generic-poky/meta/recipes-multimedia
Yue Tao c44d7b5cde libtiff: Security Advisory - CVE-2012-4564
v2 changes:
* update format for commit log
* add Upstream-Status for patch

ppm2tiff does not check the return value of the TIFFScanlineSize
function, which allows remote attackers to cause a denial of service
(crash) and possibly execute arbitrary code via a crafted PPM image that
triggers an integer overflow, a zero-memory allocation, and a heap-based
buffer overflow.

http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-4564

(From OE-Core rev: 9f02922d44de483ef4d02ce95b55efe79a8b09a2)

Signed-off-by: Yue Tao <Yue.Tao@windriver.com>
Signed-off-by: Wenzong Fan <wenzong.fan@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
2014-06-17 10:23:53 +01:00
..
alsa alsa-tools: Add missing pkgconfg dependency 2014-06-14 08:46:02 +01:00
flac autotools-brokensep: Mark recipes with broken separate build dir support 2014-02-28 14:01:16 +00:00
gstreamer gstreamer1.0-rtsp-server: depends on libcgroup and gstreamer1.0-plugins-base 2014-06-14 08:43:55 +01:00
lame lame: Add missing DEPENDS on gettext-native 2014-06-03 16:49:19 +01:00
liba52 Tweak SUMMARY 2014-01-02 22:39:23 +00:00
libav libav: upgrade 9.x version to 9.13 2014-05-21 09:09:02 +01:00
libid3tag Replace one-line DESCRIPTION with SUMMARY 2014-01-02 12:50:18 +00:00
libmad Replace one-line DESCRIPTION with SUMMARY 2014-01-02 12:50:18 +00:00
libogg libogg: upgrade to 1.3.2 2014-06-01 14:29:31 +01:00
libomxil libomxil-0.9.3: fix configure unrecognised option 2014-03-31 22:53:45 +01:00
libpng binconfig-disabled: Add class and use 2014-06-16 15:31:40 +01:00
libsamplerate libsamplerate0: add HOMEPAGE 2014-01-02 12:50:19 +00:00
libsndfile Globally replace 'base_contains' calls with 'bb.utils.contains' 2014-04-25 17:19:19 +01:00
libtheora Upstream-Status: Add Upstream-Status for some missing patches 2011-07-26 15:48:08 +01:00
libtiff libtiff: Security Advisory - CVE-2012-4564 2014-06-17 10:23:53 +01:00
libvorbis libvorbis: upgrade to 1.3.4 2014-02-20 14:28:11 +00:00
mpeg2dec Globally replace 'base_contains' calls with 'bb.utils.contains' 2014-04-25 17:19:19 +01:00
pulseaudio Globally replace 'base_contains' calls with 'bb.utils.contains' 2014-04-25 17:19:19 +01:00
sbc recipes: Add missing pkgconfig class inherits 2014-06-03 16:49:19 +01:00
speex speex: configure in float or fixed mode based on TARGET_FPU 2014-01-28 00:52:32 +00:00
tremor recipes: Add missing pkgconfig class inherits 2014-06-03 16:49:19 +01:00
x264 x264: Update SRCREV to match commit in upstream git repo 2014-06-03 16:49:20 +01:00