Files
meta-openembedded/meta-oe/recipes-graphics
Yogita Urade ec85533ee5 graphviz: fix CVE-2023-46045
Graphviz 2.36 before 10.0.0 has an out-of-bounds read via a
crafted config6a file. NOTE: exploitability may be uncommon
because this file is typically owned by root.

CVE-2023-46045-0003.patch is the CVE fix and CVE-2023-46045-0001.patch,
CVE-2023-46045-0002.patch are dependent commits to fix the CVE.

Reference:
https://nvd.nist.gov/vuln/detail/CVE-2023-46045

Upstream patches:
https://gitlab.com/graphviz/graphviz/-/commit/361f274ca901c3c476697a6404662d95f4dd43cb
https://gitlab.com/graphviz/graphviz/-/commit/3f31704cafd7da3e86bb2861accf5e90c973e62a
https://gitlab.com/graphviz/graphviz/-/commit/a95f977f5d809915ec4b14836d2b5b7f5e74881e

Signed-off-by: Yogita Urade <yogita.urade@windriver.com>
Signed-off-by: Armin Kuster <akuster808@gmail.com>
2024-08-03 11:58:41 -04:00
..
2024-02-09 09:52:12 -08:00
2023-11-11 09:26:41 -08:00
2024-01-02 00:35:50 -08:00
2024-02-09 09:52:12 -08:00
2024-01-02 00:35:51 -08:00
2024-02-09 09:52:12 -08:00
2024-08-03 11:58:41 -04:00
2024-02-09 09:52:07 -08:00
2024-01-22 18:02:27 -08:00
2023-09-20 15:34:03 -07:00
2024-04-03 17:44:22 -07:00
2024-03-08 10:07:21 -08:00
2023-11-11 09:26:41 -08:00
2023-08-03 09:14:20 -07:00
2023-07-28 07:27:07 -07:00
2023-08-03 09:14:20 -07:00
2024-02-09 09:52:12 -08:00
2024-03-20 09:28:12 -07:00
2023-12-07 14:25:11 -08:00
2024-03-20 09:28:05 -07:00
2023-08-03 09:14:20 -07:00