aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorSergey Lukin <sergej.lukin@gmail.com>2017-02-20 13:21:34 +0000
committerLeonardo Arena <rnalrd@alpinelinux.org>2017-02-22 11:20:19 +0000
commit9eedb1462483dddad2de55715f16558844a078c5 (patch)
treef55d36e21aff8b82743a46bd0aa6803b0e30fb0e
parent3e6cf4c978acd421b5e1b282f98ff3c2d57374f5 (diff)
downloadaports-9eedb1462483dddad2de55715f16558844a078c5.tar.bz2
aports-9eedb1462483dddad2de55715f16558844a078c5.tar.xz
community/webkit2gtk: security upgrade to 2.14.5 - fixes #6888
-rw-r--r--community/webkit2gtk/APKBUILD24
1 files changed, 20 insertions, 4 deletions
diff --git a/community/webkit2gtk/APKBUILD b/community/webkit2gtk/APKBUILD
index bc1426a825..049617d516 100644
--- a/community/webkit2gtk/APKBUILD
+++ b/community/webkit2gtk/APKBUILD
@@ -1,7 +1,8 @@
+# Contributor: Sergei Lukin <sergej.lukin@gmail.com>
# Contributor: Jiri Horner <laeqten@gmail.com>
# Maintainer: Jiri Horner <laeqten@gmail.com>
pkgname=webkit2gtk
-pkgver=2.14.2
+pkgver=2.14.5
pkgrel=0
pkgdesc="portable web rendering engine WebKit for GTK+"
url="http://webkitgtk.org/"
@@ -45,6 +46,21 @@ source="http://webkitgtk.org/releases/webkitgtk-$pkgver.tar.xz
musl-fixes.patch
"
+# secfixes:
+# 2.14.5-r0:
+# - CVE-2017-2350
+# - CVE-2017-2354
+# - CVE-2017-2355
+# - CVE-2017-2356
+# - CVE-2017-2362
+# - CVE-2017-2363
+# - CVE-2017-2364
+# - CVE-2017-2365
+# - CVE-2017-2366
+# - CVE-2017-2369
+# - CVE-2017-2371
+# - CVE-2017-2373
+
_srcdir="${srcdir}/webkitgtk-${pkgver}"
_builddir="${srcdir}/build"
prepare() {
@@ -84,9 +100,9 @@ package() {
paxmark -m "$pkgdir"/usr/lib/webkit2gtk-4.0/WebKitWebProcess || return 1
}
-md5sums="2fe3cadbc546d93ca68a13756c2be015 webkitgtk-2.14.2.tar.xz
+md5sums="7fe3cb2699e64f969b285823c5ae2516 webkitgtk-2.14.5.tar.xz
4e74c88f7e9522c6a573f9d588da9bc4 musl-fixes.patch"
-sha256sums="2edbcbd5105046aea55af9671c4de8deedb5b0e3567c618034d440a760675556 webkitgtk-2.14.2.tar.xz
+sha256sums="3ca8f1c33a9b43d6c753dcac1c0788656930e06382b10fdf5c2805ea8f96369f webkitgtk-2.14.5.tar.xz
5cc1b9790056b4430b8a7b357f376ddcae43e38ab228d6a259c0abdc7ab4b892 musl-fixes.patch"
-sha512sums="e1e344660c1aa38f2911aab334581b015bdbd6fa3bef6f1cd67560b86f1b183bf91cafb94bd4783f4660ecad94dc662ec4a342d5bb2420f284150adc21f79beb webkitgtk-2.14.2.tar.xz
+sha512sums="3351d9b05458434835fa2db050c34906649c3b1222d7936d123306634a46e35e8cc3aa1bb7512b103af1996fce722254692826b6f695e32ae176032dc8c94e1c webkitgtk-2.14.5.tar.xz
95f88563cb83387e3f44781dd8b00c5adf53e352869ca1d217c6cfc0895e9b7680e24820b8df340316564dcbc4cb65eb502fb003089b4805b9ac9f583f454013 musl-fixes.patch"