[OE-core] [master] [PATCH] glibc 2.40: Deferred CVE-2010-4756

2025-01-17 Thread Shubham Pushpkar via lists.openembedded.org
Bug Details: https://nvd.nist.gov/vuln/detail/CVE-2010-4756 Type: Security Advisory CVE: CVE-2010-4756 Score: 4.0 Analysis: - It is a bug in network facing services if users pass in unsanitized inputs to glob, without using appropriate rlimits on memory usage. [1] - Issue is memory exhaustion

[OE-core] [meta-openembedded] [scarthgap] [PATCH] wireshark 4.2.7: Fix CVE-2024-9781

2025-01-07 Thread Shubham Pushpkar via lists.openembedded.org
Upstream Repository: https://gitlab.com/wireshark/wireshark.git Bug Details: https://nvd.nist.gov/vuln/detail/CVE-2024-9781 Type: Security Fix CVE: CVE-2024-9781 Score: 7.8 Patch: https://gitlab.com/wireshark/wireshark/-/commit/cad248ce3bf5 Signed-off-by: Shubham Pushpkar --- .../wireshark/file