diff options
| author | yzhu1 <yanjun.zhu@windriver.com> | 2014-06-18 05:41:30 -0400 | 
|---|---|---|
| committer | Richard Purdie <richard.purdie@linuxfoundation.org> | 2014-09-29 11:51:26 +0100 | 
| commit | 4ce30ef254511ce39dd576b80134b9316f9fa06c (patch) | |
| tree | b224ee267a5a8ffd370e6d7e2cb7f8abccb34fc8 /meta/classes/toolchain-scripts.bbclass | |
| parent | e2c81356f68eb0b77408e73f01df5bc5c9f2adb3 (diff) | |
| download | openembedded-core-4ce30ef254511ce39dd576b80134b9316f9fa06c.tar.gz openembedded-core-4ce30ef254511ce39dd576b80134b9316f9fa06c.tar.bz2 openembedded-core-4ce30ef254511ce39dd576b80134b9316f9fa06c.zip | |
nss-3.15.1: fix CVE-2013-1739
Mozilla Network Security Services (NSS) before 3.15.2 does
not ensure that data structures are initialized before
read operations, which allows remote attackers to cause a
denial of service or possibly have unspecified other
impact via vectors that trigger a decryption failure.
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2013-1739
(From OE-Core rev: 9b43af77d112e75fa9827a9080b7e94f41f9a116)
Signed-off-by: yzhu1 <yanjun.zhu@windriver.com>
Signed-off-by: Jackie Huang <jackie.huang@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
Conflicts:
	meta/recipes-support/nss/nss.inc
Diffstat (limited to 'meta/classes/toolchain-scripts.bbclass')
0 files changed, 0 insertions, 0 deletions
