commit | f4a4df2084b923f29eca2130976ca10a7aa6b719 | [log] [tgz] |
---|---|---|
author | Baruch Siach <baruch@tkos.co.il> | Mon Apr 09 19:20:36 2018 +0300 |
committer | Thomas Petazzoni <thomas.petazzoni@bootlin.com> | Mon Apr 09 20:59:02 2018 +0200 |
tree | 61af17ff06c91879849ddbaad41b59c532e8b6c4 | |
parent | 265aee8c51718fe7370a3dbc91048ff60eb5909c [diff] |
patch: add upstream security fix Fixes CVE-2018-1000156: arbitrary command execution in ed-style patches. Depend on MMU for now, because the patch adds a fork() call. Upstream later switched to gnulib provided execute(), so this dependency can be dropped on the next version bump. Signed-off-by: Baruch Siach <baruch@tkos.co.il> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>