Go to file
Peter Korsgaard 322599744c unrar: security bump to version 5.5.8
Fixes the following security issues:

CVE-2017-12938 - UnRAR before 5.5.7 allows remote attackers to bypass a
directory-traversal protection mechanism via vectors involving a symlink to
the . directory, a symlink to the .. directory, and a regular file.

CVE-2017-12940 - libunrar.a in UnRAR before 5.5.7 has an out-of-bounds read
in the EncodeFileName::Decode call within the Archive::ReadHeader15
function.

CVE-2017-12941 - libunrar.a in UnRAR before 5.5.7 has an out-of-bounds read
in the Unpack::Unpack20 function.

CVE-2017-12942 - libunrar.a in UnRAR before 5.5.7 has a buffer overflow in
the Unpack::LongLZ function.

For more details, see
http://www.openwall.com/lists/oss-security/2017/08/14/3

While we're at it, add a hash for the license file.

Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
2017-09-08 11:15:08 +02:00
arch arch/arm: add big.LITTLE cpu variants 2017-07-22 23:29:24 +02:00
board configs/imx7dpico: Bump to 4.13 kernel 2017-09-07 21:59:14 +02:00
boot grub2: force -fno-stack-protector in CFLAGS 2017-08-30 22:09:21 +02:00
configs configs/imx7dpico: Bump to 4.13 kernel 2017-09-07 21:59:14 +02:00
docs docs/manual: add appendix about $(HOST_DIR)/usr 2017-09-06 22:13:40 +02:00
fs Merge branch 'next' 2017-09-02 15:10:48 +02:00
linux linux: bump default to version 4.13 2017-09-07 21:08:09 +02:00
package unrar: security bump to version 5.5.8 2017-09-08 11:15:08 +02:00
support support/tests: use relative test_dir 2017-09-05 21:09:06 +02:00
system skeleton: Rename skeleton-sysv to skeleton-init-sysv 2017-08-14 21:52:45 +02:00
toolchain toolchain: add 4.13.x choice for headers 2017-09-07 21:06:03 +02:00
utils scancpan: catch exception when MANIFEST is missing 2017-08-21 23:41:07 +02:00
.defconfig
.gitignore
.gitlab-ci.yml Merge branch 'next' 2017-09-02 15:10:48 +02:00
.gitlab-ci.yml.in .gitlab-ci.yml: use large timeouts for runtime tests 2017-08-10 10:08:55 +02:00
CHANGES Update for 2017.08 2017-09-02 01:17:43 +02:00
Config.in
Config.in.legacy util-linux: add menu items for login utilities 2017-09-02 22:49:12 +02:00
COPYING
DEVELOPERS DEVELOPERS: add myself as maintainer for libpng 2017-09-06 23:54:12 +02:00
Makefile Kickoff 2017.11 cycle 2017-09-02 15:14:27 +02:00
Makefile.legacy
README

Buildroot is a simple, efficient and easy-to-use tool to generate embedded
Linux systems through cross-compilation.

The documentation can be found in docs/manual. You can generate a text
document with 'make manual-text' and read output/docs/manual/manual.text.
Online documentation can be found at http://buildroot.org/docs.html

To build and use the buildroot stuff, do the following:

1) run 'make menuconfig'
2) select the target architecture and the packages you wish to compile
3) run 'make'
4) wait while it compiles
5) find the kernel, bootloader, root filesystem, etc. in output/images

You do not need to be root to build or run buildroot.  Have fun!

Buildroot comes with a basic configuration for a number of boards. Run
'make list-defconfigs' to view the list of provided configurations.

Please feed suggestions, bug reports, insults, and bribes back to the
buildroot mailing list: buildroot@buildroot.org
You can also find us on #buildroot on Freenode IRC.

If you would like to contribute patches, please read
https://buildroot.org/manual.html#submitting-patches