]> rtime.felk.cvut.cz Git - coffee/buildroot.git/commit
libsoup: add patch to fix CVE-2011-2054
authorSven Neumann <s.neumann@raumfeld.com>
Sun, 31 Jul 2011 20:18:39 +0000 (22:18 +0200)
committerPeter Korsgaard <jacmet@sunsite.dk>
Thu, 4 Aug 2011 19:22:19 +0000 (21:22 +0200)
commite9394d8ca2a52cac02e7e63bebaf4a71df8bdf2d
tree35c2be69b1181849a99d7bbf4332f261eec94454
parentd49286740aaeacb413dd0aa8822ff06d164ebb27
libsoup: add patch to fix CVE-2011-2054

Fixes a security hole that caused some SoupServer users to
unintentionally allow accessing the entire local filesystem when
they thought they were only providing access to a single directory.

This is the change from libsoup-2.34.3 backported to 2.32.2. It
doesn't include the changes to the test suite though.

Signed-off-by: Sven Neumann <s.neumann@raumfeld.com>
Signed-off-by: Peter Korsgaard <jacmet@sunsite.dk>
package/libsoup/libsoup-CVE-2011-2054.patch [new file with mode: 0644]