libnl: add upstream security fix
authorBaruch Siach <baruch@tkos.co.il>
Thu, 27 Apr 2017 10:50:58 +0000 (13:50 +0300)
committerPeter Korsgaard <peter@korsgaard.com>
Thu, 27 Apr 2017 12:12:32 +0000 (14:12 +0200)
CVE-2017-0553: An elevation of privilege vulnerability in libnl could enable a
local malicious application to execute arbitrary code within the context of
the Wi-Fi service

https://www.mail-archive.com/debian-bugs-dist@lists.debian.org/msg1511855.html

Signed-off-by: Baruch Siach <baruch@tkos.co.il>
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
package/libnl/libnl.hash
package/libnl/libnl.mk

index 9761a9580cc9306c89bb9e9ece84e7e0bd58edc4..f357927ef7733eb4e24852805f663f7f7a118168 100644 (file)
@@ -1,2 +1,3 @@
 # From https://github.com/thom311/libnl/releases/download/libnl3_2_29/libnl-3.2.29.tar.gz.sha256sum
 sha256 0beb593dc6abfffa18a5c787b27884979c1b7e7f1fd468c801e3cc938a685922        libnl-3.2.29.tar.gz
+sha256 b7bb929194eefc56c786a7e1ae5176b54713f9013ccec63760f232742ae80361        3e18948f17148e6a3c4255bdeaaf01ef6081ceeb.patch
index 6de6825ca3bf6c30e0dd135fc6ef68691a6d3bcb..8226f87487d10b09ffcf06dbb1813d72959855a9 100644 (file)
@@ -13,6 +13,8 @@ LIBNL_DEPENDENCIES = host-bison host-flex host-pkgconf
 # Patching configure.ac
 LIBNL_AUTORECONF = YES
 
+LIBNL_PATCH = https://github.com/thom311/libnl/commit/3e18948f17148e6a3c4255bdeaaf01ef6081ceeb.patch
+
 ifeq ($(BR2_PACKAGE_LIBNL_TOOLS),y)
 LIBNL_CONF_OPTS += --enable-cli
 else