[Buildroot] [PATCH 1/1] package/ngircd: security bump to version 26

Peter Korsgaard peter at korsgaard.com
Wed Jul 22 07:14:12 UTC 2020


>>>>> "Fabrice" == Fabrice Fontaine <fontaine.fabrice at gmail.com> writes:

 > - Fix CVE-2020-14148: The Server-Server protocol implementation in
 >   ngIRCd before 26~rc2 allows an out-of-bounds access, as demonstrated
 >   by the IRC_NJOIN() function.
 > - Fix a static build failure with openssl thanks to
 >   https://github.com/ngircd/ngircd/commit/ad86a41eeed9f85d74bb50a25fa0bf4515aaf3af
 > - Update indentation in hash file (two spaces)

 > Fixes:
 >  - http://autobuild.buildroot.org/results/078a7afc432786316a1d2ea03f96444ff741b942

 > Signed-off-by: Fabrice Fontaine <fontaine.fabrice at gmail.com>

Committed to 2020.02.x and 2020.05.x, thanks.

-- 
Bye, Peter Korsgaard


More information about the buildroot mailing list