sthttpd: update to 2.27.1

* Fix CVE-2017-10671: Heap-based buffer overflow in the de_dotdot
  function in libhttpd.c

* Update SRC_URI because the original site can not access.

Signed-off-by: Yi Zhao <yi.zhao@windriver.com>
Signed-off-by: Martin Jansa <Martin.Jansa@gmail.com>
This commit is contained in:
Yi Zhao 2017-08-22 11:10:43 +08:00 committed by Martin Jansa
parent e11c66f01f
commit e11367b255

View File

@ -6,13 +6,13 @@ LIC_FILES_CHKSUM = "file://src/thttpd.c;beginline=1;endline=26;md5=0c5762c2c34dc
DEPENDS += "base-passwd"
SRC_URI = "http://opensource.dyc.edu/pub/sthttpd/sthttpd-${PV}.tar.gz \
SRC_URI = "https://github.com/blueness/${BPN}/archive/v${PV}.tar.gz;downloadfilename=${BP}.tar.gz \
file://thttpd.service \
file://thttpd.conf \
file://init"
SRC_URI[md5sum] = "f7dd2d506dc5fad2ad8794b1800d2634"
SRC_URI[sha256sum] = "97d660a881331e93818e872ce11536f461105d70a18dfc5de5895851c4b2afdb"
SRC_URI[md5sum] = "3cda1b6c8c8542b1510eadb8e540d8b6"
SRC_URI[sha256sum] = "a1ee2806432eaf5b5dd267a0523701f9f1fa00fefd499d5bec42165a41e05846"
S = "${WORKDIR}/sthttpd-${PV}"