[Buildroot] [PATCH] libcurl: bump version to 7.54.0 (security)

Thomas Petazzoni thomas.petazzoni at free-electrons.com
Thu Apr 20 21:13:32 UTC 2017


Hello,

On Wed, 19 Apr 2017 10:07:42 +0100, Vicente Olivert Riera wrote:
> Security fixes:
>  - CVE-2017-7468: switch off SSL session id when client cert is used
> 
> Full changelog: https://curl.haxx.se/changes.html
> 
> Removing 0001-CVE-2017-7407.patch. It's included in this release:
>   https://github.com/curl/curl/commit/1890d59905414ab84a35892b2e45833654aa5c13
> 
> Signed-off-by: Vicente Olivert Riera <Vincent.Riera at imgtec.com>
> ---
>  package/libcurl/0001-CVE-2017-7407.patch | 61 --------------------------------
>  package/libcurl/libcurl.hash             |  2 +-
>  package/libcurl/libcurl.mk               |  2 +-
>  3 files changed, 2 insertions(+), 63 deletions(-)
>  delete mode 100644 package/libcurl/0001-CVE-2017-7407.patch

Applied to master, thanks.

Peter: we want this for the LTS branch. Thanks!

Thomas
-- 
Thomas Petazzoni, CTO, Free Electrons
Embedded Linux, Kernel and Android engineering
http://free-electrons.com


More information about the buildroot mailing list