From: Adolf Belka <adolf.belka@ipfire.org>
To: development@lists.ipfire.org
Cc: Adolf Belka <adolf.belka@ipfire.org>
Subject: [PATCH] libpcap: Update to version 1.10.7
Date: Sun, 13 Sep 2026 19:12:20 +0200 [thread overview]
Message-ID: <20260913171230.3920551-21-adolf.belka@ipfire.org> (raw)
In-Reply-To: <20260913171230.3920551-1-adolf.belka@ipfire.org>
- Update from version 1.10.6 to 1.10.7
- Update of rootfile
- 7 CVE fixes
- Changelog
1.10.7
General:
Free p->opt.device on close, not on cleanup (issue #1615). Issue
reported by Harrison Green.
Source code:
Deprecate bpf_filter().
Packet filtering:
Initialize the scratch memory store to 0.
In "net <n> mask <m>" catch ENOMEM for the "m" too.
CVE-2026-0799: Access M[] safely in the BPF interpreter.
CVE-2026-31912: Mind the program bounds in pcap_offline_filter().
CVE-2026-31911: Fail opcodes safely in the BPF interpreter.
CVE-2026-6244: Avoid division by zero via pcap_offline_filter().
CVE-2026-6554: Limit "ja L" looping in pcap_offline_filter().
Validate BPF opcodes stricter.
For "lsh" and "rsh" guard "#k" as well.
Windows:
Fix error return from memory allocation error.
rpcap:
CVE-2026-18313: Fix a memory leak in rpcapd.
CVE-2026-18238: Fix RPCAP_MSG_PACKET validation.
Documentation:
Remove list of OSes that support "ipv6-icmp"; all the ones we
support appear to do so.
Fix pcap_next_ex(3PCAP) man page to clarify the PCAP_ERROR_BREAK
return value.
Building and testing:
CMake: Disable remote capture support on Windows by default.
RDMA: Avoid valgrind errors when calling rdmasniff_findalldevs().
Autoconf: Add QNX support to AC_LBL_LIBRARY_NET().
capturetest: Treat SA_RESTART as optional.
QNX:
Disable zero-copy BPF to work around portability issues.
DAG:
Fix packet filtering with low snaplen.
SNF:
Fix packet filtering with low snaplen.
Netmap:
Set packet captured length based on the snapshot length and return
value of the capture filter.
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
---
config/rootfiles/common/libpcap | 2 +-
lfs/libpcap | 4 ++--
2 files changed, 3 insertions(+), 3 deletions(-)
diff --git a/config/rootfiles/common/libpcap b/config/rootfiles/common/libpcap
index 4b74eda39..e76e8bc3a 100644
--- a/config/rootfiles/common/libpcap
+++ b/config/rootfiles/common/libpcap
@@ -21,7 +21,7 @@
#usr/lib/libpcap.a
usr/lib/libpcap.so
usr/lib/libpcap.so.1
-usr/lib/libpcap.so.1.10.6
+usr/lib/libpcap.so.1.10.7
#usr/lib/pkgconfig/libpcap.pc
#usr/share/man/man1/pcap-config.1
#usr/share/man/man3/pcap.3pcap
diff --git a/lfs/libpcap b/lfs/libpcap
index 08e10aa0b..259c66eb2 100644
--- a/lfs/libpcap
+++ b/lfs/libpcap
@@ -24,7 +24,7 @@
include Config
-VER = 1.10.6
+VER = 1.10.7
THISAPP = libpcap-$(VER)
DL_FILE = $(THISAPP).tar.xz
@@ -42,7 +42,7 @@ objects = $(DL_FILE)
$(DL_FILE) = $(DL_FROM)/$(DL_FILE)
-$(DL_FILE)_BLAKE2 = 392bee5b22cd4664ee4f2f110c27ee677c2e3ab25d4427e8d72c7f3347ba1b45acf987d661fc024f8a71e0e2d2b90d53352ad63796ae3836a41561816adf341d
+$(DL_FILE)_BLAKE2 = 5cec38e048446c7837e95a4c51fb3b5cc3a7d8e459f7599d918e9304d6c39725c3e22a9563fdbb0e2bd318f484872b2516856a43928884834403411391859e20
install : $(TARGET)
--
2.55.0
next prev parent reply other threads:[~2026-09-13 17:12 UTC|newest]
Thread overview: 31+ messages / expand[flat|nested] mbox.gz Atom feed top
2026-09-13 17:12 [PATCH] core205: Ship curl Adolf Belka
2026-09-13 17:12 ` [PATCH] core205: Ship iana-etc Adolf Belka
2026-09-13 17:12 ` [PATCH] core205: Ship jansson Adolf Belka
2026-09-13 17:12 ` [PATCH] core205: Ship libksba Adolf Belka
2026-09-13 17:12 ` [PATCH] core205: Ship libpcap Adolf Belka
2026-09-13 17:12 ` [PATCH] core205: Ship liburcu Adolf Belka
2026-09-13 17:12 ` [PATCH] core205: Ship libxml2 Adolf Belka
2026-09-13 17:12 ` [PATCH] core205: Ship pcre2 Adolf Belka
2026-09-13 17:12 ` [PATCH] core205: Ship tzdata Adolf Belka
2026-09-13 17:12 ` [PATCH] core205: Ship util-linux Adolf Belka
2026-09-13 17:12 ` [PATCH] core205: Ship vim Adolf Belka
2026-09-13 17:12 ` [PATCH] core205: Ship xz Adolf Belka
2026-09-13 17:12 ` [PATCH] curl: Update to version 8.22.0 Adolf Belka
2026-09-13 17:12 ` [PATCH] fetchmail: Update to version 6.6.7 Adolf Belka
2026-09-13 17:12 ` [PATCH] frr: Update to version 10.7.1 Adolf Belka
2026-09-13 17:12 ` [PATCH] hwdata: Update to version 0.411 Adolf Belka
2026-09-13 17:12 ` [PATCH] iana-etc: Update to version 20260911 Adolf Belka
2026-09-13 17:12 ` [PATCH] jansson: Update to version 2.15.1 Adolf Belka
2026-09-13 17:12 ` [PATCH] libcap-ng: Update to version 0.9.6 Adolf Belka
2026-09-13 17:12 ` [PATCH] libksba: Update to version 1.8.1 Adolf Belka
2026-09-13 17:12 ` Adolf Belka [this message]
2026-09-13 17:12 ` [PATCH] liburcu: Update to version 0.15.7 Adolf Belka
2026-09-13 17:12 ` [PATCH] libxml2: Update to version 2.15.4 Adolf Belka
2026-09-13 17:12 ` [PATCH] openvpn: Update to version 2.7.7 Adolf Belka
2026-09-13 17:12 ` [PATCH] pcre2: Update to version 10.48 Adolf Belka
2026-09-13 17:12 ` [PATCH] postfix: Update to version 3.11.7 Adolf Belka
2026-09-13 17:12 ` [PATCH] systemd: Update to version 261.3 Adolf Belka
2026-09-13 17:12 ` [PATCH] tzdata: Update to version 2026d Adolf Belka
2026-09-13 17:12 ` [PATCH] util-linux: Update to version 2.42.3 Adolf Belka
2026-09-13 17:12 ` [PATCH] vim: Update to version 9.2.1091 Adolf Belka
2026-09-13 17:12 ` [PATCH] xz: Update to version 5.8.4 Adolf Belka
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=20260913171230.3920551-21-adolf.belka@ipfire.org \
--to=adolf.belka@ipfire.org \
--cc=development@lists.ipfire.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox