openwrt/package/utils/busybox/patches
Hauke Mehrtens 8b383ee2a0 busybox: awk: fix use after free (CVE-2022-30065)
This backports a commit which fixes a use after free bug in awk.

CVE-2022-30065 description:
A use-after-free in Busybox 1.35-x's awk applet leads to denial of
service and possibly code execution when processing a crafted awk
pattern in the copyvar function.

Signed-off-by: Hauke Mehrtens <hauke@hauke-m.de>
2022-11-05 22:07:09 +01:00
..
001-CVE-2022-30065-awk-fix-use-after-free.patch busybox: awk: fix use after free (CVE-2022-30065) 2022-11-05 22:07:09 +01:00
120-lto-jobserver.patch
200-udhcpc_reduce_msgs.patch
201-udhcpc_changed_ifindex.patch
210-add_netmsg_util.patch
220-add_lock_util.patch
270-libbb_make_unicode_printable.patch
301-ip-link-fix-netlink-msg-size.patch
500-move-traceroute-applets-to-bin.patch
510-move-passwd-applet-to-bin.patch
520-loginutils-handle-crypt-failures.patch
530-nslookup-ensure-unique-transaction-IDs-for-the-DNS-queries.patch busybox: nslookup: ensure unique transaction IDs for the DNS queries 2022-10-14 20:51:35 +02:00