[yocto-security] [OE-core CVE] branch master-next updated. uninative-2.1-180-gac0b204

cve-notice at lists.openembedded.org cve-notice at lists.openembedded.org
Wed Jun 27 05:56:36 PDT 2018


This is an automated email from the git hooks/post-receive script. It was
generated because a ref change was pushed to the repository containing
the project "".

The branch, master-next has been updated
  discards  dabac132b49968c1982a98bf868b9b4b5d1b7d2b (commit)
  discards  b67acb04ca0aa5cf2d61ec34c612585d16821895 (commit)
  discards  2aef5fa84e2bdb705df49302fe61145ac48a8d95 (commit)
  discards  45163ac66893284db6f126cbb748ba4ef2686700 (commit)
  discards  d01a97fb4bea7118d9837a733b1dbfff1e9298ec (commit)
  discards  4cbcb230ad3724b7089907c7bbd1f0e444734749 (commit)
  discards  d72feae5c79abfc9c08141ae72727c5891f1a0a9 (commit)
  discards  21a4bc39cb5d9b1330015801689e66de14d8ed4c (commit)
  discards  c21b5602e284f62c52e30f997c03cc437d7af575 (commit)
  discards  787e69366d2399c1645a66ffa14e0feeaa3287b9 (commit)
  discards  4040fe4cab797bd8d3cf21d1fbd4e6e8dc7bfabf (commit)
  discards  8935d23feb08c77832c9b3095cae00044f207ad9 (commit)
  discards  8893711cb4d11685ebe5a71a717c3b9afcb49851 (commit)
  discards  6e544e10baae53f133e31da11dc6f5665923569d (commit)
  discards  917cbc3c7a7710318da67e9c9fab9bca2c23d28f (commit)
  discards  be83f5f89b24166835551c979427784792d1315c (commit)
  discards  8d71112254cd3236e9e5f65cb470ecb5f20ec57d (commit)
  discards  6556781f3a4e668445dea07c8db65c0df515492d (commit)
  discards  74d4663ecef92f562a87453c45c1e83bfcfc08d2 (commit)
  discards  dbcd715ae610061b67714b96a07b80b67e086430 (commit)
  discards  19ca5048a7b261d5addb88fd2d16c79be89917c1 (commit)
  discards  959b54737e1b31a1ea53b43730cba1ad71ff844d (commit)
  discards  3cd4859dd39659ddf0f81932b10efea9edda42c8 (commit)
  discards  3dc4e76815d62d6f6f66d0f4f8a0a03120b40e94 (commit)
  discards  aabe594e4ca38c01728082647e1b6af941607b85 (commit)
  discards  332914b350bf266f98cde1940849d106949270d2 (commit)
  discards  defd9c8ef520536d2c4435606d012c0af5036693 (commit)
  discards  0910e4b01640e689d667d1852dca40e583f1ba01 (commit)
  discards  0aa80198dbf9ff22d112c76162a56c6f8900efad (commit)
  discards  2473e8c38cbd4b532eb642f3ede37d6204fc21ac (commit)
  discards  832ab5888f3389a7653daf763a4fddf7e1179d2a (commit)
  discards  2b14264155e84a3df40973d6f604ebbebaf57b21 (commit)
  discards  e8bb2e7daef547860bb3a92bd2f70eb612a626e2 (commit)
  discards  3f04f25b56b4912bcea5172370bb0522662b5ed6 (commit)
  discards  24aa554d49acfd2c73584444919a8a265850057b (commit)
  discards  fa874df10e280a3707a2ef710e9230f0859d55ec (commit)
  discards  574d15b2919a0c3bfea61918a35003324ee52864 (commit)
  discards  ec482984946339cd489f38a8657d25b9bedf1364 (commit)
  discards  685e674d7c65c2eeadb103b7c8ed65c6642a92b7 (commit)
  discards  eb124784ff61c4a3f07f90a5286d4d7cc00ef38d (commit)
  discards  63ba43e3e538736fddae5d7a1ab36f623b90eab4 (commit)
       via  ac0b20484a2ae594182bbb096d6bd127cbc4b74d (commit)
       via  47d3e848232665acff20d8aaec3475a4b87edf6a (commit)
       via  1a0ee6b0f194807b9eac1207c43ba3fae4d1f94c (commit)
       via  bbd9524256461f1bcafd4103edd575e668de76f8 (commit)
       via  68e0080a924654245f04cf92c2579abd9e5bc658 (commit)
       via  1ed072515f2a23de75ee56b86d8607c85b42605c (commit)
       via  cb3c0343becc8bb2ebf4e9c12782c509a3d7754d (commit)
       via  94793d08b0087b7f579b2ca5adae3343864e5f66 (commit)
       via  802c4029f90cee3027b6bc62c5201e8b29f02557 (commit)
       via  b992be195821e110691434e4a743b753bc04b3c4 (commit)
       via  6414d23cd23fc6ed2d31a7b55fce1be82a09ae67 (commit)
       via  458c835fe05279467ab781aab811498ab80f6904 (commit)
       via  31c9b42aaeef3ad66e05e51b8209e87f2a22f091 (commit)
       via  c70b70f045a5ccf62b19060f3438b38d9914e9a2 (commit)
       via  af4f0d44acef328245dfe1bd102bb5e61293ee2d (commit)
       via  747c7dc8702d2241475894876d06a2f1f2b29fed (commit)
       via  369bbf393438ae4a76ab0d1817463c6f735816ea (commit)
       via  dd5208ae22d47504443785daece4bff6331d8904 (commit)
       via  c9fdf3d046606a0becb2e6b566a481c483b9021a (commit)
       via  13269dfbbc62faef32595343dc78250fdb2a2946 (commit)
       via  270a1e9bcf26a43f5cbdc5b901c4c6f79495311d (commit)
       via  15e876ada73fe8e98284d14dec166007b5767f19 (commit)
       via  647db1d9eb65b225ffbb6953f796232026bfa935 (commit)
       via  75529d384bfeaf52befccb892cf41f22dc02668b (commit)
       via  ec9fcdf14d3e2aefc5af1e53a69f056db6ea83f5 (commit)
       via  84980150ff4a2c27acd1f27123f200e03bee8c4b (commit)
       via  c93dc7dd18a752d9523e11c6c4dce1908b5970b4 (commit)
       via  2d9a8a5539342faa1827f4902b1095a9f3448c66 (commit)
       via  b2cd021887e12d9f5b8ba48d9be3c2f2119c8e2a (commit)
       via  da3659155cd1825a4a8d3d7c5288b4273714de15 (commit)
       via  4af90876914e5f2ccc5b7f833cd43c239c2dac55 (commit)
       via  8a771f22980f766b71f3ea0825568fc5c669e444 (commit)
       via  b0338efcdabeec79c568c74b6888d7d523e8e9dc (commit)
       via  f3f394913b4e4a7c601ad1158faaf8b9d493e1c7 (commit)
       via  b3e246fef166030f327b5a852718ea907ada1759 (commit)
       via  a8a2c5ec891286a1e7fd5ebdd33565f9ae3965c2 (commit)
       via  ee48cb68e5d91ba108cccdabce003233290ba816 (commit)
       via  088814ef79015d9df0c8c8bc61219507cfe52ad5 (commit)
       via  c03cef42e079e4ed3d1e4f401722778157158bd6 (commit)
       via  bcdaa93dc70411da8876364ae67d0bf2456a3611 (commit)
       via  e8dfe9799e473e0ba911a0670aa23e8e8d700223 (commit)
       via  e38e56e28f2090e2b8013546f4dd76da8d59f766 (commit)

This update added new revisions after undoing existing revisions.  That is
to say, the old revision is not a strict subset of the new revision.  This
situation occurs when you --force push a change and generate a repository
containing something like this:

 * -- * -- B -- O -- O -- O (dabac132b49968c1982a98bf868b9b4b5d1b7d2b)
            \
             N -- N -- N (ac0b20484a2ae594182bbb096d6bd127cbc4b74d)

When this happens we assume that you've already had alert emails for all
of the O revisions, and so we here report only the revisions in the N
branch from the common base, B.

Those revisions listed above that are new to this repository have
not appeared on any other notification email; so we list those
revisions in full, below.

- Log -----------------------------------------------------------------
commit ac0b20484a2ae594182bbb096d6bd127cbc4b74d
Author: Armin Kuster <akuster808 at gmail.com>
Date:   Sun Jun 24 11:43:48 2018 -0700

    dhcp: update 4.4.1
    
    include several CVE fixes.
    CVE: CVE-2018-5733
    CVE: CVE-2018-5732
    
    LIC_CHKSUM_FILE updated to SPFX format
    
    https://kb.isc.org/article/AA-01571
    
    remove several patches now included in update.
    Shared libarary support is now enabled in configure+lt, use it
    and revert to autotools-brokensep
    Refresh patches
    
    alings support with bind 9.11.x
    
    add libxml2 support to configure.ac+lt
    
    Signed-off-by: Armin Kuster <akuster808 at gmail.com>
    Signed-off-by: Richard Purdie <richard.purdie at linuxfoundation.org>

commit 47d3e848232665acff20d8aaec3475a4b87edf6a
Author: Armin Kuster <akuster808 at gmail.com>
Date:   Sun Jun 24 11:41:46 2018 -0700

    bind: update to ESV version 9.11.3
    
    LIC_FILES_CHKSUM changed do to updated year
    
    removed:
    dont-test-on-host.patch, no longer implemented
    drop use-python3-and-fix-install-lib-path.patch, they added the ability to pass in lib dir loctions
    drop bind-confgen-build-unix.o-once.patch, fix included in update
    
    Refresh other patches:
    add python3 flag for PACKAGECONFIG to pull in python
    add new config option --with-eddsa=no (needs openssl support not released)
    
    [v2]
    Remove python3 in default PACKACKECONFIG
    include https://patchwork.openembedded.org/patch/148257/
    Because of the newly added dependency on meta-python, the python(3)
    packageconfig is no longer "default-on".
    
    Signed-off-by: Martin Hundebøll <mnhu at prevas.dk>
    
    [v3]
    Made formating and spelling changes per Martin
    
    [v4]
    Minor typo fixes
    cleanup python3 support
    
    [v5]
    swtich to 9.11.3 ESV version
    fix isc python install
    keep *.la for dhcp
    update config options
    move mdig to same location as dig
    
    Signed-off-by: Armin Kuster <akuster808 at gmail.com>
    Acked-by: Martin Hundebøll <mnhu at prevas.dk>
    Signed-off-by: Armin Kuster <akuster808 at gmail.com>
    Signed-off-by: Richard Purdie <richard.purdie at linuxfoundation.org>

-----------------------------------------------------------------------

Summary of changes:
 meta/conf/distro/include/maintainers.inc | 2 ++
 scripts/lib/scriptutils.py               | 2 +-
 2 files changed, 3 insertions(+), 1 deletion(-)


hooks/post-receive
-- 



More information about the yocto-security mailing list