Skip to content

Commit

Permalink
sys-kernel/gentoo-sources: Validate the output buffer length for L2CA…
Browse files Browse the repository at this point in the history
…P config reqs and resps to avoid stack buffer overflowing. CVE-2017-1000251. See bug #630840

Package-Manager: Portage-2.3.6, Repoman-2.3.1
  • Loading branch information
mpagano committed Sep 13, 2017
1 parent 59e056e commit 7a1873d
Show file tree
Hide file tree
Showing 2 changed files with 31 additions and 0 deletions.
3 changes: 3 additions & 0 deletions sys-kernel/gentoo-sources/Manifest
Original file line number Diff line number Diff line change
Expand Up @@ -37,6 +37,9 @@ DIST genpatches-4.9-49.extras.tar.xz 17352 SHA256 c2dffccc6da3948e6d8fbda3193e95
DIST genpatches-4.9-50.base.tar.xz 999876 SHA256 033de360c5f3ea42d26ad196b2bb5db44c9bbded5c66234bbb9018ccb6dd2ad1 SHA512 5a5f7114ef51d0d70affd78b9bb16909ef16f7069bc3398c50d2aca660c959cd3097ac773baaa65be325620c04399e126b18ef2b09cb8728725d4ce407b131f1 WHIRLPOOL 63ea77be9fbcfdd2315b53c874829c353133a4092d7be724f0ad1906c8f36057654eb8f9a2a0cdbbc3880c4e46333d2aca5c19c9cbaca6eb9f55b2fe038a2460
DIST genpatches-4.9-50.experimental.tar.xz 106436 SHA256 719cb5daff4b3b65624a4cecd95dd891d4305649ecd2fbbd25136876966f7605 SHA512 62c2f1df889dacc6bc912c772d718776fd9a326a6fe2cc33f88efeeb27ff648af6fdc3cd946bec7d1e7baae3c3749e799c5d64b8bf0c8377b66a8bdb325dc565 WHIRLPOOL 8a8ccd79065db426972517fb578d9a1a1d9a8317a370bcb3aa6c288e5c9a9658171baca6366b1112f597f87ed7487f6d7db7754327d0cc7ff5b2838862ef9163
DIST genpatches-4.9-50.extras.tar.xz 17360 SHA256 5fa1db5d0093b52eac28a7a849b90b1cc3923f7fd046a335db36b48231dcafb6 SHA512 11d187db7d077ab022aa71e14da0786c19f00f38ae97c7feafbfe15fcdd4589c06cdbc175adc7ee3daf66dbf79845b28eab156c3c6728d326f76b2db794b9370 WHIRLPOOL b86fb3002287632156116bcd47387462773782483d4be3276f49904f4400aa12ed9a488fbc494494a7f17a4151e30b501a2bc819741b3c685755bc966aa8a929
DIST genpatches-4.9-51.base.tar.xz 1001928 SHA256 4a329d66dedfad74d8d03bb3d13b6aa2ef04d20ccf2520d39b72b0afab5cbfa9 SHA512 2ab0efa23c556547bd223f066acbebe250346064a3588ee866871e36e3b5b5533ca7a3add6a62b53339acf89dfc8539c42b3877b5a2055ca7e20bc25c5657ca5 WHIRLPOOL c73a7b7c12e399439b3f97061646aeadab5120aaab2c8f8852416ccdbb6a77949b4946a31c1abad910ee1fbc837bef3e86975fd9242a3b8649fbb77f0dddf7ca
DIST genpatches-4.9-51.experimental.tar.xz 106416 SHA256 19a1d1355f4328e9703157b2a37acd97af98952e73c6d3d18b49f6a35a6064b3 SHA512 af7a00b9a3200a50341b9af607fbef362ead2e4f5ca35d58eec505de490c03d6366ab4645e35bbddd6903ac75396413d2902b6a9fc7e2c9d0d1d1254620cfdb3 WHIRLPOOL 23d8d92dadd653c1ef59d8aeab08f3e10246e3dc73ac8e106e1bb51b18c597324188eda0775095d3759829c6095cd06e9634431d86900ca3aca0ec6719ab2ef5
DIST genpatches-4.9-51.extras.tar.xz 17356 SHA256 71d1693dc64d8473b41f5e80e7727b6cc0a74fb632511b3fec0b46a57c0dc26d SHA512 e05c44a5ad1b68afb04647a86efc6f67e03515861e670e39f960c0a02b87fbcb71194efa6773259ee2be5c8362794a5bb6512e876784d5a521d8890865b3ba0e WHIRLPOOL 50d19a31d7cea180980fefa87ef14d13d844539968a353a4c15e86c86913b66e2c8abb45fde999878afd96b78a4e9d81158716a1cbc0f7a6e5fd5c26b33b05b1
DIST linux-3.10.tar.xz 73175088 SHA256 df27fa92d27a9c410bfe6c4a89f141638500d7eadcca5cce578954efc2ad3544 SHA512 5fb109fcbd59bf3dffc911b853894f0a84afa75151368f783a1252c5ff60c7a1504de216c0012be446df983e2dea400ad8eeed3ce04f24dc61d0ef76c174dc35 WHIRLPOOL e7c0ccc2231e430b831218fc66f1940d095d2d5447d391329c6a7373d4a1d16708f64778b32e4847802ee2dae4fcf7cb67a1238fd4eb204fd0c4bce2d8134053
DIST linux-4.1.tar.xz 83017828 SHA256 caf51f085aac1e1cea4d00dbbf3093ead07b551fc07b31b2a989c05f8ea72d9f SHA512 168ef84a4e67619f9f53f3574e438542a5747f9b43443363cb83597fcdac9f40d201625c66e375a23226745eaada9176eb006ca023613cec089349e91751f3c0 WHIRLPOOL 85fcfdb67ea7f865272a85d3b4c3ec1f5a1267f4664bf073c562bb3875e9d96ad68486259d8866a9aced98c95de16840ec531d89745aec75b7315a64ebe650b8
DIST linux-4.12.tar.xz 99186576 SHA256 a45c3becd4d08ce411c14628a949d08e2433d8cdeca92036c7013980e93858ab SHA512 8e81b41b253e63233e92948941f44c6482acb52aa3a3fd172f03a38a86f2c35b2ad4fd407acd1bc3964673eba344fe104d3a03e3ff4bf9cd1f22bd44263bd728 WHIRLPOOL 3b97da251c2ba4ace4a27b708f2b1dcf94cb1b59aaeded6acb74bd98f0d3e33f1df83670665e4186d99a55daa84c88d539d93e20f0ff18a6d46ef326c48dd375
Expand Down
28 changes: 28 additions & 0 deletions sys-kernel/gentoo-sources/gentoo-sources-4.9.49-r1.ebuild
Original file line number Diff line number Diff line change
@@ -0,0 +1,28 @@
# Copyright 1999-2017 Gentoo Foundation
# Distributed under the terms of the GNU General Public License v2

EAPI="6"
ETYPE="sources"
K_WANT_GENPATCHES="base extras experimental"
K_GENPATCHES_VER="51"

inherit kernel-2
detect_version
detect_arch

KEYWORDS="~alpha ~amd64 ~arm ~arm64 ~hppa ~ia64 ~mips ~ppc ~ppc64 ~s390 ~sh ~sparc ~x86"
HOMEPAGE="https://dev.gentoo.org/~mpagano/genpatches"
IUSE="experimental"

DESCRIPTION="Full sources including the Gentoo patchset for the ${KV_MAJOR}.${KV_MINOR} kernel tree"
SRC_URI="${KERNEL_URI} ${GENPATCHES_URI} ${ARCH_URI}"

pkg_postinst() {
kernel-2_pkg_postinst
einfo "For more info on this patchset, and how to report problems, see:"
einfo "${HOMEPAGE}"
}

pkg_postrm() {
kernel-2_pkg_postrm
}

0 comments on commit 7a1873d

Please sign in to comment.