On 3/22/23 4:29 AM, Changqing Li wrote:
From: Changqing Li <changqing...@windriver.com>

Upgrade urgency: SECURITY, contains fixes to security issues.

Security Fixes:

(CVE-2023-28425) Specially crafted MSETNX command can lead to assertion and 
denial-of-service

I am applying this to langdale then kirkstone

-armin

Bug Fixes
Large blocks of replica client output buffer may lead to PSYNC loops and 
unnecessary memory usage (#11666)
Fix CLIENT REPLY OFF|SKIP to not silence push notifications (#11875)
Trim excessive memory usage in stream nodes when exceeding 
stream-node-max-bytes (#11885)
Fix module RM_Call commands failing with OOM when maxmemory is changed to zero 
(#11319)

Signed-off-by: Changqing Li <changqing...@windriver.com>
---
  .../recipes-extended/redis/{redis_7.0.9.bb => redis_7.0.10.bb}  | 2 +-
  1 file changed, 1 insertion(+), 1 deletion(-)
  rename meta-oe/recipes-extended/redis/{redis_7.0.9.bb => redis_7.0.10.bb} 
(96%)

diff --git a/meta-oe/recipes-extended/redis/redis_7.0.9.bb 
b/meta-oe/recipes-extended/redis/redis_7.0.10.bb
similarity index 96%
rename from meta-oe/recipes-extended/redis/redis_7.0.9.bb
rename to meta-oe/recipes-extended/redis/redis_7.0.10.bb
index e4b2d45a4..5f972033f 100644
--- a/meta-oe/recipes-extended/redis/redis_7.0.9.bb
+++ b/meta-oe/recipes-extended/redis/redis_7.0.10.bb
@@ -19,7 +19,7 @@ SRC_URI = "http://download.redis.io/releases/${BP}.tar.gz \
             file://GNU_SOURCE.patch \
             file://0006-Define-correct-gregs-for-RISCV32.patch \
             "
-SRC_URI[sha256sum] = 
"f77135c2a47c9151d4028bfea3b34470ab4d324d1484f79a84c6f32a3cfb9f65"
+SRC_URI[sha256sum] = 
"1dee4c6487341cae7bd6432ff7590906522215a061fdef87c7d040a0cb600131"
inherit autotools-brokensep update-rc.d systemd useradd



-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.
View/Reply Online (#101635): 
https://lists.openembedded.org/g/openembedded-devel/message/101635
Mute This Topic: https://lists.openembedded.org/mt/97773847/21656
Group Owner: openembedded-devel+ow...@lists.openembedded.org
Unsubscribe: https://lists.openembedded.org/g/openembedded-devel/unsub 
[arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-

Reply via email to