On Thu Jul 23, 2026 at 10:49 AM CEST, Hetvi Thakar -X (hthakar - E INFOCHIPS PRIVATE LIMITED at Cisco) via lists.openembedded.org wrote: > From: Hetvi Thakar <[email protected]> > > This patch applies the upstream fix referenced by NVD in [2], using > the commit shown in [1]. > > [1] > https://cgit.git.savannah.gnu.org/cgit/patch.git/commit/?id=faba04ef4f2b410257f76c1b9dc85e350929c4b9 > [2] https://nvd.nist.gov/vuln/detail/CVE-2026-56289 > > Signed-off-by: Hetvi Thakar <[email protected]> > --- > meta/recipes-devtools/patch/patch.inc | 4 ++- > .../patch/patch/CVE-2026-56289.patch | 36 +++++++++++++++++++ > 2 files changed, 39 insertions(+), 1 deletion(-) > create mode 100644 meta/recipes-devtools/patch/patch/CVE-2026-56289.patch
As fas as I can tell, this patch is also needed on master. I can't merge here until this is fixed on master. Can you send a patch to fix this on these branches and then, ping back here? Thanks! -- Yoann Congal Smile ECS
-=-=-=-=-=-=-=-=-=-=-=- Links: You receive all messages sent to this group. View/Reply Online (#242074): https://lists.openembedded.org/g/openembedded-core/message/242074 Mute This Topic: https://lists.openembedded.org/mt/120407856/21656 Group Owner: [email protected] Unsubscribe: https://lists.openembedded.org/g/openembedded-core/unsub [[email protected]] -=-=-=-=-=-=-=-=-=-=-=-
