From 3b612fd1e8496523ee54b325d8e3b6de96bde290 Mon Sep 17 00:00:00 2001 From: Natanael Copa Date: Tue, 19 Sep 2017 10:53:37 +0200 Subject: main/libgcrypt: security upgrade to 1.7.9 (CVE-2017-0378) fixes #7835 --- main/libgcrypt/APKBUILD | 11 +++++++---- 1 file changed, 7 insertions(+), 4 deletions(-) diff --git a/main/libgcrypt/APKBUILD b/main/libgcrypt/APKBUILD index b71a83b1f4..aeb6fb5bb4 100644 --- a/main/libgcrypt/APKBUILD +++ b/main/libgcrypt/APKBUILD @@ -1,6 +1,6 @@ # Maintainer: Natanael Copa pkgname=libgcrypt -pkgver=1.7.8 +pkgver=1.7.9 pkgrel=0 pkgdesc="general purpose crypto library based on the code used in GnuPG" url="http://www.gnupg.org" @@ -15,6 +15,8 @@ source="ftp://ftp.gnupg.org/gcrypt/libgcrypt/libgcrypt-$pkgver.tar.bz2" # security fixes # 1.6.6-r0: # - CVE-2016-6313 +# 1.7.9-r0: +# - CVE-2017-0379 build () { local _arch_configure= @@ -47,6 +49,7 @@ package() { make -j1 DESTDIR="$pkgdir" install || return 1 rm -f ${pkgdir}/usr/share/info/dir } -md5sums="34fd2e6d230cbe56799cdf7df05f56c5 libgcrypt-1.7.8.tar.bz2" -sha256sums="948276ea47e6ba0244f36a17b51dcdd52cfd1e664b0a1ac3bc82134fb6cec199 libgcrypt-1.7.8.tar.bz2" -sha512sums="fd8af85415f40c4ca3e35e2c78108b43cfddf031b42ac4d596847ea1c29a89b628036c1e23a6bb108b388a04b7d6b2307a1ce491310654040241435c0c7cc2a4 libgcrypt-1.7.8.tar.bz2" + +md5sums="439432d08fa5aa826752589ea1b69efc libgcrypt-1.7.9.tar.bz2" +sha256sums="bfe9bb703c1126c3647da2810fd23039c2f09d46969f71612c2065dc3fa9373b libgcrypt-1.7.9.tar.bz2" +sha512sums="91ef113418266edbf894363e63f7995aaed7d5bcba3bdb7678daab97f333871e1a07d86d21f1ee81950085ee3d13b6f5442d57ecb0ef2062bf138fa7a2a387ec libgcrypt-1.7.9.tar.bz2" -- cgit v1.2.3