grub2: Fix CVE-2015-8370
authorRosen Penev <rosenp@gmail.com>
Thu, 23 Aug 2018 02:07:57 +0000 (19:07 -0700)
committerJo-Philipp Wich <jo@mein.io>
Thu, 30 Aug 2018 11:15:02 +0000 (13:15 +0200)
commit6aae528cc3b71819aafdbfe179e1f7ce2a87ea64
treefe8f28f1540c355443a3d575eabbe18218150ed7
parent9d3825a0279a9c70fb16179731f212abf961693e
grub2: Fix CVE-2015-8370

This CVE is a culmination of multiple integer overflow issues that cause
multiple issues like Denial of Service and authentication bypass.

More info: https://nvd.nist.gov/vuln/detail/CVE-2015-8370

Taken from Fedora.

Signed-off-by: Rosen Penev <rosenp@gmail.com>
(cherry picked from commit 7e73e9128f6a63b9198c88eea97c267810447be4)
package/boot/grub2/Makefile
package/boot/grub2/patches/300-CVE-2015-8370.patch [new file with mode: 0644]