poky/meta
Zhixiong Chi 98e368e4b6 tiff: Security fix CVE-2016-9540
tools/tiffcp.c in libtiff 4.0.6 has an out-of-bounds write on tiled
images with odd tile width versus image width. Reported as MSVR 35103,
aka "cpStripToTile heap-buffer-overflow."

External References:
https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2016-9540

Patch from:
5ad9d8016f

(From OE-Core rev: cc97dc66006c7892473e3b4790d05e12445bb927)

(From OE-Core rev: ad2c4710ef15c35f6dd4e7642efbceb2cbf81736)

(From OE-Core rev: 6f58c18016258c0a49b4d0ef50d170a1bbb671f4)

Signed-off-by: Zhixiong Chi <zhixiong.chi@windriver.com>
Signed-off-by: Ross Burton <ross.burton@intel.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
Signed-off-by: Armin Kuster <akuster808@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
Signed-off-by: Armin Kuster <akuster808@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
2017-05-18 13:14:21 +01:00
..
classes classes/native: set lt_cv_sys_lib_dlsearch_path_spec 2017-05-18 13:14:19 +01:00
conf xserver-xf86-config: pre-load int10 and exa modules 2016-09-23 15:27:05 +01:00
files ext-sdk-prepare.py: exclude do_rm_work from unexpected output; create unit test 2016-04-18 16:28:21 +01:00
lib oeqa: fix hasPackage, add hasPackageMatch 2017-05-18 13:14:21 +01:00
recipes-bsp apmd: use snapshot.debian.org for SRC_URI 2016-08-01 12:14:39 +01:00
recipes-connectivity openssl: Security fix CVE-2016-8610 2017-05-18 13:14:21 +01:00
recipes-core expat: CVE-2012-6702, CVE-2016-5300 2017-05-18 13:14:21 +01:00
recipes-devtools qemu: Security fix CVE-2016-4952 2017-05-18 13:14:20 +01:00
recipes-extended tzdata: update to 2016i 2017-05-18 13:14:21 +01:00
recipes-gnome librsvg: Security fixes via update to 2.40.15 2016-06-29 19:35:58 +01:00
recipes-graphics weston: Add no-input-device patch to 1.9.0. 2017-05-18 13:14:20 +01:00
recipes-kernel perf: adapt to Makefile.config 2016-11-08 23:47:14 +00:00
recipes-lsb4 libpng12: Handle no static libs 2016-02-15 16:28:46 +00:00
recipes-multimedia tiff: Security fix CVE-2016-9540 2017-05-18 13:14:21 +01:00
recipes-rt linux-yocto-rt, core-image-rt*: Explicitly skip when PREFERRED_PROVIDER_virtual/kernel isn't set to linux-yocto-rt 2016-06-29 19:36:01 +01:00
recipes-sato webkitgtk: remove gnome-common dependency 2016-06-29 19:35:56 +01:00
recipes-support curl: CVE-2016-8625 2017-05-18 13:14:20 +01:00
site meta/site: remove sizeof_off_t 2016-04-12 22:50:21 +01:00
COPYING.GPLv2
COPYING.MIT
recipes.txt qt4: remove recipes and classes 2016-01-07 13:40:14 +00:00