[Buildroot] [PATCH 1/2] apr: security bump to version 1.6.3

Thomas Petazzoni thomas.petazzoni at free-electrons.com
Tue Oct 31 10:57:29 UTC 2017


Hello,

On Mon, 30 Oct 2017 21:11:01 +0200, Baruch Siach wrote:
> Fixes CVE-2017-12613: Out-of-bounds array deref in apr_time_exp*()
> functions.
> 
> Use upstream provided SHA256 hash.
> 
> Add license has.
> 
> Signed-off-by: Baruch Siach <baruch at tkos.co.il>
> ---
>  package/apr/apr.hash | 6 ++++--
>  package/apr/apr.mk   | 2 +-
>  2 files changed, 5 insertions(+), 3 deletions(-)

Both applied, thanks.

Thomas
-- 
Thomas Petazzoni, CTO, Free Electrons
Embedded Linux, Kernel and Android engineering
http://free-electrons.com



More information about the buildroot mailing list