mirror of
https://github.com/openembedded/meta-openembedded.git
synced 2026-06-14 17:59:59 +00:00
d126440422
In wpa_supplicant and hostapd 2.9, forging attacks may occur because AlgorithmIdentifier parameters are mishandled in tls/pkcs1.c and tls/x509v3.c. References: https://nvd.nist.gov/vuln/detail/CVE-2021-30004 Upstream patches: https://w1.fi/cgit/hostap/commit/?id=a0541334a6394f8237a4393b7372693cd7e96f15 Signed-off-by: Stefan Ghinea <stefan.ghinea@windriver.com> Signed-off-by: Khem Raj <raj.khem@gmail.com> (cherry picked from commite2bd6a52bf) Signed-off-by: Armin Kuster <akuster808@gmail.com> (cherry picked from commit98c5cddf67) Signed-off-by: Armin Kuster <akuster808@gmail.com> (cherry picked from commit730de4763a) Signed-off-by: Armin Kuster <akuster808@gmail.com>