libpam: Fix for CVE-2010-4708
authorWenzong Fan <wenzong.fan@windriver.com>
Wed, 19 Jun 2013 03:21:29 +0000 (23:21 -0400)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Wed, 19 Jun 2013 17:03:34 +0000 (18:03 +0100)
commit95fe973dbd4b14ea74a55279d867a5dbf282bcf8
tree0367f15da030f50999c12f4175e17acd8611c45c
parentd9a2eebebe7af7a8147fd94b2e5d1145dbfccc88
libpam: Fix for CVE-2010-4708

Change default for user_readenv to 0 and document the
new default for user_readenv.

This fix from:
http://pam.cvs.sourceforge.net/viewvc/pam/Linux-PAM/modules/pam_env
/pam_env.c?r1=1.22&r2=1.23&view=patch
http://pam.cvs.sourceforge.net/viewvc/pam/Linux-PAM/modules/pam_env
/pam_env.8.xml?r1=1.7&r2=1.8&view=patch

(From OE-Core rev: 871ae7a6453b3b66610fd8bbaa770c92be850e19)

Signed-off-by: Wenzong Fan <wenzong.fan@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
meta/recipes-extended/pam/libpam/libpam-fix-for-CVE-2010-4708.patch [new file with mode: 0644]
meta/recipes-extended/pam/libpam_1.1.6.bb