aboutsummaryrefslogtreecommitdiffstats
path: root/community/graphicsmagick/APKBUILD
diff options
context:
space:
mode:
authorFrancesco Colista <fcolista@alpinelinux.org>2017-08-24 08:51:03 +0000
committerFrancesco Colista <fcolista@alpinelinux.org>2017-08-24 08:59:20 +0000
commit887ce5de6251962b5d71a2d3af7a7f39871cf394 (patch)
treede9ac87b8578d1ec3035fbd63038f857272d9d1c /community/graphicsmagick/APKBUILD
parent8ec38c157f3b02dbfaeae70d88c36709642a3327 (diff)
downloadaports-887ce5de6251962b5d71a2d3af7a7f39871cf394.tar.bz2
aports-887ce5de6251962b5d71a2d3af7a7f39871cf394.tar.xz
community/graphicsmagick: security fixes for various CVEs:
Diffstat (limited to 'community/graphicsmagick/APKBUILD')
-rw-r--r--community/graphicsmagick/APKBUILD26
1 files changed, 22 insertions, 4 deletions
diff --git a/community/graphicsmagick/APKBUILD b/community/graphicsmagick/APKBUILD
index cda8a6fdd3..778e0cbb0f 100644
--- a/community/graphicsmagick/APKBUILD
+++ b/community/graphicsmagick/APKBUILD
@@ -2,7 +2,7 @@
# Maintainer: Francesco Colista <fcolista@alpinelinux.org>
pkgname=graphicsmagick
pkgver=1.3.26
-pkgrel=1
+pkgrel=2
pkgdesc="Image processing system"
url="http://www.graphicsmagick.org/"
arch="all"
@@ -13,13 +13,26 @@ makedepends="$depends_dev libtool libltdl"
install=""
subpackages="$pkgname-dev $pkgname-doc"
source="http://downloads.sourceforge.net/$pkgname/$pkgname/$pkgver/GraphicsMagick-$pkgver.tar.xz
- CVE-2017-11403.patch"
+ CVE-2017-11642.patch
+ CVE-2017-11722.patch
+ CVE-2017-12935.patch
+ CVE-2017-12936.patch
+ CVE-2017-12937.patch
+ CVE-2017-13063-13064.patch"
options="libtool"
builddir="$srcdir"/GraphicsMagick-$pkgver
# security fixes:
-# 1.3.26-r1:
+# 1.3.26-r2:
+# - CVE-2017-11642
+# - CVE-2017-11722
+# - CVE-2017-12935
+# - CVE-2017-12936
+# - CVE-2017-12937
+# - CVE-2017-13063
+# - CVE-2017-13064
+# 1.3.25-r2:
# - CVE-2017-11403
build() {
@@ -48,4 +61,9 @@ package() {
}
sha512sums="b33ca0f1c858428693aee27a9089acff9e63d1110f85fa036894cfefe6274e7b2422758ea39852f94fdb4823c9c3f3c44b0d8906627503301f5928096f739f22 GraphicsMagick-1.3.26.tar.xz
-00cb425b9cb6cc0c7b92a6c795150222edf2d16d513f4d4c803ff15cfb1917e81c6854109aee0ca845d3668e515cec06c4067155f82a9ea0abde30f6bbd1e8c2 CVE-2017-11403.patch"
+1706f87cfa248bf08f2e7038ec2d3adf4ad0b9775a8787a48bb168d9bd04578e3ac01dcd384d4d961903dd738f748601619c0999b2a4b4b775e1b72489220336 CVE-2017-11642.patch
+f9167ad79f54fc3881d81b9b5cb5b84f38e847103c6945af4fda516d6696ff8e95ec48cbae84161f3dbedca48cf1f3a2afbb0831b54c32363d263c0c1ad5d595 CVE-2017-11722.patch
+2cb2ee3f88a835dff63c903bd215abb09c1812fedecbbb19c228fd2680c5762c6a20e6be1497c0fc3ed7a9b16eac6e7fe7f0fc9da4f6ef3e90fe75a049085ca7 CVE-2017-12935.patch
+b78b61d7b29c2316ecefe69c473b1aa1e93185e0da245f7cf2d351566ff737bce8e560e9b471334549e4ab76bc8752717f403e7afa9d393bdd64e191f8abbb9c CVE-2017-12936.patch
+508ceee0aa73744e9b36c6e60b071d4dc4a5254b4d5265c4ee2bde317713b831db8958667fac44aa1e89b3cc8094027cade368f10f7f5f3d1a2980c2a70d516d CVE-2017-12937.patch
+262434bab04541c276728111c9ec5d92abbb68e980813a50712d03505f3d3c4681b4daf02fd22e4ba11ed0daf5b553e4a47291c43f4c146554f1809292b73441 CVE-2017-13063-13064.patch"