Wenzong Fan
b70ef7b95a
python: Fix CVE-2014-7185
...
Integer overflow in bufferobject.c in Python before 2.7.8 allows
context-dependent attackers to obtain sensitive information from
process memory via a large size and offset in a "buffer" function.
This back-ported patch fixes CVE-2014-7185
(From OE-Core rev: 49ceed974e39ab8ac4be410e5caa5e1ef7a646d9)
(From OE-Core rev: 3dd696e03e66fa98b58a17b7f34ffe4002ddc9c6)
Signed-off-by: Wenzong Fan <wenzong.fan@windriver.com>
Signed-off-by: Ross Burton <ross.burton@intel.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
Signed-off-by: Armin Kuster <akuster808@gmail.com>
Conflicts:
meta/recipes-devtools/python/python_2.7.3.bb
hand merged bb file since I did not take previous patch.
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
2014-11-26 17:05:47 +00:00
..
2014-10-02 00:42:43 +01:00
2014-08-15 18:21:49 +01:00
2014-08-25 10:26:00 +01:00
2014-05-02 20:46:59 +01:00
2014-07-25 15:33:58 +01:00
2014-05-02 20:46:59 +01:00
2014-08-28 15:12:44 +01:00
2014-07-17 12:28:50 +01:00
2013-08-26 11:47:19 +01:00
2014-01-14 11:33:52 +00:00
2014-03-02 17:25:28 +00:00
2014-10-31 10:43:59 +00:00
2014-01-02 12:50:18 +00:00
2014-02-17 15:28:59 +00:00
2014-07-19 00:09:01 +01:00
2014-04-25 17:19:19 +01:00
2014-05-11 12:27:21 +01:00
2014-03-19 14:42:43 +00:00
2014-03-19 14:42:43 +00:00
2013-03-25 20:51:19 +00:00
2014-07-16 10:20:50 +01:00
2014-10-10 16:44:32 +01:00
2014-06-17 10:23:53 +01:00
2014-09-10 15:38:55 +01:00
2014-07-03 17:41:17 +01:00
2014-08-23 23:01:57 +01:00
2014-10-18 16:14:03 +02:00
2014-09-22 13:04:21 +01:00
2014-10-11 08:11:03 +01:00
2014-09-30 21:36:14 +01:00
2014-10-10 16:44:33 +01:00
2014-06-01 14:29:29 +01:00
2014-08-23 23:02:00 +01:00
2014-01-02 12:50:24 +00:00
2014-08-02 09:26:16 +01:00
2014-09-16 22:14:06 +01:00
2014-01-02 12:50:23 +00:00
2014-02-28 14:01:16 +00:00
2014-08-28 15:12:44 +01:00
2014-10-06 15:15:50 +01:00
2014-03-17 14:01:41 +00:00
2014-02-17 15:28:59 +00:00
2014-08-23 09:26:10 +01:00
2014-08-23 09:26:10 +01:00
2014-10-06 16:03:13 +01:00
2014-05-02 20:46:59 +01:00
2014-05-02 20:46:59 +01:00
2014-01-02 12:50:18 +00:00
2014-02-28 14:01:16 +00:00
2014-04-23 11:43:28 +01:00
2014-05-08 13:00:32 +01:00
2014-04-23 11:43:28 +01:00
2014-10-18 16:14:05 +02:00
2014-07-17 12:28:50 +01:00
2014-03-19 14:42:43 +00:00
2014-08-23 23:01:59 +01:00
2014-08-02 09:26:17 +01:00
2014-01-02 12:50:18 +00:00
2014-09-22 13:04:22 +01:00
2014-04-25 17:19:19 +01:00
2014-08-28 15:12:42 +01:00
2014-08-23 09:26:10 +01:00
2014-09-30 21:36:14 +01:00
2014-07-17 12:28:49 +01:00
2014-02-02 22:37:40 +00:00
2014-08-15 18:21:49 +01:00
2014-10-06 15:15:51 +01:00
2014-11-26 17:05:47 +00:00
2014-09-10 15:38:55 +01:00
2014-08-28 15:12:44 +01:00
2014-08-11 10:53:05 +01:00
2014-09-30 21:36:13 +01:00
2014-09-16 22:14:09 +01:00
2014-09-03 11:09:07 +01:00
2014-03-19 14:42:43 +00:00
2013-12-03 17:45:52 +00:00
2014-09-30 14:10:36 +01:00
2014-08-23 09:26:12 +01:00
2014-11-21 16:49:37 +00:00
2014-01-02 12:50:18 +00:00
2014-08-23 09:26:11 +01:00
2014-07-03 17:41:16 +01:00
2014-08-28 15:12:44 +01:00
2014-02-20 14:28:13 +00:00
2014-01-02 12:50:18 +00:00
2014-04-10 17:35:15 +01:00
2014-10-10 16:44:32 +01:00
2014-08-23 09:26:10 +01:00
2013-08-13 23:05:58 +01:00
2014-03-31 23:04:35 +01:00