openwrt/package/network/services
Hans Dedecker bb7c4cff20 dropbear: backport upstream fix for CVE-2018-15599
CVE description :
The recv_msg_userauth_request function in svr-auth.c in Dropbear through
2018.76 is prone to a user enumeration vulnerability because username
validity affects how fields in SSH_MSG_USERAUTH messages are handled,
a similar issue to CVE-2018-15473 in an unrelated codebase.

Signed-off-by: Hans Dedecker <dedeckeh@gmail.com>
2018-08-27 14:14:57 +02:00
..
authsae treewide: clean up and unify PKG_VERSION for git based downloads 2016-12-22 16:42:21 +01:00
dnsmasq dnsmasq: backport validation fix in dnssec security fix 2018-01-20 14:25:52 +01:00
dropbear dropbear: backport upstream fix for CVE-2018-15599 2018-08-27 14:14:57 +02:00
ead network/services/ead: drop Build/Prepare rule in favor of default one 2016-10-15 11:36:52 +02:00
hostapd wpa_supplicant: fix CVE-2018-14526 2018-08-10 22:19:06 +02:00
igmpproxy igmpproxy: remove firewall rules when service is stopped 2017-12-13 16:49:13 +01:00
ipset-dns treewide: clean up and unify PKG_VERSION for git based downloads 2016-12-22 16:42:21 +01:00
lldpd lldpd: bump to 0.9.7 2017-12-13 15:35:53 +01:00
odhcpd odhcpd: fix managed address configuration setting 2018-05-27 22:09:46 +02:00
omcproxy omcproxy: Update to latest HEAD 2017-12-13 14:36:45 +01:00
openvpn mbedtls: change libmbedcrypto.so soversion back to 0 2018-04-14 14:44:43 +02:00
openvpn-easy-rsa treewide: clean up and unify PKG_VERSION for git based downloads 2016-12-22 16:42:21 +01:00
ppp ppp: make the patches apply correctly again 2017-12-13 16:40:21 +01:00
relayd relayd: fix making incomplete instance json data 2017-02-26 14:38:25 +08:00
samba36 samba36: Remove syslog and load printers lines. 2017-12-13 16:29:22 +01:00
uhttpd uhttpd: fix query string handling 2017-12-13 16:46:36 +01:00
umdns umdns: remove superfluous include in init script 2017-06-02 01:29:51 +02:00
wireguard wireguard: bump to 20180519 2018-05-25 09:30:44 +08:00