aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorLeo <thinkabit.ukim@gmail.com>2020-04-30 07:23:55 -0300
committerLeo <thinkabit.ukim@gmail.com>2020-04-30 07:27:59 -0300
commit3d1aef7a834fb00abde94c1dbd9e89a7875c3b9c (patch)
treede45837457e986af07f4fa3a11f6a9e0dcad3c37
parent573b7537c7e1ab2732007a1d026a913613ca2d03 (diff)
downloadaports-3d1aef7a834fb00abde94c1dbd9e89a7875c3b9c.tar.bz2
aports-3d1aef7a834fb00abde94c1dbd9e89a7875c3b9c.tar.xz
main/re2c: fix CVE-2020-11958
See #11468
-rw-r--r--main/re2c/APKBUILD15
1 files changed, 11 insertions, 4 deletions
diff --git a/main/re2c/APKBUILD b/main/re2c/APKBUILD
index 9bcbeb4fc8..58ba4f9fa7 100644
--- a/main/re2c/APKBUILD
+++ b/main/re2c/APKBUILD
@@ -2,14 +2,20 @@
# Maintainer: Natanael Copa <ncopa@alpinelinux.org>
pkgname=re2c
pkgver=1.3
-pkgrel=0
-pkgdesc="A tool for writing fast and flexible scanners in C from regular expressions"
+pkgrel=1
+pkgdesc="Tool for writing fast and flexible scanners in C from regular expressions"
url="http://www.re2c.org"
arch="all"
license="Public-Domain"
checkdepends="bash"
subpackages="$pkgname-doc"
-source="https://github.com/skvadrik/re2c/releases/download/$pkgver/re2c-$pkgver.tar.xz"
+source="https://github.com/skvadrik/re2c/releases/download/$pkgver/re2c-$pkgver.tar.xz
+ https://github.com/skvadrik/re2c/commit/c4603ba5ce229db83a2a4fb93e6d4b4e3ec3776a.patch
+ "
+
+# secfixes:
+# 1.3-r1:
+# - CVE-2020-11958
build() {
./configure \
@@ -30,4 +36,5 @@ package() {
make DESTDIR="$pkgdir" install
}
-sha512sums="c7084ab2399fb6b96cef74c1393715d90830f43b82b96af46feb71ef008c0215381c3dbea0b003ff810d869db6021e28001b9d588ad55c616642244b2da09c0e re2c-1.3.tar.xz"
+sha512sums="c7084ab2399fb6b96cef74c1393715d90830f43b82b96af46feb71ef008c0215381c3dbea0b003ff810d869db6021e28001b9d588ad55c616642244b2da09c0e re2c-1.3.tar.xz
+f4376b8e0724d500f665fa60dfd6fb35685a281af50c500d2ff90d781a829fb78f21e8c93c5745a4519acd55a62ec48a570dbfacf0a9ee977502e06f3e2e474a c4603ba5ce229db83a2a4fb93e6d4b4e3ec3776a.patch"