aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorLeonardo Arena <rnalrd@alpinelinux.org>2016-06-02 07:29:25 +0000
committerLeonardo Arena <rnalrd@alpinelinux.org>2016-06-02 07:29:25 +0000
commit1a6904e01ed53e8b2fb97320a216979c4f1cc21c (patch)
tree77c8863e5102bc113efa0aa10b5081a15cc25e8d
parent673017cffea6aa8e0a3a227da43247b4e68a6e75 (diff)
downloadaports-1a6904e01ed53e8b2fb97320a216979c4f1cc21c.tar.bz2
aports-1a6904e01ed53e8b2fb97320a216979c4f1cc21c.tar.xz
main/libxml2: security fixes (CVE-2015-8241, CVE-2015-8317, CVE-2016-2073). Fixes #5444
-rw-r--r--main/libxml2/APKBUILD20
1 files changed, 16 insertions, 4 deletions
diff --git a/main/libxml2/APKBUILD b/main/libxml2/APKBUILD
index 44f612ca8f..28e63261f7 100644
--- a/main/libxml2/APKBUILD
+++ b/main/libxml2/APKBUILD
@@ -2,7 +2,7 @@
# Maintainer: Carlo Landmeter <clandmeter@gmail.com>
pkgname=libxml2
pkgver=2.9.1
-pkgrel=3
+pkgrel=4
pkgdesc="XML parsing library, version 2"
url="http://www.xmlsoft.org/"
arch="all"
@@ -26,7 +26,10 @@ source="ftp://ftp.xmlsoft.org/${pkgname}/${pkgname}-${pkgver}.tar.gz
CVE-2015-7942.patch
CVE-2015-7942-2.patch
CVE-2015-8035.patch
+ CVE-2015-8241.patch
CVE-2015-8242.patch
+ CVE-2015-8317-1.patch
+ CVE-2015-8317-2.patch
"
options="!strip"
@@ -94,7 +97,10 @@ d876337f727521061309722c9d16ba9a CVE-2015-7499-1.patch
7304667ea636d829feed9cc6747d5efb CVE-2015-7942.patch
ffdfbe9d5d7d334c5baca09060d56e78 CVE-2015-7942-2.patch
66f5aa382028e125202f6ac70f507c0a CVE-2015-8035.patch
-f5dc37a7162905c53ec86d06e20cb9b3 CVE-2015-8242.patch"
+6f8105eed1006d1d5587d3d88b7c5bbd CVE-2015-8241.patch
+f5dc37a7162905c53ec86d06e20cb9b3 CVE-2015-8242.patch
+f767ce95f29c9b63c31eaf6afb36e376 CVE-2015-8317-1.patch
+017edcbd0f90ca13b23565f55f6c09e3 CVE-2015-8317-2.patch"
sha256sums="fd3c64cb66f2c4ea27e934d275904d92cec494a8e8405613780cbc8a71680fdb libxml2-2.9.1.tar.gz
97d5e152580774483c47b28483282a4180c2c375bb7716a807ec859e59c3ec2f libxml2-pthread.patch
288a762e8b115cecc02d920e4b36ebfa5249b8a6713a1a948e344d881d094ea8 CVE-2014-0191.patch
@@ -110,7 +116,10 @@ a482436a040e0c94efc669ac71bfd42427efd33a9e7d755897a6b0ae8b42e41f CVE-2015-7500.
9095165d17db7e66060307fea16872ce5be63bd9f52e858f05200d6f12391ee4 CVE-2015-7942.patch
bd98845e4fb4405ae45f4dbdac097ac40db4e8ac8d2ff7194ac0997404ca37bf CVE-2015-7942-2.patch
3b4d7e17929e8cb4ce078a7358450b308e15c9b9aa9d125a4d945ef6623e9bae CVE-2015-8035.patch
-e4a1441afcd4379455ed683216dfbee49b7ef5480f57c449481fb3928190b41f CVE-2015-8242.patch"
+fc8c07b99a5bb456a720eafc2393eb6b299930dc5cb1781494f692681e9818ac CVE-2015-8241.patch
+e4a1441afcd4379455ed683216dfbee49b7ef5480f57c449481fb3928190b41f CVE-2015-8242.patch
+81777f53a343a9d0dcf88c7871d52a2b7b5e7fc793ec3538cbe923d0919b2ae1 CVE-2015-8317-1.patch
+0ef449496e8054809a653d33591326aaaf18aeffe8e2cfea28ede63b134e4430 CVE-2015-8317-2.patch"
sha512sums="7b10de749485bc2eb2108063e97d89e70d6fbb78b1bf195ab5528c8c64e79483d55223a49d95934f4e00b00e906c18bdd34344703ffe158dcf08096905a44c1b libxml2-2.9.1.tar.gz
bda49c5e09605acc2bb36203521f750903d81345cc38af54b977e3ce71e288267fb3ab98f1813d846ab45461490482337f7af8b0f1a8a5e0b2c09e03bbadc7f7 libxml2-pthread.patch
41b6737b5cfe6392e3d781ebde48db0bf221bde89701742408afe625a88a67f6f6aed5cf04c1983ba2e7e04c2d819a8011908d23060365225571691c5e61cf11 CVE-2014-0191.patch
@@ -126,4 +135,7 @@ c86c62704b527e5b3e0834586a4a05e5acc059ececf80e45135bf9d00ed0531aa268366c9bdac1fb
bbf93ce9f9277f049ccac6644f72e4c2d42a7513762950c928bbdab3813a9a20123a3aef5c83b8448213026761150bc4ad5a2a89dd9eb770793b642a54ca3fd0 CVE-2015-7942.patch
40837e2cc46aa8972818aa4526926cffd213e4c5a689c66f4c4b864c339582588e03d98f4fcf5781977b3a71a2a0850de17540b0293e58755f07346471e76aa4 CVE-2015-7942-2.patch
071577d6d2f4fa2df1894fab3379ac461f79a785a3c54b04c729a1e06982d3ae0158526d213a4b375fa878fa7bb2a257cf9070092f8228ad5dc159f99ea71ea1 CVE-2015-8035.patch
-98c83b942f718a765821771eb32aef70086edaedc44b83ecf291e8c65afdca63ec204b50d4dbfb87c13e6ded12cce3a7cfd3291449e9daa4d30d025525605e4d CVE-2015-8242.patch"
+baec4095aae6e272e8d6dc6b820af8fdc73fe50d7ae5bad12a3fc550cdf73d03e949e00eb81ea15c796f0b454400d88190edd0c59a8dd0606f8d21419ae4ebdf CVE-2015-8241.patch
+98c83b942f718a765821771eb32aef70086edaedc44b83ecf291e8c65afdca63ec204b50d4dbfb87c13e6ded12cce3a7cfd3291449e9daa4d30d025525605e4d CVE-2015-8242.patch
+eccf558670f2458ce087c4211dc911463427b9722a5e6aee2ba1b008636bde967c6f88d7751f7586a8d338111520d64d2480e36d8a284180b9f867fad7f9957b CVE-2015-8317-1.patch
+04538232684bc44825b664d963aae41e4297a657404a4ea2b276a51f8f02f8334af35d630adccb48aa27a23b0aee328d41b1d4deff69aa28bed8f9f4cf1fae0b CVE-2015-8317-2.patch"