dhcrelay: Add security patches for equilibrium.

This commit introduces a comprehensive set of 12 patches for the
phosphor-ipmi-host package, resolving 12 identified Buganizer issues.
The patches cover:

- Fix off-by-one buffer overflow in MRns_name_uncompress_list
- Fix out-of-bounds read in delete_hash_entry via non-string keys
- Fix Null Pointer Dereference in omapi_auth_key_destroy
- Fix NULL pointer dereferences in hash table operations
- Fix integer wrap-around logic flaw in converted_length
- Fix heap buffer underflow in parse_numeric_aggregate
- Fix out-of-bounds read in MRns_name_compress_list
- Fix stack buffer overflow and integer underflow in concat_dclists
- Fix stack buffer overflow in hh buffer in send_packet
- Fix uninitialized memory leak in add_relay_agent_options
- Fix stack buffer overflow in send_packet
- Improve PRNG seeding in dhcp_context_create

Each logical fix is isolated into an individual patch file for better
traceability and maintainability.

Tested:
1.  Verify DHCP works with mimik and verified pcap https://screenshot.googleplex.com/6rvfikntihDXwWk
2.  Reserved a tpu machine, flashed host and accel tray BMCs, wiped
rwfs, setup dhcp lease, verified dhcp worked on tray and host BMCs.

platform5: https://fusion2.corp.google.com/6d5c54b2-ba8a-353a-ae67-e49447a1c018
platform15: https://fusion2.corp.google.com/439eda16-e2be-3633-8c97-ae64b9989ed9
platform18: https://fusion2.corp.google.com/cf27a09d-03fa-326e-89e0-39ea240e1e0a
platform17: https://fusion2.corp.google.com/3a905c12-ddb4-3bb3-8fe7-476eac4a74a8
platform11+ext: https://fusion2.corp.google.com/6c1c5c0c-23cf-3de6-8b5f-74a71418e035
platform11: https://fusion2.corp.google.com/bc4ee4e6-9fa6-30e3-b92e-14c785bac902
----------------------------------------

Google-Bug-Id: 510454086
Google-Bug-Id: 510453873
Google-Bug-Id: 510453866
Google-Bug-Id: 510453473
Google-Bug-Id: 510454983
Google-Bug-Id: 510454798
Google-Bug-Id: 510454409
Google-Bug-Id: 510454340
Google-Bug-Id: 510454261
Google-Bug-Id: 510453307
Google-Bug-Id: 510454125
Google-Bug-Id: 510454046
Change-Id: If88b70f36fc2e39da67d12bd5aab6b83dbc0cf6e
Signed-off-by: Chris Rauer <crauer@google.com>
Platforms-Affected: ALL
(cherry picked from commit f2bc56d57b29d75d8eae95e88326f6cf7db6c16d)
13 files changed
tree: 3842ddd69d56758d98377858b077c53a218e589c
  1. classes/
  2. conf/
  3. dynamic-layers/
  4. recipes-bsp/
  5. recipes-connectivity/
  6. recipes-core/
  7. recipes-devtools/
  8. recipes-extended/
  9. recipes-google/
  10. recipes-kernel/
  11. recipes-phosphor/
  12. recipes-support/
  13. recipes-tpm1/
  14. recipes-tpm2/
  15. LICENSE
  16. README.md
README.md

meta-gbmc-staging

This repository contains additions to the openbmc/meta-google layer that are not yet ready for OpenBMC inclusion.

How to use this layer

  1. Clone openbmc/openbmc from GitHub.
  2. Clone this layer from GitHub into a subdirectory of openbmc.