summary refs log tree commit diff
path: root/pkgs/os-specific/linux/wpa_supplicant
diff options
context:
space:
mode:
authorFlorian Klink <flokli@flokli.de>2019-10-14 23:00:05 +0200
committerGitHub <noreply@github.com>2019-10-14 23:00:05 +0200
commitac1aeb4fbbeda940792c9c319c89badd36598705 (patch)
tree6e0b94adce8e75ff84430ba4c9f5b194bf50e2da /pkgs/os-specific/linux/wpa_supplicant
parent918b57821102f398a85a84bb77f5f95262948fde (diff)
parent559687498b4d0777802067a6929cfdb758b8fabb (diff)
downloadnixpkgs-ac1aeb4fbbeda940792c9c319c89badd36598705.tar
nixpkgs-ac1aeb4fbbeda940792c9c319c89badd36598705.tar.gz
nixpkgs-ac1aeb4fbbeda940792c9c319c89badd36598705.tar.bz2
nixpkgs-ac1aeb4fbbeda940792c9c319c89badd36598705.tar.lz
nixpkgs-ac1aeb4fbbeda940792c9c319c89badd36598705.tar.xz
nixpkgs-ac1aeb4fbbeda940792c9c319c89badd36598705.tar.zst
nixpkgs-ac1aeb4fbbeda940792c9c319c89badd36598705.zip
wpa_supplicant: apply patch for CVE-2019-16275 (#70266)
wpa_supplicant: apply patch for CVE-2019-16275
Diffstat (limited to 'pkgs/os-specific/linux/wpa_supplicant')
-rw-r--r--pkgs/os-specific/linux/wpa_supplicant/default.nix8
1 files changed, 8 insertions, 0 deletions
diff --git a/pkgs/os-specific/linux/wpa_supplicant/default.nix b/pkgs/os-specific/linux/wpa_supplicant/default.nix
index 81a9d36972a..99425b6799c 100644
--- a/pkgs/os-specific/linux/wpa_supplicant/default.nix
+++ b/pkgs/os-specific/linux/wpa_supplicant/default.nix
@@ -13,6 +13,14 @@ stdenv.mkDerivation rec {
     sha256 = "05qzak1mssnxcgdrafifxh9w86a4ha69qabkg4bsigk499xyxggw";
   };
 
+  patches = [
+    (fetchurl {
+      name = "CVE-2019-16275.patch";
+      url = "https://w1.fi/security/2019-7/0001-AP-Silently-ignore-management-frame-from-unexpected-.patch";
+      sha256 = "15xjyy7crb557wxpx898b5lnyblxghlij0xby5lmj9hpwwss34dz";
+    })
+  ];
+
   # TODO: Patch epoll so that the dbus actually responds
   # TODO: Figure out how to get privsep working, currently getting SIGBUS
   extraConfig = ''