc317f75445c477d336e52ef9b7f149
parent8a50809a0e54c66a8a7aafb1b9bffbec009f8c57 (diff)
downloadopenembedded-core-contrib-a32cee6c9e1ff53e424b8386c36555e6cf3bf3af.tar.gz
expat: add missing Upstream-status, CVE tag and sign-off to CVE-2021-46143.patch
Signed-off-by: Steve Sakoman <steve@sakoman.com> (cherry picked from commit 7e33aa25acc0c29b8f5e78757c6557e614eb1434) Signed-off-by: Anuj Mittal <anuj.mittal@intel.com>
-rw-r--r--meta/recipes-core/expat/expat/CVE-2021-46143.patch6
1 files changed, 6 insertions, 0 deletions
diff --git a/meta/recipes-core/expat/expat/CVE-2021-46143.patch b/meta/recipes-core/expat/expat/CVE-2021-46143.patch
index d6bafba0ff..b1a726d9a8 100644
--- a/meta/recipes-core/expat/expat/CVE-2021-46143.patch
+++ b/meta/recipes-core/expat/expat/CVE-2021-46143.patch
@@ -4,6 +4,12 @@ Date: Sat, 25 Dec 2021 20:52:08 +0100
Subject: [PATCH] lib: Prevent integer overflow on m_groupSize in function
doProlog (CVE-2021-46143)
+Upstream-Status: Backport:
+https://github.com/libexpat/libexpat/pull/538/commits/85ae9a2d7d0e9358f356b33977b842df8ebaec2b
+
+CVE: CVE-2021-46143
+
+Signed-off-by: Steve Sakoman <steve@sakoman.com>
---
expat/lib/xmlparse.c | 15 +++++++++++++++
1 file changed, 15 insertions(+)