generic-poky/meta/recipes-connectivity
Li Wang b629d94030 openssh: CVE-2011-4327
A security flaw was found in the way ssh-keysign,
a ssh helper program for host based authentication,
attempted to retrieve enough entropy information on configurations that
lacked a built-in entropy pool in OpenSSL (a ssh-rand-helper program would
be executed to retrieve the entropy from the system environment).
A local attacker could use this flaw to obtain unauthorized access to host keys
via ptrace(2) process trace attached to the 'ssh-rand-helper' program.

https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2011-4327
http://www.openssh.com/txt/portable-keysign-rand-helper.adv

[YOCTO #3493]

(From OE-Core rev: bdce08215396e5ab99ada5fa0f62c3b002a44582)

Signed-off-by: Li Wang <li.wang@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
2012-11-28 07:41:26 +00:00
..
avahi recipes: bump PR to rebuild after libffi5 -> libffi6 2012-09-19 17:56:26 +01:00
bind bind: make "/etc/init.d/bind stop" work 2012-11-24 15:12:34 +00:00
bluez recipes: few more PR bumps to rebuild after libffi5 -> libffi6 2012-09-19 17:56:26 +01:00
connman PACKAGES_DYNAMIC: use += instead of = in most cases 2012-10-19 18:02:26 +01:00
dhcp dhcp: Update to 4.2.4-P2 2012-11-21 16:55:59 +00:00
gupnp recipes: few more PR bumps to rebuild after libffi5 -> libffi6 2012-09-19 17:56:26 +01:00
iproute2 iproute2: pass CFLAGS to Makefile\ 2012-11-24 15:12:34 +00:00
irda-utils irda-utils: Add missing "inherit update-rc.d" for INITSCRIPT_* 2012-07-02 16:47:44 +01:00
libnss-mdns libnss-mdns: fix mDNS resolving speed 2012-10-18 12:13:39 +01:00
libpcap libpcap: add dependency on libnl 2012-10-02 12:00:04 +01:00
mobile-broadband-provider-info mobile-broadband-provider-info: Fix license warning 2012-03-16 16:47:42 +00:00
nfs-utils nfs-utils: add x32 patch to fix nfsctl issue 2012-09-19 17:56:28 +01:00
ofono ofono: add runtime dependency on dbus 2012-09-04 12:53:01 +01:00
openssh openssh: CVE-2011-4327 2012-11-28 07:41:26 +00:00
openssl recipes-connectivity: replace virtclass-native(sdk) with class-native(sdk) 2012-11-02 16:18:28 +00:00
portmap recipes: Delete patch=1, its default and replace pnum with striplevel 2011-08-23 18:23:30 -07:00
ppp ppp: bump PR to rebuild against libpcap1 instead libpcap 2012-07-29 10:16:15 +01:00
ppp-dialin ppp-dialin: use useradd.bbclass instead of hardcoded adduser/deluser calls 2011-11-30 15:38:30 +00:00
resolvconf resolvconf: Update to 1.68 2012-11-21 16:55:58 +00:00
socat socat 1.7.2: add readline dependency 2012-07-29 10:55:28 +01:00
telepathy libtelepathy: PR bump to rebuild after libffi5 -> libffi6 2012-09-19 17:56:27 +01:00
wireless-tools wireless-tools: Clarify LICENSE field to avoid warnings 2012-03-13 11:45:04 +00:00
wpa-supplicant wpa-supplicant: don't break the DBus service file 2012-10-03 13:37:02 +01:00