From mboxrd@z Thu Jan 1 00:00:00 1970 From: Thomas Petazzoni Date: Tue, 14 Jul 2020 22:51:40 +0200 Subject: [Buildroot] [PATCH 1/1] package/ngircd: security bump to version 26 In-Reply-To: <20200625214011.1531565-1-fontaine.fabrice@gmail.com> References: <20200625214011.1531565-1-fontaine.fabrice@gmail.com> Message-ID: <20200714225140.4e022e85@windsurf.home> List-Id: MIME-Version: 1.0 Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: 7bit To: buildroot@busybox.net On Thu, 25 Jun 2020 23:40:11 +0200 Fabrice Fontaine wrote: > - Fix CVE-2020-14148: The Server-Server protocol implementation in > ngIRCd before 26~rc2 allows an out-of-bounds access, as demonstrated > by the IRC_NJOIN() function. > - Fix a static build failure with openssl thanks to > https://github.com/ngircd/ngircd/commit/ad86a41eeed9f85d74bb50a25fa0bf4515aaf3af > - Update indentation in hash file (two spaces) > > Fixes: > - http://autobuild.buildroot.org/results/078a7afc432786316a1d2ea03f96444ff741b942 > > Signed-off-by: Fabrice Fontaine > --- > package/ngircd/ngircd.hash | 4 ++-- > package/ngircd/ngircd.mk | 6 +++--- > 2 files changed, 5 insertions(+), 5 deletions(-) Applied to master, thanks. Thomas -- Thomas Petazzoni, CTO, Bootlin Embedded Linux and Kernel engineering https://bootlin.com