The following defect(s) have been fixed in this cumulative patch for the Wind River squashfs:
WIND00366804 Security Advisory - squashfs - CVE-2012-4024
----------------------------------------------------------------------------------------
Change List:
/layers/wrll-host-tools/tools/squashfs/patches/squashfs-3.2-fix-CVE-2012-4024.patch
/layers/wrll-host-tools/tools/squashfs/patches/patches.list
Requires Wind River Linux Secure 1.0 to be installed
1. Unzip this patch under [install_dir]/updates
2. From the [install_dir]/updates directory, run the command "../maintenance/wrInstaller/x86-linux2/wrInstaller"
3. Follow the instructions for installing the point patch.
4. This is a source only patch so you will have to rebuild the squashfs package. This can be done by executing the command "make -C build squashfs.distclean" followed by "make -C build squashfs.rebuild"
5. Run "make fs" next
6. Upload the kernel and rootfs into the target and boot it up.
DATE: 21 Mar 2013
REVISION: Add file WRLS_1_0-base-hst-squashfs-20130107-spin1.zip and includes fix to defect WIND00366804