mirror of
https://gitlab.com/buildroot.org/buildroot.git
synced 2026-08-08 08:30:47 -09:00
For more information on the release, see: - https://github.com/OISF/libhtp/releases/tag/0.5.51 - https://github.com/OISF/libhtp/releases/tag/0.5.50 - https://github.com/OISF/libhtp/compare/0.5.49...0.5.51 This fixes the following vulnerability: - CVE-2025-53537 LibHTP is a security-aware parser for the HTTP protocol and its related bits and pieces. In versions 0.5.50 and below, there is a traffic-induced memory leak that can starve the process of memory, leading to loss of visibility. To workaround this issue, set `suricata.yaml app-layer.protocols.http.libhtp.default-config.lzma- enabled` to false. This issue is fixed in version 0.5.51. For more information, see: - https://www.cve.org/CVERecord?id=CVE-2025-53537 - https://github.com/OISF/libhtp/security/advisories/GHSA-v3qq-h8mh-vph7 Signed-off-by: Thomas Perale <thomas.perale@mind.be> Signed-off-by: Julien Olivain <ju.o@free.fr>
23 lines
590 B
Makefile
23 lines
590 B
Makefile
################################################################################
|
|
#
|
|
# libhtp
|
|
#
|
|
################################################################################
|
|
|
|
LIBHTP_VERSION = 0.5.51
|
|
LIBHTP_SITE = $(call github,OISF,libhtp,$(LIBHTP_VERSION))
|
|
LIBHTP_LICENSE = BSD-3-Clause
|
|
LIBHTP_LICENSE_FILES = LICENSE
|
|
LIBHTP_CPE_ID_VENDOR = oisf
|
|
LIBHTP_DEPENDENCIES = \
|
|
$(if $(BR2_PACKAGE_LIBICONV),libiconv) \
|
|
zlib
|
|
LIBHTP_INSTALL_STAGING = YES
|
|
# From git
|
|
LIBHTP_AUTORECONF = YES
|
|
|
|
# Let our gcc/wrapper handle SSP
|
|
LIBHTP_CONF_ENV = NO_STACK_PROTECTOR=true
|
|
|
|
$(eval $(autotools-package))
|