From 8188c174918b05e9c3060a14d869e17b1125b587 Mon Sep 17 00:00:00 2001 From: "A. Wilcox" Date: Tue, 25 Feb 2020 10:15:19 +0000 Subject: system/libarchive: [CVE] Bump to 3.4.2 --- system/libarchive/APKBUILD | 6 ++++-- 1 file changed, 4 insertions(+), 2 deletions(-) diff --git a/system/libarchive/APKBUILD b/system/libarchive/APKBUILD index 00af8aeb7..a805b3b10 100644 --- a/system/libarchive/APKBUILD +++ b/system/libarchive/APKBUILD @@ -1,7 +1,7 @@ # Contributor: Sergei Lukin # Maintainer: A. Wilcox pkgname=libarchive -pkgver=3.4.1 +pkgver=3.4.2 pkgrel=0 pkgdesc="Multi-format archive and compression library" url="https://libarchive.org/" @@ -17,6 +17,8 @@ source="https://github.com/libarchive/libarchive/releases/download/v$pkgver/$pkg " # secfixes: +# 3.4.2-r0: +# - CVE-2020-9308 # 3.3.2-r1: # - CVE-2017-14166 @@ -54,5 +56,5 @@ tools() { ln -s bsdcpio "$subpkgdir"/usr/bin/cpio } -sha512sums="fa7e9e5c8c00cd7e98f0ff373c300771f0a87317bca031c3030bac29b96b02ab66cf34905147e4135824bf9cdfdd1dedf3032e93d6d706c9a11e968da1ed8dad libarchive-3.4.1.tar.gz +sha512sums="a8922e54f2e985889d205ee8a0594c1d30dad950438b602a5be6bb1b274a735ad20a48ed484efd458013a0810d26ee4ae76e3a6c820823243d24ea0593ed7021 libarchive-3.4.2.tar.gz ff2567f243ba7e9ce20bc4f7fa422a922c5c23049004efdd8f71f29f93ab9be9aadd4c100e8c6dca318442d583fbad9bd6466017a23f83af18b9808c718b9fce seek-error.patch" -- cgit v1.2.3-70-g09d2