diff options
| author | Sona Sarmadi <sona.sarmadi@enea.com> | 2016-09-14 14:34:38 +0200 | 
|---|---|---|
| committer | Richard Purdie <richard.purdie@linuxfoundation.org> | 2016-09-23 15:26:30 +0100 | 
| commit | 5ebac39d1d6dcf041e05002c0b8bf18bfb38e6d3 (patch) | |
| tree | 75ac0e80ee128240fa9c49cf65c82831edaa4bfb /scripts/lib/wic/plugins | |
| parent | f4ea85d9c33a18f9e18e789a3399cf2d5c4f8164 (diff) | |
| download | openembedded-core-5ebac39d1d6dcf041e05002c0b8bf18bfb38e6d3.tar.gz openembedded-core-5ebac39d1d6dcf041e05002c0b8bf18bfb38e6d3.tar.bz2 openembedded-core-5ebac39d1d6dcf041e05002c0b8bf18bfb38e6d3.zip | |
dropbear: upgrade to 2016.72
The upgrade addresses CVE-2016-3116:
- Validate X11 forwarding input. Could allow bypass of
  authorized_keys command= restrictions,
  found by github.com/tintinweb.
  Thanks for Damien Miller for a patch. CVE-2016-3116
References:
https://matt.ucc.asn.au/dropbear/CHANGES
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-3116
Signed-off-by: Sona Sarmadi <sona.sarmadi@enea.com>
Signed-off-by: Armin Kuster <akuster808@gmail.com>
Diffstat (limited to 'scripts/lib/wic/plugins')
0 files changed, 0 insertions, 0 deletions
