mirror of
https://git.yoctoproject.org/poky
synced 2026-09-20 21:49:33 +02:00
Backport patch to fix CVE-2026-58050.
References:
https://nvd.nist.gov/vuln/detail/CVE-2026-58050
Upstream fix:
3449752592
(From OE-Core rev: 4b86de3333748d41785365fc62f6afabb454b62b)
Signed-off-by: Adarsh Jagadish Kamini <adarsh.jagadish.kamini@est.tech>
Signed-off-by: Fabien Thomas <fabien.thomas@smile.fr>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
65 lines
2.2 KiB
BlitzBasic
65 lines
2.2 KiB
BlitzBasic
SUMMARY = "A client-side C library implementing the SSH2 protocol"
|
|
HOMEPAGE = "http://www.libssh2.org/"
|
|
SECTION = "libs"
|
|
|
|
DEPENDS = "zlib"
|
|
|
|
LICENSE = "BSD-3-Clause"
|
|
LIC_FILES_CHKSUM = "file://COPYING;md5=2fbf8f834408079bf1fcbadb9814b1bc"
|
|
|
|
SRC_URI = "http://www.libssh2.org/download/${BP}.tar.gz \
|
|
file://run-ptest \
|
|
file://0001-Return-error-if-user-KEX-methods-are-invalid.patch \
|
|
file://CVE-2026-7598.patch \
|
|
file://CVE-2026-55200.patch \
|
|
file://CVE-2026-55199.patch \
|
|
file://CVE-2025-15661-1.patch \
|
|
file://CVE-2025-15661-2.patch \
|
|
file://CVE-2025-15661-3.patch \
|
|
file://CVE-2026-66032.patch \
|
|
file://CVE-2026-66033.patch \
|
|
file://CVE-2026-66034.patch \
|
|
file://CVE-2026-66035.patch \
|
|
file://CVE-2026-58050.patch \
|
|
"
|
|
|
|
SRC_URI[sha256sum] = "d9ec76cbe34db98eec3539fe2c899d26b0c837cb3eb466a56b0f109cabf658f7"
|
|
|
|
inherit autotools pkgconfig ptest
|
|
|
|
EXTRA_OECONF += "\
|
|
--with-libz \
|
|
--with-libz-prefix=${STAGING_LIBDIR} \
|
|
--disable-rpath \
|
|
"
|
|
DISABLE_STATIC = ""
|
|
|
|
# only one of openssl and gcrypt could be set
|
|
PACKAGECONFIG ??= "openssl"
|
|
PACKAGECONFIG[openssl] = "--with-crypto=openssl --with-libssl-prefix=${STAGING_LIBDIR}, , openssl"
|
|
PACKAGECONFIG[gcrypt] = "--with-crypto=libgcrypt --with-libgcrypt-prefix=${STAGING_EXECPREFIXDIR}, , libgcrypt"
|
|
|
|
BBCLASSEXTEND = "native nativesdk"
|
|
|
|
# required for ptest on documentation
|
|
RDEPENDS:${PN}-ptest = "bash man-db openssh util-linux-col"
|
|
RDEPENDS:${PN}-ptest:append:libc-glibc = " locale-base-en-us"
|
|
|
|
do_compile_ptest() {
|
|
sed -i "/\$(MAKE) \$(AM_MAKEFLAGS) check-TESTS/d" tests/Makefile
|
|
oe_runmake check
|
|
}
|
|
|
|
do_install_ptest() {
|
|
install -d ${D}${PTEST_PATH}/tests
|
|
install -m 0755 ${S}/test-driver ${D}${PTEST_PATH}/
|
|
cp -rf ${B}/tests/.libs/* ${D}${PTEST_PATH}/tests/
|
|
cp -rf ${B}/tests/test_simple ${D}${PTEST_PATH}/tests/
|
|
cp -rf ${S}/tests/mansyntax.sh ${D}${PTEST_PATH}/tests/
|
|
cp -rf ${S}/tests/key* ${D}${PTEST_PATH}/tests/
|
|
cp -rf ${S}/tests/openssh_server/ ${D}${PTEST_PATH}/tests/
|
|
cp -rf ${S}/tests/*.test ${D}${PTEST_PATH}/tests/
|
|
mkdir -p ${D}${PTEST_PATH}/docs
|
|
cp -r ${S}/docs/* ${D}${PTEST_PATH}/docs/
|
|
}
|