From 086bdfd378a0eeb85fc18fa7c05fdff64d1a3bea Mon Sep 17 00:00:00 2001 From: Peter Korsgaard Date: Fri, 24 Feb 2012 14:11:16 +0100 Subject: dropbear: bump version, fixes CVE-2012-0920 From the release notes: Security: Fix use-after-free bug that could be triggered if command="..." authorized_keys restrictions are used. Could allow arbitrary code execution or bypass of the command="..." restriction to an authenticated user. Signed-off-by: Peter Korsgaard --- package/dropbear/dropbear.mk | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'package/dropbear/dropbear.mk') diff --git a/package/dropbear/dropbear.mk b/package/dropbear/dropbear.mk index 5fa50bafa..fea96d6aa 100644 --- a/package/dropbear/dropbear.mk +++ b/package/dropbear/dropbear.mk @@ -4,7 +4,7 @@ # ############################################################# -DROPBEAR_VERSION = 2011.54 +DROPBEAR_VERSION = 2012.55 DROPBEAR_SITE = http://matt.ucc.asn.au/dropbear/releases DROPBEAR_TARGET_BINS = dbclient dropbearkey dropbearconvert scp ssh DROPBEAR_MAKE = $(MAKE) MULTI=1 SCPPROGRESS=1 \ -- cgit v1.2.3