From 02e685d0a8e5a8cc3db2ce21ea6b425280b357ac Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?S=C3=B6ren=20Tempel?= Date: Sat, 15 Jul 2017 12:29:40 +0200 Subject: community/evince: security fix for CVE-2017-1000083 --- community/evince/APKBUILD | 24 ++++++++++++++++++------ 1 file changed, 18 insertions(+), 6 deletions(-) (limited to 'community/evince/APKBUILD') diff --git a/community/evince/APKBUILD b/community/evince/APKBUILD index 76ab548ba5..664cf8bfe6 100644 --- a/community/evince/APKBUILD +++ b/community/evince/APKBUILD @@ -1,8 +1,9 @@ +# Contributor: Sören Tempel # Contributor: William Pitcock # Maintainer: William Pitcock pkgname=evince pkgver=3.24.0 -pkgrel=1 +pkgrel=2 pkgdesc="simple document viewer for GTK+" url="http://projects.gnome.org/evince/" arch="all" @@ -12,12 +13,23 @@ depends_dev="gtk+3.0-dev poppler-dev libsm-dev libevent-dev libxrandr-dev libx11-dev libxcursor-dev libxcomposite-dev libxi-dev util-linux-dev tiff-dev gobject-introspection-dev libxml2-dev" makedepends="$depends_dev intltool itstool gnome-doc-utils - adwaita-icon-theme-dev" + adwaita-icon-theme-dev gnome-common automake autoconf + gtk-doc yelp-tools" subpackages="$pkgname-dev $pkgname-doc $pkgname-lang $pkgname-libs" -source="http://ftp.gnome.org/pub/GNOME/sources/${pkgname}/${pkgver%.*}/${pkgname}-${pkgver}.tar.xz" - +source="http://ftp.gnome.org/pub/GNOME/sources/${pkgname}/${pkgver%.*}/${pkgname}-${pkgver}.tar.xz + 0001-comics-Remove-support-for-tar-and-tar-like-commands.patch" builddir="${srcdir}/${pkgname}-${pkgver}" +# secfixes: +# 3.24.0-r2: +# - CVE-2017-1000083 + +prepare() { + default_prepare + cd "$builddir" + NOCONFIGURE=1 ./autogen.sh +} + build() { cd "$builddir" ./configure \ @@ -50,5 +62,5 @@ doc() { fi } - -sha512sums="b793c44b2976abe58461adfdb0b1874af8d6bafaf9b80a851d94b776f9d50f6a81774bcb5b35cd59a9ad3afeea9a8b88018aa85d670373c7c2fa9617407a09c4 evince-3.24.0.tar.xz" +sha512sums="b793c44b2976abe58461adfdb0b1874af8d6bafaf9b80a851d94b776f9d50f6a81774bcb5b35cd59a9ad3afeea9a8b88018aa85d670373c7c2fa9617407a09c4 evince-3.24.0.tar.xz +26251ad90271612ee3fadf0c7a7719fdca6ed1b74f2600751eaba97916d2b44969955a9ad9994f1c97cb79757d3d4f7f76354ce3b04b1340d91598a773fbb130 0001-comics-Remove-support-for-tar-and-tar-like-commands.patch" -- cgit v1.2.3