eos
eos copied to clipboard
Fix boost:beast vulnerability 2.1
Change Description
Boost::beast uses hardcoded zlib which was vulnerable to CVE-2016-9840. This updates unpinned builds, and build scripts to use newer version of Boost, and for pinned builds to apply patch to address the vulnerability.
Change Type
Select ONE:
- [ ] Documentation
- [x] Stability bug fix
- [ ] Other
- [ ] Other - special case
Testing Changes
Select ANY that apply:
- [ ] New Tests
- [ ] Existing Tests
- [ ] Test Framework
- [ ] CI System
- [ ] Other
Consensus Changes
- [ ] Consensus Changes
API Changes
- [ ] API Changes
Documentation Additions
- [ ] Documentation Additions