[Buildroot] [PATCH 1/2] package/webkitgtk: security bump to version 2.26.3

Adrian Perez de Castro aperez at igalia.com
Thu Jan 30 16:45:11 UTC 2020


On Tue, 28 Jan 2020 08:23:21 +0100, Peter Korsgaard <peter at korsgaard.com> wrote:
> Fixes the following security issues:
> 
> - CVE-2019-8835: Multiple memory corruption issues were addressed with
>   improved memory handling
> 
> - CVE-2019-8844: Multiple memory corruption issues were addressed with
>   improved memory handling
> 
> - CVE-2019-8846: A use after free issue was addressed with improved memory
>   management
> 
> For details, see the advisory:
> https://webkitgtk.org/security/WSA-2020-0001.html
> 
> Drop now upstreamed patch.

Thanks a lot for doing these version bumps. I've been a few days off and
was planning to submit patches today, when I suddenly noticed that the
packages had already been updated. Nice!

—Adrián


-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 195 bytes
Desc: not available
URL: <http://lists.busybox.net/pipermail/buildroot/attachments/20200130/db7a12da/attachment-0002.asc>


More information about the buildroot mailing list