Please review - security patch CVE-2015-1474

Moritz Bandemer replicant at posteo.mx
Mon Mar 30 15:55:09 UTC 2015


I've merged the patch from here: 
https://android.googlesource.com/platform/frameworks/native/+/38803268570f90e97452cd9a30ac831661829091 
to the Replicant sources and successfully recompiled Replicant after 
that for my device.

After flashing the patched Replicant, I've tested my productive device 
several weeks without any misbehavior.
And of course I have successfully checked, that Replicant isn't 
vulnerale to the "GraphicBuffer overflow vulnerability - CVE-2015-1474" 
anymore.

Ticket reference (Bug #1251): http://redmine.replicant.us/issues/1251
Please review the patch attached and apply it, if you like.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: CVE-2015-1474.patch
Type: text/x-diff
Size: 2059 bytes
Desc: not available
URL: <http://lists.osuosl.org/pipermail/replicant/attachments/20150330/2358b732/attachment.bin>


More information about the Replicant mailing list