buildroot/package/screen
Peter Korsgaard 6ca1a7c277 package/screen: add security fix for CVE-2021-26937
encoding.c in GNU Screen through 4.8.0 allows remote attackers to cause a
denial of service (invalid write access and application crash) or possibly
have unspecified other impact via a crafted UTF-8 character sequence.

For more details, see the oss-security discussion:
https://www.openwall.com/lists/oss-security/2021/02/09/3

So far no fix has been added to upstream git, and a number of early proposed
fixes caused regressions, so pull the security fix from the screen 4.8.0-5
Debian package.

Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr>
2021-02-27 09:05:56 +01:00
..
0001-no-memcpy-fallback.patch
0002-install-no-backup-binary.patch
0003-install-always-chmod.patch
0004-install-nonversioned-binary.patch
0005-rename-sched_h.patch
0006-comm-h-now-depends-on-term-h.patch
0007-comm.h-needed-for-list_-display-generic-.o.patch
0008_CVE-2021-26937.patch
Config.in
screen.hash
screen.mk