mirror of
https://git.yoctoproject.org/poky
synced 2026-06-01 13:09:50 +00:00
flex: Backport buffer overflow fix
Fix a heap-based buffer overflow in yy_get_next_buffer() (CVE-2016-6354). (From OE-Core rev: 68d56306baa21e66756fb44c6c5680e725b1e3bc) Signed-off-by: Jussi Kukkonen <jussi.kukkonen@intel.com> Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
This commit is contained in:
committed by
Richard Purdie
parent
2109c620d4
commit
55a8fe7e49
@@ -15,6 +15,7 @@ SRC_URI = "${SOURCEFORGE_MIRROR}/flex/flex-${PV}.tar.bz2 \
|
||||
file://do_not_create_pdf_doc.patch \
|
||||
file://0001-tests-add-a-target-for-building-tests-without-runnin.patch \
|
||||
file://0002-avoid-c-comments-in-c-code-fails-with-gcc-6.patch \
|
||||
file://CVE-2016-6354.patch \
|
||||
${@bb.utils.contains('PTEST_ENABLED', '1', '', 'file://disable-tests.patch', d)} \
|
||||
"
|
||||
|
||||
|
||||
Reference in New Issue
Block a user