package/libtomcrypt: add CVE trailer in patch
Since Buildroot commit [1] the patches that fixes a security vulnerability needs to reference the fixed vulnerability. This patch adds the relevant information to the patch header. [1] 1167d0ff3d docs/manual: mention CVE trailer Signed-off-by: Thomas Perale <thomas.perale@mind.be> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com> (cherry picked from commit 9265e6973593240104c8f9e2a675c01c6c8e37a3) Signed-off-by: Thomas Perale <thomas.perale@mind.be>
This commit is contained in:
@@ -6,6 +6,7 @@ Subject: [PATCH] Fixes #507
|
||||
Fix a vulnerability in der_decode_utf8_string as specified here:
|
||||
https://github.com/libtom/libtomcrypt/issues/507
|
||||
|
||||
CVE: CVE-2019-17362
|
||||
[for import into Buildroot]
|
||||
Signed-off-by: Thomas De Schampheleire <thomas.de_schampheleire@nokia.com>
|
||||
|
||||
|
||||
Reference in New Issue
Block a user