diff mbox series

package/liburiparser: security bump to version 0.9.1

Message ID 20190106234131.9393-1-casantos@datacom.com.br
State Accepted
Commit 518eb53ec5c14bfbc41353322cd45127ad43489b
Headers show
Series package/liburiparser: security bump to version 0.9.1 | expand

Commit Message

Carlos Santos Jan. 6, 2019, 11:41 p.m. UTC
Fixes an out-of-bounds read, the parsing of some a malformed URIs and a
function that reported 1 more byte than actually needed for IPv4 address
URIs. For additional datails, see

    https://github.com/uriparser/uriparser/blob/uriparser-0.9.1/ChangeLog

Signed-off-by: Carlos Santos <casantos@datacom.com.br>
---
 package/liburiparser/liburiparser.hash | 2 +-
 package/liburiparser/liburiparser.mk   | 2 +-
 2 files changed, 2 insertions(+), 2 deletions(-)

Comments

Peter Korsgaard Jan. 7, 2019, 7:50 a.m. UTC | #1
>>>>> "Carlos" == Carlos Santos <casantos@datacom.com.br> writes:

 > Fixes an out-of-bounds read, the parsing of some a malformed URIs and a
 > function that reported 1 more byte than actually needed for IPv4 address
 > URIs. For additional datails, see

 >     https://github.com/uriparser/uriparser/blob/uriparser-0.9.1/ChangeLog

 > Signed-off-by: Carlos Santos <casantos@datacom.com.br>

Committed, thanks.
Peter Korsgaard Jan. 24, 2019, 11:27 a.m. UTC | #2
>>>>> "Carlos" == Carlos Santos <casantos@datacom.com.br> writes:

 > Fixes an out-of-bounds read, the parsing of some a malformed URIs and a
 > function that reported 1 more byte than actually needed for IPv4 address
 > URIs. For additional datails, see

 >     https://github.com/uriparser/uriparser/blob/uriparser-0.9.1/ChangeLog

 > Signed-off-by: Carlos Santos <casantos@datacom.com.br>

Committed to 2018.02.x and 2018.11.x, thanks.
diff mbox series

Patch

diff --git a/package/liburiparser/liburiparser.hash b/package/liburiparser/liburiparser.hash
index f71dd5cc7b..bbdb37329d 100644
--- a/package/liburiparser/liburiparser.hash
+++ b/package/liburiparser/liburiparser.hash
@@ -1,3 +1,3 @@ 
 # Locally calculated
-sha256  ec67eb34feda8eac166f281799f03ed48387694fca44f6f5852f61f8fb535e2c  uriparser-0.9.0.tar.bz2
+sha256  75248f3de3b7b13c8c9735ff7b86ebe72cbb8ad043291517d7d53488e0893abe  uriparser-0.9.1.tar.bz2
 sha256  ee90029e62d11f48faa59360d15c3ad8e7c094c74cc25b055716d92340da561f  COPYING
diff --git a/package/liburiparser/liburiparser.mk b/package/liburiparser/liburiparser.mk
index 62bc8d30d1..529f70190c 100644
--- a/package/liburiparser/liburiparser.mk
+++ b/package/liburiparser/liburiparser.mk
@@ -4,7 +4,7 @@ 
 #
 ################################################################################
 
-LIBURIPARSER_VERSION = 0.9.0
+LIBURIPARSER_VERSION = 0.9.1
 LIBURIPARSER_SOURCE = uriparser-$(LIBURIPARSER_VERSION).tar.bz2
 LIBURIPARSER_SITE = https://github.com/uriparser/uriparser/releases/download/uriparser-$(LIBURIPARSER_VERSION)
 LIBURIPARSER_LICENSE = BSD-3-Clause