* [Buildroot] [PATCH] package/liburiparser: security bump to version 0.9.1
@ 2019-01-06 23:41 Carlos Santos
2019-01-07 7:50 ` Peter Korsgaard
2019-01-24 11:27 ` Peter Korsgaard
0 siblings, 2 replies; 3+ messages in thread
From: Carlos Santos @ 2019-01-06 23:41 UTC (permalink / raw)
To: buildroot
Fixes an out-of-bounds read, the parsing of some a malformed URIs and a
function that reported 1 more byte than actually needed for IPv4 address
URIs. For additional datails, see
https://github.com/uriparser/uriparser/blob/uriparser-0.9.1/ChangeLog
Signed-off-by: Carlos Santos <casantos@datacom.com.br>
---
package/liburiparser/liburiparser.hash | 2 +-
package/liburiparser/liburiparser.mk | 2 +-
2 files changed, 2 insertions(+), 2 deletions(-)
diff --git a/package/liburiparser/liburiparser.hash b/package/liburiparser/liburiparser.hash
index f71dd5cc7b..bbdb37329d 100644
--- a/package/liburiparser/liburiparser.hash
+++ b/package/liburiparser/liburiparser.hash
@@ -1,3 +1,3 @@
# Locally calculated
-sha256 ec67eb34feda8eac166f281799f03ed48387694fca44f6f5852f61f8fb535e2c uriparser-0.9.0.tar.bz2
+sha256 75248f3de3b7b13c8c9735ff7b86ebe72cbb8ad043291517d7d53488e0893abe uriparser-0.9.1.tar.bz2
sha256 ee90029e62d11f48faa59360d15c3ad8e7c094c74cc25b055716d92340da561f COPYING
diff --git a/package/liburiparser/liburiparser.mk b/package/liburiparser/liburiparser.mk
index 62bc8d30d1..529f70190c 100644
--- a/package/liburiparser/liburiparser.mk
+++ b/package/liburiparser/liburiparser.mk
@@ -4,7 +4,7 @@
#
################################################################################
-LIBURIPARSER_VERSION = 0.9.0
+LIBURIPARSER_VERSION = 0.9.1
LIBURIPARSER_SOURCE = uriparser-$(LIBURIPARSER_VERSION).tar.bz2
LIBURIPARSER_SITE = https://github.com/uriparser/uriparser/releases/download/uriparser-$(LIBURIPARSER_VERSION)
LIBURIPARSER_LICENSE = BSD-3-Clause
--
2.20.1
^ permalink raw reply related [flat|nested] 3+ messages in thread
* [Buildroot] [PATCH] package/liburiparser: security bump to version 0.9.1
2019-01-06 23:41 [Buildroot] [PATCH] package/liburiparser: security bump to version 0.9.1 Carlos Santos
@ 2019-01-07 7:50 ` Peter Korsgaard
2019-01-24 11:27 ` Peter Korsgaard
1 sibling, 0 replies; 3+ messages in thread
From: Peter Korsgaard @ 2019-01-07 7:50 UTC (permalink / raw)
To: buildroot
>>>>> "Carlos" == Carlos Santos <casantos@datacom.com.br> writes:
> Fixes an out-of-bounds read, the parsing of some a malformed URIs and a
> function that reported 1 more byte than actually needed for IPv4 address
> URIs. For additional datails, see
> https://github.com/uriparser/uriparser/blob/uriparser-0.9.1/ChangeLog
> Signed-off-by: Carlos Santos <casantos@datacom.com.br>
Committed, thanks.
--
Bye, Peter Korsgaard
^ permalink raw reply [flat|nested] 3+ messages in thread
* [Buildroot] [PATCH] package/liburiparser: security bump to version 0.9.1
2019-01-06 23:41 [Buildroot] [PATCH] package/liburiparser: security bump to version 0.9.1 Carlos Santos
2019-01-07 7:50 ` Peter Korsgaard
@ 2019-01-24 11:27 ` Peter Korsgaard
1 sibling, 0 replies; 3+ messages in thread
From: Peter Korsgaard @ 2019-01-24 11:27 UTC (permalink / raw)
To: buildroot
>>>>> "Carlos" == Carlos Santos <casantos@datacom.com.br> writes:
> Fixes an out-of-bounds read, the parsing of some a malformed URIs and a
> function that reported 1 more byte than actually needed for IPv4 address
> URIs. For additional datails, see
> https://github.com/uriparser/uriparser/blob/uriparser-0.9.1/ChangeLog
> Signed-off-by: Carlos Santos <casantos@datacom.com.br>
Committed to 2018.02.x and 2018.11.x, thanks.
--
Bye, Peter Korsgaard
^ permalink raw reply [flat|nested] 3+ messages in thread
end of thread, other threads:[~2019-01-24 11:27 UTC | newest]
Thread overview: 3+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2019-01-06 23:41 [Buildroot] [PATCH] package/liburiparser: security bump to version 0.9.1 Carlos Santos
2019-01-07 7:50 ` Peter Korsgaard
2019-01-24 11:27 ` Peter Korsgaard
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.