Hi all, I use ELDK v. 5.4 for a PowerPC (MPC5200B) target. Due to [1], upgrading to 5.5.x is not an option for me.
It appears, though, that the glibc coming with 5.4 is vulnerable by CVE-2015-0235 (glibc 'GHOST' gethostbyname buffer overflow; [2]). Before downloading 5.6 - does it have both the gcc/PowerPC glitch *and* the GHOST bug fixed? Or will you provide an update for 5.4? Thanks, Albrecht. [1] <http://lists.denx.de/pipermail/eldk/2014-October/002548.html> [2] <http://www.openwall.com/lists/oss-security/2015/01/27/9>
pgpfS9723LSqS.pgp
Description: PGP signature
_______________________________________________ eldk mailing list [email protected] http://lists.denx.de/mailman/listinfo/eldk
