Openembedded Core Discussions
 help / color / mirror / Atom feed
* [PATCH v2 0/3] systemd: Fixes Security fix CVE-2018-16864 - CVE-2018-16866
@ 2019-01-28 11:17 Marcus Cooper
  2019-01-28 11:17 ` [PATCH v2 1/3] systemd: Security fix CVE-2018-16864 Marcus Cooper
                   ` (3 more replies)
  0 siblings, 4 replies; 7+ messages in thread
From: Marcus Cooper @ 2019-01-28 11:17 UTC (permalink / raw)
  To: openembedded-core

Changed in v2:
 - Added CVE tag, Upstream-Status tag and Sign-off-by tags.
 - removed the verification of the entry length in the header
 - squashed CVE-2018-16865 patches into one
 - CVE-2018-16866 patch now taken from systemd-stable and includes
   an additional heap buffer overflow fix.

Marcus Cooper (3):
  systemd: Security fix CVE-2018-16864
  systemd: Security fix CVE-2018-16865
  systemd: Security fix CVE-2018-16866

 ...-not-store-the-iovec-entry-for-process-co.patch | 208 +++++++++++++++++++++
 ...rnald-set-a-limit-on-the-number-of-fields.patch | 139 ++++++++++++++
 ...nal-fix-out-of-bounds-read-CVE-2018-16866.patch |  49 +++++
 meta/recipes-core/systemd/systemd_239.bb           |   3 +
 4 files changed, 399 insertions(+)
 create mode 100644 meta/recipes-core/systemd/systemd/0024-journald-do-not-store-the-iovec-entry-for-process-co.patch
 create mode 100644 meta/recipes-core/systemd/systemd/0025-journald-set-a-limit-on-the-number-of-fields.patch
 create mode 100644 meta/recipes-core/systemd/systemd/0026-journal-fix-out-of-bounds-read-CVE-2018-16866.patch

-- 
2.11.0



^ permalink raw reply	[flat|nested] 7+ messages in thread

end of thread, other threads:[~2019-01-28 17:37 UTC | newest]

Thread overview: 7+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2019-01-28 11:17 [PATCH v2 0/3] systemd: Fixes Security fix CVE-2018-16864 - CVE-2018-16866 Marcus Cooper
2019-01-28 11:17 ` [PATCH v2 1/3] systemd: Security fix CVE-2018-16864 Marcus Cooper
2019-01-28 11:17 ` [PATCH v2 2/3] systemd: Security fix CVE-2018-16865 Marcus Cooper
2019-01-28 11:17 ` [PATCH v2 3/3] systemd: Security fix CVE-2018-16866 Marcus Cooper
2019-01-28 11:20 ` [PATCH v2 0/3] systemd: Fixes Security fix CVE-2018-16864 - CVE-2018-16866 Alexander Kanavin
2019-01-28 16:58   ` Khem Raj
2019-01-28 17:37   ` akuster808

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox