aboutsummaryrefslogtreecommitdiffstats
path: root/main/openjpeg/APKBUILD
diff options
context:
space:
mode:
authorDaniel Sabogal <dsabogalcc@gmail.com>2016-09-15 12:53:23 -0400
committerJakub Jirutka <jakub@jirutka.cz>2016-09-21 01:21:20 +0200
commitcc30e48f2395b7893ffd566af92c1354494a1060 (patch)
tree6d20d0ccf349c8325d6739ae0df07b26afbdb417 /main/openjpeg/APKBUILD
parentf4a083bd7a02c3fce05d1732453469acdb1c0e62 (diff)
downloadaports-cc30e48f2395b7893ffd566af92c1354494a1060.tar.bz2
aports-cc30e48f2395b7893ffd566af92c1354494a1060.tar.xz
main/openjpeg: security fix (CVE-2016-7163)
Diffstat (limited to 'main/openjpeg/APKBUILD')
-rw-r--r--main/openjpeg/APKBUILD23
1 files changed, 17 insertions, 6 deletions
diff --git a/main/openjpeg/APKBUILD b/main/openjpeg/APKBUILD
index 65453d4fe7..c3aaa511aa 100644
--- a/main/openjpeg/APKBUILD
+++ b/main/openjpeg/APKBUILD
@@ -2,7 +2,7 @@
# Maintainer: Francesco Colista <fcolista@alpinelinux.org>
pkgname=openjpeg
pkgver=2.1.1
-pkgrel=0
+pkgrel=1
pkgdesc="Open-source implementation of JPEG2000 image codec"
url="http://www.openjpeg.org/"
arch="all"
@@ -12,10 +12,15 @@ depends_dev=""
makedepends="$depends_dev libpng-dev tiff-dev lcms-dev doxygen cmake"
install=""
subpackages="$pkgname-dev $pkgname-tools"
-source="$pkgname-$pkgver.tar.gz::https://github.com/uclouvain/openjpeg/archive/v$pkgver.tar.gz"
-
+source="$pkgname-$pkgver.tar.gz::https://github.com/uclouvain/openjpeg/archive/v$pkgver.tar.gz
+ CVE-2016-7163-1.patch
+ CVE-2016-7163-2.patch"
builddir="${srcdir}/$pkgname-$pkgver"
+# secfixes:
+# 2.1.1-r1:
+# - CVE-2016-7163
+
build() {
cd "$builddir"
cmake . \
@@ -38,6 +43,12 @@ tools() {
mv "$pkgdir"/usr/bin "$subpkgdir"/usr/
}
-md5sums="0cc4b2aee0a9b6e9e21b7abcd201a3ec openjpeg-2.1.1.tar.gz"
-sha256sums="82c27f47fc7219e2ed5537ac69545bf15ed8c6ba8e6e1e529f89f7356506dbaa openjpeg-2.1.1.tar.gz"
-sha512sums="c7c5cd95a3b8bc643207fecdfbffd45c3d91e48196455ae42061862aebcd558c3e508c39513285b8ebb4f57b7316116d15cc74c0b9cc3e31c2a7b70d3e5e2cdd openjpeg-2.1.1.tar.gz"
+md5sums="0cc4b2aee0a9b6e9e21b7abcd201a3ec openjpeg-2.1.1.tar.gz
+0c0e55bc80b5cd6b163fbc041e4e7aae CVE-2016-7163-1.patch
+4edb6725ac44bd254f385a78ad4faa98 CVE-2016-7163-2.patch"
+sha256sums="82c27f47fc7219e2ed5537ac69545bf15ed8c6ba8e6e1e529f89f7356506dbaa openjpeg-2.1.1.tar.gz
+65137ddd802e36893a52362da56de1b75c15c338f22e1c378c21288529008189 CVE-2016-7163-1.patch
+a36c73da751049410e94a9f4e56bce572ef5005ec8637401da9c02be0253d0ce CVE-2016-7163-2.patch"
+sha512sums="c7c5cd95a3b8bc643207fecdfbffd45c3d91e48196455ae42061862aebcd558c3e508c39513285b8ebb4f57b7316116d15cc74c0b9cc3e31c2a7b70d3e5e2cdd openjpeg-2.1.1.tar.gz
+3ab55487147464caf428c28f2a8585983a3a203bba731d83411b0bb0bfb8765992874aa42de3fddd8be5245897224f292c9853dc6103c5e16a3aa5bc1737b5be CVE-2016-7163-1.patch
+d091d6ccbdbc7a2e2308815c5448f94a8d7f854c04c137d99f49bb26d142b790008388b730d9d83891842211ec56f1833a954e3bdfa3130ce7dcc1021a15c87e CVE-2016-7163-2.patch"