[Buildroot] [PATCH] librsvg: security bump to version 2.40.20

Thomas Petazzoni thomas.petazzoni at bootlin.com
Tue Feb 13 21:23:15 UTC 2018


Hello,

On Mon, 12 Feb 2018 22:02:31 +0200, Baruch Siach wrote:
> Fixes CVE-2018-1000041: information disclosure via a crafted SVG file.
> 
> Bump to the latest (maybe last) release in the 2.40.x series. Newer
> versions require a Rust compiler.

Dammit, SVG libraries will now require having a Rust compiler around...

> 
> Signed-off-by: Baruch Siach <baruch at tkos.co.il>
> ---
>  package/librsvg/librsvg.hash | 4 ++--
>  package/librsvg/librsvg.mk   | 2 +-
>  2 files changed, 3 insertions(+), 3 deletions(-)

Anyway, applied to master, thanks!

Thomas
-- 
Thomas Petazzoni, CTO, Bootlin (formerly Free Electrons)
Embedded Linux and Kernel engineering
https://bootlin.com


More information about the buildroot mailing list