diff options
author | Wenzong Fan <wenzong.fan@windriver.com> | 2017-10-16 02:31:32 -0700 |
---|---|---|
committer | Richard Purdie <richard.purdie@linuxfoundation.org> | 2017-10-16 23:52:04 +0100 |
commit | 9b9f566d2042f2b393de88506d2da964bc4d17b0 (patch) | |
tree | f1147e44abcd7a6963ab3538f9d4fce47546ceb3 /scripts/lib/wic | |
parent | 50e7619aebae5351e9a41fe1b909a31b9e383f0a (diff) | |
download | openembedded-core-9b9f566d2042f2b393de88506d2da964bc4d17b0.tar.gz openembedded-core-9b9f566d2042f2b393de88506d2da964bc4d17b0.tar.bz2 openembedded-core-9b9f566d2042f2b393de88506d2da964bc4d17b0.zip |
sqlite3: fix CVE-2017-13685
The dump_callback function in SQLite 3.20.0 allows remote attackers to
cause a denial of service (EXC_BAD_ACCESS and application crash) via a
crafted file.
Backport patch to fix the issue. Some references:
https://sqlite.org/src/info/02f0f4c54f2819b3
http://www.mail-archive.com/sqlite-users%40mailinglists.sqlite.org/msg105314.html
Signed-off-by: Wenzong Fan <wenzong.fan@windriver.com>
Signed-off-by: Ross Burton <ross.burton@intel.com>
Diffstat (limited to 'scripts/lib/wic')
0 files changed, 0 insertions, 0 deletions