From 7b24b583d100fff504986f21ec6241513e6bfeab Mon Sep 17 00:00:00 2001 From: Hangbin Liu Date: Mon, 6 Nov 2023 16:01:13 +0800 Subject: [PATCH] Rebase to lldpd-1.0.17 Also fix CVE-2023-41910 by including upstream commit a9aeabdf879c ("daemon: fix read overflow when parsing CDP addresses"). CVE: CVE-2023-41910 Resolves: RHEL-2210 Signed-off-by: Hangbin Liu --- .gitignore | 2 ++ lldpd.spec | 7 +++++-- sources | 2 +- 3 files changed, 8 insertions(+), 3 deletions(-) diff --git a/.gitignore b/.gitignore index 5484a81..554efab 100644 --- a/.gitignore +++ b/.gitignore @@ -1,2 +1,4 @@ SOURCES/lldpd-1.0.1.tar.gz /lldpd-1.0.1.tar.gz +/lldpd-1.0.17.tar.gz +/lldpd-1.0.17-free.tar.gz diff --git a/lldpd.spec b/lldpd.spec index 8d89c1b..6039a25 100644 --- a/lldpd.spec +++ b/lldpd.spec @@ -9,8 +9,8 @@ %global gh_owner vincentbernat Name: lldpd -Version: 1.0.1 -Release: 2%{?dist} +Version: 1.0.17 +Release: 1%{?dist} Summary: ISC-licensed implementation of LLDP License: ISC @@ -171,6 +171,9 @@ fi %changelog +* Mon Nov 06 2023 Hangbin Liu - 1.0.17-1 +- Rebased to 1.0.17 [RHEL-2211] + * Thu Aug 09 2018 Josef Ridky - 1.0.1-2 - Rebuild for Net-SNMP diff --git a/sources b/sources index bb94576..5073197 100644 --- a/sources +++ b/sources @@ -1 +1 @@ -SHA512 (lldpd-1.0.1.tar.gz) = 61b2a7a3a78276c613c6d0b34eb625e69e5c8a206b6658a167d6a09ac6d0e1c943e46c0ff6fc3538a791d9947f193185b65848da581b3d6ecb9bc0befadde8dd +SHA512 (lldpd-1.0.17.tar.gz) = 8f6d6ea6a32cc0f238158a2d1f08224224bca250cf61f80e4d8b633c0471e4ff9a17a7a7d7f313f10d557a256c7419f54cbb3b78903b7bba3619f9c5b6c114c8