diff options
author | TBK <tbk@jjtc.eu> | 2020-02-25 21:49:05 +0100 |
---|---|---|
committer | Leo <thinkabit.ukim@gmail.com> | 2020-02-25 20:16:04 -0300 |
commit | 8cdd93154aeb43702a196270e3818bf2466c3e0c (patch) | |
tree | 6ae5f29a342825d634afec4ecdb6d6de301e37a7 /main/cvs/cvs-1.12.12-cvsbug-tmpfix.patch | |
parent | bf0db593e8e6a00eadd5975a64209eb2e9ec5da6 (diff) | |
download | aports-8cdd93154aeb43702a196270e3818bf2466c3e0c.tar.bz2 aports-8cdd93154aeb43702a196270e3818bf2466c3e0c.tar.xz |
main/cvs: security upgrade to 1.12.12
Most distros uses 1.12.13 (https://repology.org/project/cvs/versions) but according to Gentoo it is usable, so following Gentoo (https://bugs.gentoo.org/124733) 1.12.12 is the way forward.
CVEs:
* CVE-2010-3846 - https://bugzilla.redhat.com/show_bug.cgi?id=642146
* CVE-2012-0804 - https://security-tracker.debian.org/tracker/CVE-2012-0804
* CVE-2017-12836 - https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=871810#10
Diffstat (limited to 'main/cvs/cvs-1.12.12-cvsbug-tmpfix.patch')
-rw-r--r-- | main/cvs/cvs-1.12.12-cvsbug-tmpfix.patch | 22 |
1 files changed, 22 insertions, 0 deletions
diff --git a/main/cvs/cvs-1.12.12-cvsbug-tmpfix.patch b/main/cvs/cvs-1.12.12-cvsbug-tmpfix.patch new file mode 100644 index 0000000000..fcd4431e87 --- /dev/null +++ b/main/cvs/cvs-1.12.12-cvsbug-tmpfix.patch @@ -0,0 +1,22 @@ +Index: cvs-1.12.12/src/cvsbug.in +=================================================================== +--- cvs-1.12.12.orig/src/cvsbug.in ++++ cvs-1.12.12/src/cvsbug.in +@@ -109,14 +109,14 @@ elif [ -f /bin/domainname ]; then + /usr/bin/ypcat passwd 2>/dev/null | cat - /etc/passwd | grep "^$LOGNAME:" | + cut -f5 -d':' | sed -e 's/,.*//' > $TEMP + ORIGINATOR="`cat $TEMP`" +- rm -f $TEMP ++ > $TEMP + fi + fi + + if [ "$ORIGINATOR" = "" ]; then + grep "^$LOGNAME:" /etc/passwd | cut -f5 -d':' | sed -e 's/,.*//' > $TEMP + ORIGINATOR="`cat $TEMP`" +- rm -f $TEMP ++ > $TEMP + fi + + if [ -n "$ORGANIZATION" ]; then + |