summaryrefslogtreecommitdiff
path: root/scripts/lib/devtool/package.py
diff options
context:
space:
mode:
authorTanu Kaskinen <tanuk@iki.fi>2018-03-20 10:50:23 +0200
committerRichard Purdie <richard.purdie@linuxfoundation.org>2018-03-25 09:33:34 +0100
commit5786e39e040f241f6bade29ba2ce61b7715e1b66 (patch)
tree2fc25ee632311a0114416c30f987c4da649b47ac /scripts/lib/devtool/package.py
parentdb6c0df30acdb9973f9bd4297a5fce4725c0720d (diff)
downloadopenembedded-core-5786e39e040f241f6bade29ba2ce61b7715e1b66.tar.gz
openembedded-core-5786e39e040f241f6bade29ba2ce61b7715e1b66.tar.bz2
openembedded-core-5786e39e040f241f6bade29ba2ce61b7715e1b66.zip
libvorbis: CVE-2017-14632
Xiph.Org libvorbis 1.3.5 allows Remote Code Execution upon freeing uninitialized memory in the function vorbis_analysis_headerout() in info.c when vi->channels<=0, a similar issue to Mozilla bug 550184. References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-14632 Signed-off-by: Tanu Kaskinen <tanuk@iki.fi> Signed-off-by: Ross Burton <ross.burton@intel.com>
Diffstat (limited to 'scripts/lib/devtool/package.py')
0 files changed, 0 insertions, 0 deletions