All of lore.kernel.org
 help / color / mirror / Atom feed
* [Buildroot] [PATCH] package/liburiparser: security bump to version 0.9.1
@ 2019-01-06 23:41 Carlos Santos
  2019-01-07  7:50 ` Peter Korsgaard
  2019-01-24 11:27 ` Peter Korsgaard
  0 siblings, 2 replies; 3+ messages in thread
From: Carlos Santos @ 2019-01-06 23:41 UTC (permalink / raw)
  To: buildroot

Fixes an out-of-bounds read, the parsing of some a malformed URIs and a
function that reported 1 more byte than actually needed for IPv4 address
URIs. For additional datails, see

    https://github.com/uriparser/uriparser/blob/uriparser-0.9.1/ChangeLog

Signed-off-by: Carlos Santos <casantos@datacom.com.br>
---
 package/liburiparser/liburiparser.hash | 2 +-
 package/liburiparser/liburiparser.mk   | 2 +-
 2 files changed, 2 insertions(+), 2 deletions(-)

diff --git a/package/liburiparser/liburiparser.hash b/package/liburiparser/liburiparser.hash
index f71dd5cc7b..bbdb37329d 100644
--- a/package/liburiparser/liburiparser.hash
+++ b/package/liburiparser/liburiparser.hash
@@ -1,3 +1,3 @@
 # Locally calculated
-sha256  ec67eb34feda8eac166f281799f03ed48387694fca44f6f5852f61f8fb535e2c  uriparser-0.9.0.tar.bz2
+sha256  75248f3de3b7b13c8c9735ff7b86ebe72cbb8ad043291517d7d53488e0893abe  uriparser-0.9.1.tar.bz2
 sha256  ee90029e62d11f48faa59360d15c3ad8e7c094c74cc25b055716d92340da561f  COPYING
diff --git a/package/liburiparser/liburiparser.mk b/package/liburiparser/liburiparser.mk
index 62bc8d30d1..529f70190c 100644
--- a/package/liburiparser/liburiparser.mk
+++ b/package/liburiparser/liburiparser.mk
@@ -4,7 +4,7 @@
 #
 ################################################################################
 
-LIBURIPARSER_VERSION = 0.9.0
+LIBURIPARSER_VERSION = 0.9.1
 LIBURIPARSER_SOURCE = uriparser-$(LIBURIPARSER_VERSION).tar.bz2
 LIBURIPARSER_SITE = https://github.com/uriparser/uriparser/releases/download/uriparser-$(LIBURIPARSER_VERSION)
 LIBURIPARSER_LICENSE = BSD-3-Clause
-- 
2.20.1

^ permalink raw reply related	[flat|nested] 3+ messages in thread

* [Buildroot] [PATCH] package/liburiparser: security bump to version 0.9.1
  2019-01-06 23:41 [Buildroot] [PATCH] package/liburiparser: security bump to version 0.9.1 Carlos Santos
@ 2019-01-07  7:50 ` Peter Korsgaard
  2019-01-24 11:27 ` Peter Korsgaard
  1 sibling, 0 replies; 3+ messages in thread
From: Peter Korsgaard @ 2019-01-07  7:50 UTC (permalink / raw)
  To: buildroot

>>>>> "Carlos" == Carlos Santos <casantos@datacom.com.br> writes:

 > Fixes an out-of-bounds read, the parsing of some a malformed URIs and a
 > function that reported 1 more byte than actually needed for IPv4 address
 > URIs. For additional datails, see

 >     https://github.com/uriparser/uriparser/blob/uriparser-0.9.1/ChangeLog

 > Signed-off-by: Carlos Santos <casantos@datacom.com.br>

Committed, thanks.

-- 
Bye, Peter Korsgaard

^ permalink raw reply	[flat|nested] 3+ messages in thread

* [Buildroot] [PATCH] package/liburiparser: security bump to version 0.9.1
  2019-01-06 23:41 [Buildroot] [PATCH] package/liburiparser: security bump to version 0.9.1 Carlos Santos
  2019-01-07  7:50 ` Peter Korsgaard
@ 2019-01-24 11:27 ` Peter Korsgaard
  1 sibling, 0 replies; 3+ messages in thread
From: Peter Korsgaard @ 2019-01-24 11:27 UTC (permalink / raw)
  To: buildroot

>>>>> "Carlos" == Carlos Santos <casantos@datacom.com.br> writes:

 > Fixes an out-of-bounds read, the parsing of some a malformed URIs and a
 > function that reported 1 more byte than actually needed for IPv4 address
 > URIs. For additional datails, see

 >     https://github.com/uriparser/uriparser/blob/uriparser-0.9.1/ChangeLog

 > Signed-off-by: Carlos Santos <casantos@datacom.com.br>

Committed to 2018.02.x and 2018.11.x, thanks.

-- 
Bye, Peter Korsgaard

^ permalink raw reply	[flat|nested] 3+ messages in thread

end of thread, other threads:[~2019-01-24 11:27 UTC | newest]

Thread overview: 3+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2019-01-06 23:41 [Buildroot] [PATCH] package/liburiparser: security bump to version 0.9.1 Carlos Santos
2019-01-07  7:50 ` Peter Korsgaard
2019-01-24 11:27 ` Peter Korsgaard

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.