openwrt/tools
Russell Senior dc2f2a16d3 tools/patch: apply upstream patch for cve-2019-13638
GNU patch through 2.7.6 is vulnerable to OS shell command injection that
can be exploited by opening a crafted patch file that contains an ed style

diff payload with shell metacharacters. The ed editor does not need to be
present on the vulnerable system. This is different from CVE-2018-1000156.

https://nvd.nist.gov/vuln/detail/CVE-2019-13638

Signed-off-by: Russell Senior <russell@personaltelco.net>
(cherry picked from commit bcfd1d7685)
2019-08-14 09:12:23 +02:00
..
autoconf
automake add PKG_CPE_ID ids to package and tools 2017-11-17 02:24:35 +01:00
b43-tools
bc
bison tools/bison: Update to 3.0.5 2018-08-21 19:26:08 +02:00
ccache tools/ccache: update to 3.5 2018-12-18 17:22:07 +01:00
cmake tools/cmake: update to 3.11.4 2018-12-18 09:44:04 +01:00
coreutils add PKG_CPE_ID ids to package and tools 2017-11-17 02:24:35 +01:00
dosfstools add PKG_CPE_ID ids to package and tools 2017-11-17 02:24:35 +01:00
e2fsprogs tools/e2fsprogs: Update to 1.44.2 2018-12-18 17:22:08 +01:00
elftosb
expat tools/expat: fix docbook2man error on some systems 2018-12-18 11:28:13 +01:00
findutils tools: findutils: fix compilation with glibc 2.28 2018-08-10 20:50:45 +02:00
firmware-utils tools/firmware-utils: fix sysupgrade typo in mkdapimg2 2019-01-13 10:13:18 +01:00
flex flex: Add a lex symlink 2018-12-18 17:22:07 +01:00
flock
genext2fs
gengetopt
gmp
include
isl
kernel2minor
libelf tools/libelf: Add mirrors as main site is dead 2019-03-17 16:26:05 +01:00
libressl tools/libressl: Add PKG_CPE_ID for proper CVE tracking 2018-12-18 17:22:07 +01:00
libtool add PKG_CPE_ID ids to package and tools 2017-11-17 02:24:35 +01:00
lzma
lzma-old tools/zlib: move zlib build to tools 2018-04-28 15:28:59 +02:00
m4 tools: m4: fix compilation with glibc 2.28 2018-08-10 20:50:45 +02:00
make-ext4fs tools/make-ext4fs: Fix build on MacOSX 2018-04-29 00:57:07 +02:00
missing-macros
mkimage tools: mkimage: provide dtc path during build 2018-04-19 08:34:34 +02:00
mklibs
mm-macros tools/mm-macros: Update to 0.9.12 2018-05-05 07:13:48 +02:00
mpc tools/mpc: Update to 1.1.0 2018-01-18 08:04:18 +01:00
mpfr tools/mpfr: Update to 4.0.1 2018-04-11 21:02:50 +02:00
mtd-utils mtd-utils: add back macOS compatibility code that was dropped during the update 2018-04-30 10:12:55 +02:00
mtools
padjffs2
patch tools/patch: apply upstream patch for cve-2019-13638 2019-08-14 09:12:23 +02:00
patch-image
patchelf
pkg-config tools/pkg-config: Handle variable substitution of 'bindir' to redirect to STAGING_DIR/bin 2019-04-24 07:22:25 +02:00
qemu add PKG_CPE_ID ids to package and tools 2017-11-17 02:24:35 +01:00
quilt
scons tools/scons: update to 3.0.1 2018-01-17 08:52:54 +01:00
sdimage
sed tools/sed: Update to 4.5 2018-05-05 07:13:41 +02:00
sparse
squashfs add PKG_CPE_ID ids to package and tools 2017-11-17 02:24:35 +01:00
squashfs4 tools/zlib: move zlib build to tools 2018-04-28 15:28:59 +02:00
sstrip tools/sstrip: Fix compile under standard linux. 2017-12-08 10:40:20 +01:00
tar tools/tar: update to 1.30 2018-01-20 20:22:01 +01:00
upslug2
wrt350nv2-builder
xz tools/xz: Add PKG_CPE_ID for proper CVE tracking 2018-12-18 17:22:07 +01:00
zlib tools: zlib: do not hardcode the install prefix in zlib.pc 2018-05-24 17:07:57 +02:00
Makefile tools: patch: Fix build by not modifing Makefile.am 2018-12-18 17:22:06 +01:00