On Wed Jul 22, 2026 at 12:07 PM CEST, Hetvi Thakar -X (hthakar - E INFOCHIPS PRIVATE LIMITED at Cisco) via lists.openembedded.org wrote: > From: Hetvi Thakar <[email protected]> > > This patch applies the upstream fix as referenced in [2], > using the commit shown in [1]. > > [1] > https://gitlab.com/gnuwget/wget/-/commit/43d3ba9336bc94937e6fae2365c6ffd30c34ffcf > [2] https://nvd.nist.gov/vuln/detail/CVE-2026-58470 > > Signed-off-by: Hetvi Thakar <[email protected]> > --- > .../wget/wget/CVE-2026-58470.patch | 79 +++++++++++++++++++ > meta/recipes-extended/wget/wget_1.25.0.bb | 1 + > 2 files changed, 80 insertions(+) > create mode 100644 meta/recipes-extended/wget/wget/CVE-2026-58470.patch
Hello, The master patch you sent contained a regression fix that is not in this wrynose version (also not in your scarthgap version). Can you send a v2 with the regression fix? Thanks! -- Yoann Congal Smile ECS
-=-=-=-=-=-=-=-=-=-=-=- Links: You receive all messages sent to this group. View/Reply Online (#245044): https://lists.openembedded.org/g/openembedded-core/message/245044 Mute This Topic: https://lists.openembedded.org/mt/120391417/21656 Group Owner: [email protected] Unsubscribe: https://lists.openembedded.org/g/openembedded-core/unsub [[email protected]] -=-=-=-=-=-=-=-=-=-=-=-
