openwrt/package
Petr Štetiar 7561eab8e8 zlib: backport fix for heap-based buffer over-read (CVE-2022-37434)
zlib through 1.2.12 has a heap-based buffer over-read or buffer overflow
in inflate in inflate.c via a large gzip header extra field. NOTE: only
applications that call inflateGetHeader are affected. Some common
applications bundle the affected zlib source code but may be unable to
call inflateGetHeader.

Fixes: CVE-2022-37434
References: https://github.com/ivd38/zlib_overflow
Signed-off-by: Petr Štetiar <ynezz@true.cz>
(cherry picked from commit 7df6795d4c)
2022-08-08 09:46:36 +02:00
..
base-files OpenWrt v22.03.0-rc6: revert to branch defaults 2022-08-01 00:05:33 +02:00
boot uboot-mvebu: update to v2022.07 2022-08-06 22:25:43 +02:00
devel strace: Update to version 5.16 2022-02-01 21:25:02 +01:00
firmware layerscape: update PKG_HASH / PKG_MIRROR_HASH 2022-07-23 00:11:21 +02:00
kernel mac80211: Update to version 5.15.58-1 2022-07-31 17:12:47 +02:00
libs zlib: backport fix for heap-based buffer over-read (CVE-2022-37434) 2022-08-08 09:46:36 +02:00
network odhcpd: update to git HEAD 2022-08-07 12:38:55 +02:00
system opkg: update to 2022-02-24 2022-07-17 15:15:11 +02:00
utils sdk: add spidev-test to the bundle of userspace sources 2022-07-22 22:26:26 +02:00
Makefile build: fix opkg install step for large package selection 2021-05-12 11:13:53 +02:00