[meta-freescale] Updates to meta-freescale (master and morty) in 2016-12-09

Otavio Salvador otavio.salvador at gmail.com
Fri Dec 9 03:42:32 PST 2016


Hello,

I pushed following updates:

commit 085f99ae9ecaf2f88e89a050d36e5231334e33bb (HEAD -> master-next, yocto/morty, yocto/master-next, yocto/master)
Author: Yuqing Zhu <carol.zhu at nxp.com>
Date:   Thu Dec 8 13:38:28 2016 +0800

    gstreamer1.0-plugins-bad: Add version number into the name of bbappend file
    
    The bbappend will only work on a specific version, or it may have some conflicts.
    Currently, it is for GST 1.8.
    
    And once the release is final, it does not update the Gstreamer version in poky.
    So it won't raise the parser error.
    
    Signed-off-by: Yuqing Zhu <carol.zhu at nxp.com>
    Signed-off-by: Otavio Salvador <otavio at ossystems.com.br>

commit 666fb7f8fef0c2aac4787ac03f10fb7449d30d55
Author: Yuqing Zhu <carol.zhu at nxp.com>
Date:   Thu Dec 8 13:38:27 2016 +0800

    gstreamer1.0-plugins-base: Add version number into the name of bbappend file
    
    The bbappend will only work on a specific version, or it may have some conflicts.
    Currently, it is for GST 1.8.
    
    And once the release is final, it does not update the Gstreamer version in poky.
    So it won't raise the parser error.
    
    Signed-off-by: Yuqing Zhu <carol.zhu at nxp.com>
    Signed-off-by: Otavio Salvador <otavio at ossystems.com.br>

commit 2771d92cd77abbcb68216b30f6030b47baf7e81e
Author: Tom Hochstein <tom.hochstein at nxp.com>
Date:   Thu Dec 1 10:25:36 2016 -0600

    linux-fslc-imx: Enable CONFIG_FHANDLE
    
    Enable CONFIG_FHANDLE so that systemd can autostart
    getty on serial interfaces like /dev/ttymxc*.
    
    Signed-off-by: Tom Hochstein <tom.hochstein at nxp.com>
    Signed-off-by: Otavio Salvador <otavio at ossystems.com.br>

commit c81b13fce917cfa8a0bb98da18817dcc14ac6b11
Author: Sona Sarmadi <sona.sarmadi at enea.com>
Date:   Wed Nov 30 13:17:39 2016 +0100

    linux-qoriq: fix CVE-2016-0758
    
    Fixes a flaw in the Linux kernel's ASN.1 DER decoder processed
    certain certificate files with tags of indefinite length. A local,
    unprivileged user could use a specially crafted X.509 certificate
    DER file to crash the system or, potentially, escalate their
    privileges on the system.
    
    References:
    https://lkml.org/lkml/2016/5/12/270
    
    Upstream patch:
    https://git.kernel.org/cgit/linux/kernel/git/stable/linux-stable.git/patch/
    ?id=af00ae6ef5a2c73f21ba215c476570b7772a14fb [backported from stable 3.16]
    
    Signed-off-by: Sona Sarmadi <sona.sarmadi at enea.com>
    Signed-off-by: Otavio Salvador <otavio at ossystems.com.br>

commit a870befa7789197b0091cc18c9c5196a848a75c7
Author: Sona Sarmadi <sona.sarmadi at enea.com>
Date:   Wed Nov 30 13:17:38 2016 +0100

    linux-qoriq: fix CVE-2016-2053
    
    The asn1_ber_decoder function in lib/asn1_decoder.c in the Linux
    kernel before 4.3 allows attackers to cause a denial of service
    (panic) via an ASN.1 BER file that lacks a public key, leading
    to mishandling by the public_key_verify_signature function in
    crypto/asymmetric_keys/public_key.c.
    
    References:
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-2053
    
    upstream patch:
    https://git.kernel.org/cgit/linux/kernel/git/stable/linux-stable.git/commit/
    ?id=15430f775ee686b61569a0c3e74cf0b2ad57c8eb [backported from stable 3.16]
    
    Signed-off-by: Sona Sarmadi <sona.sarmadi at enea.com>
    Signed-off-by: Otavio Salvador <otavio at ossystems.com.br>

Regards,

--
Otavio Salvador                             O.S. Systems
http://www.ossystems.com.br        http://code.ossystems.com.br
Mobile: +55 (53) 9981-7854            Mobile: +1 (347) 903-9750


More information about the meta-freescale mailing list