Fix CVE-2022-37032 on FRR submodule#12435
Conversation
Patch was cherry picked from FRRouting/frr repo - d8d77d3733bc299ed5dd7b44c4d464ba2bfed288
|
@prsunny , @dgsudharsan appreciate your approval for the change. If someone else needed please add him. |
|
@DavidZagury Can you please change the version number of your patch. I added another patch with same number which just got merged #12453 |
Patch was cherry picked from FRRouting/frr repo - d8d77d3733bc299ed5dd7b44c4d464ba2bfed288
# Conflicts: # src/sonic-frr/patch/series
@dgsudharsan Done |
|
@yxieca kindly reminder to review. this should go to 202205 |
| From d8d77d3733bc299ed5dd7b44c4d464ba2bfed288 Mon Sep 17 00:00:00 2001 | ||
| From: Donald Sharp <sharpd@nvidia.com> | ||
| Date: Wed, 20 Jul 2022 16:43:17 -0400 | ||
| Subject: [PATCH 1/3] ospfclient: Ensure ospf_apiclient_lsa_originate cannot |
There was a problem hiding this comment.
I see "PATCH 1/3" is backport of frr upstream commit. How about others? Could you explain 2/3 and 3/3 in PR description?
I see all 3 parts in the PR link https://github.com/FRRouting/frr/pull/12086/files
* Fix CVE-2022-37032 on FRR submodule Patch was cherry picked from FRRouting/frr repo - d8d77d3733bc299ed5dd7b44c4d464ba2bfed288 * Fix CVE-2022-37032 on FRR submodule Patch was cherry picked from FRRouting/frr repo - d8d77d3733bc299ed5dd7b44c4d464ba2bfed288 * Update patch version number
Patch was cherry picked from FRRouting/frr repo - d8d77d3733bc299ed5dd7b44c4d464ba2bfed288
This patch should be removed once we upgrade to newer version of FRR that will already includes this fix.
Why I did it
To Fix CVE-2022-37032 on FRR submodule
How I did it
Created a patch from the fixed PR of the FRRouting community - FRRouting/frr@d8d77d3
How to verify it
Compile the FRR.
Which release branch to backport (provide reason below if selected)
Description for the changelog
Ensure to add label/tag for the feature raised. example - PR#2174 under sonic-utilities repo. where, Generic Config and Update feature has been labelled as GCU.
Link to config_db schema for YANG module changes
A picture of a cute animal (not mandatory but encouraged)