immortalwrt/package
Petr Štetiar 5f189f2f33 zlib: backport fix for heap-based buffer over-read (CVE-2022-37434)
zlib through 1.2.12 has a heap-based buffer over-read or buffer overflow
in inflate in inflate.c via a large gzip header extra field. NOTE: only
applications that call inflateGetHeader are affected. Some common
applications bundle the affected zlib source code but may be unable to
call inflateGetHeader.

Fixes: CVE-2022-37434
References: https://github.com/ivd38/zlib_overflow
Signed-off-by: Petr Štetiar <ynezz@true.cz>
(cherry picked from commit 7df6795d4c)
2022-08-08 10:00:39 +02:00
..
base-files OpenWrt v21.02.3: revert to branch defaults 2022-04-17 21:00:07 +02:00
boot ath79: add support for Yuncore A930 2022-04-16 14:48:45 +02:00
devel binutils: fix libbfd missing DSO dependency if NLS enabled 2021-04-10 14:22:28 +02:00
firmware firmware: intel-microcode: update to 20220510 2022-07-23 00:25:50 +02:00
kernel kernel: Remove kmod-crypto-lib-blake2s 2022-07-04 01:35:37 +02:00
libs zlib: backport fix for heap-based buffer over-read (CVE-2022-37434) 2022-08-08 10:00:39 +02:00
network firewall: config: remove restictions on DHCPv6 allow rule 2022-05-04 15:30:18 +02:00
system rpcd: backport 802.11ax support 2022-02-19 10:01:03 +01:00
utils sdk: add spidev-test to the bundle of userspace sources 2022-07-19 20:27:06 +02:00
Makefile build: fix opkg install step for large package selection 2021-12-31 17:55:29 +01:00