tools/patch: apply upstream patch for CVE-2019-13636
authorRussell Senior <russell@personaltelco.net>
Mon, 29 Jul 2019 19:09:09 +0000 (12:09 -0700)
committerPetr Štetiar <ynezz@true.cz>
Wed, 14 Aug 2019 07:12:23 +0000 (09:12 +0200)
commitc99ceb7030ed92926d6e3561b176cb9940daa3cb
tree1b1368b291e09a3037119fca868f962535cfab2a
parent89808e211cd5ef5989bd0becb8cd45f9340610ff
tools/patch: apply upstream patch for CVE-2019-13636

In GNU patch through 2.7.6, the following of symlinks is mishandled in
certain cases other than input files. This affects inp.c and util.c.

https://nvd.nist.gov/vuln/detail/CVE-2019-13636

Signed-off-by: Russell Senior <russell@personaltelco.net>
(cherry picked from commit 995bcc532943639f3df36dbcaa361f9167f9f4d5)
tools/patch/Makefile
tools/patch/patches/050-CVE-2019-13636.patch [new file with mode: 0644]