diff options
author | Francesco Colista <fcolista@alpinelinux.org> | 2017-08-24 08:51:03 +0000 |
---|---|---|
committer | Francesco Colista <fcolista@alpinelinux.org> | 2017-08-24 08:59:20 +0000 |
commit | 887ce5de6251962b5d71a2d3af7a7f39871cf394 (patch) | |
tree | de9ac87b8578d1ec3035fbd63038f857272d9d1c /community/graphicsmagick/APKBUILD | |
parent | 8ec38c157f3b02dbfaeae70d88c36709642a3327 (diff) | |
download | aports-887ce5de6251962b5d71a2d3af7a7f39871cf394.tar.bz2 aports-887ce5de6251962b5d71a2d3af7a7f39871cf394.tar.xz |
community/graphicsmagick: security fixes for various CVEs:
* CVE-2017-11642
* CVE-2017-11722
* CVE-2017-12935
* CVE-2017-12936
* CVE-2017-12937
* CVE-2017-13063
* CVE-2017-13064
Fixes #7748
Diffstat (limited to 'community/graphicsmagick/APKBUILD')
-rw-r--r-- | community/graphicsmagick/APKBUILD | 26 |
1 files changed, 22 insertions, 4 deletions
diff --git a/community/graphicsmagick/APKBUILD b/community/graphicsmagick/APKBUILD index cda8a6fdd3..778e0cbb0f 100644 --- a/community/graphicsmagick/APKBUILD +++ b/community/graphicsmagick/APKBUILD @@ -2,7 +2,7 @@ # Maintainer: Francesco Colista <fcolista@alpinelinux.org> pkgname=graphicsmagick pkgver=1.3.26 -pkgrel=1 +pkgrel=2 pkgdesc="Image processing system" url="http://www.graphicsmagick.org/" arch="all" @@ -13,13 +13,26 @@ makedepends="$depends_dev libtool libltdl" install="" subpackages="$pkgname-dev $pkgname-doc" source="http://downloads.sourceforge.net/$pkgname/$pkgname/$pkgver/GraphicsMagick-$pkgver.tar.xz - CVE-2017-11403.patch" + CVE-2017-11642.patch + CVE-2017-11722.patch + CVE-2017-12935.patch + CVE-2017-12936.patch + CVE-2017-12937.patch + CVE-2017-13063-13064.patch" options="libtool" builddir="$srcdir"/GraphicsMagick-$pkgver # security fixes: -# 1.3.26-r1: +# 1.3.26-r2: +# - CVE-2017-11642 +# - CVE-2017-11722 +# - CVE-2017-12935 +# - CVE-2017-12936 +# - CVE-2017-12937 +# - CVE-2017-13063 +# - CVE-2017-13064 +# 1.3.25-r2: # - CVE-2017-11403 build() { @@ -48,4 +61,9 @@ package() { } sha512sums="b33ca0f1c858428693aee27a9089acff9e63d1110f85fa036894cfefe6274e7b2422758ea39852f94fdb4823c9c3f3c44b0d8906627503301f5928096f739f22 GraphicsMagick-1.3.26.tar.xz -00cb425b9cb6cc0c7b92a6c795150222edf2d16d513f4d4c803ff15cfb1917e81c6854109aee0ca845d3668e515cec06c4067155f82a9ea0abde30f6bbd1e8c2 CVE-2017-11403.patch" +1706f87cfa248bf08f2e7038ec2d3adf4ad0b9775a8787a48bb168d9bd04578e3ac01dcd384d4d961903dd738f748601619c0999b2a4b4b775e1b72489220336 CVE-2017-11642.patch +f9167ad79f54fc3881d81b9b5cb5b84f38e847103c6945af4fda516d6696ff8e95ec48cbae84161f3dbedca48cf1f3a2afbb0831b54c32363d263c0c1ad5d595 CVE-2017-11722.patch +2cb2ee3f88a835dff63c903bd215abb09c1812fedecbbb19c228fd2680c5762c6a20e6be1497c0fc3ed7a9b16eac6e7fe7f0fc9da4f6ef3e90fe75a049085ca7 CVE-2017-12935.patch +b78b61d7b29c2316ecefe69c473b1aa1e93185e0da245f7cf2d351566ff737bce8e560e9b471334549e4ab76bc8752717f403e7afa9d393bdd64e191f8abbb9c CVE-2017-12936.patch +508ceee0aa73744e9b36c6e60b071d4dc4a5254b4d5265c4ee2bde317713b831db8958667fac44aa1e89b3cc8094027cade368f10f7f5f3d1a2980c2a70d516d CVE-2017-12937.patch +262434bab04541c276728111c9ec5d92abbb68e980813a50712d03505f3d3c4681b4daf02fd22e4ba11ed0daf5b553e4a47291c43f4c146554f1809292b73441 CVE-2017-13063-13064.patch" |