From eb94fe94a53d082549ef0ab742e95f3c5ec2be00 Mon Sep 17 00:00:00 2001 From: Síle Ekaterin Liszka Date: Mon, 21 Feb 2022 04:08:26 -0800 Subject: system/sudo: upgrade to 1.9.9 --- system/sudo/APKBUILD | 26 ++++++++------------------ 1 file changed, 8 insertions(+), 18 deletions(-) (limited to 'system/sudo/APKBUILD') diff --git a/system/sudo/APKBUILD b/system/sudo/APKBUILD index 1305a61f3..6aa3c4bf3 100644 --- a/system/sudo/APKBUILD +++ b/system/sudo/APKBUILD @@ -3,13 +3,13 @@ # Contributor: Natanael Copa # Maintainer: Horst Burkhardt pkgname=sudo -pkgver=1.9.2 +pkgver=1.9.9 if [ "${pkgver%_*}" != "$pkgver" ]; then _realver=${pkgver%_*}${pkgver#*_} else _realver=$pkgver fi -pkgrel=2 +pkgrel=0 pkgdesc="Give certain users the ability to run some commands as root" url="https://www.sudo.ws/sudo/" arch="all" @@ -20,12 +20,7 @@ makedepends_host="linux-pam-dev zlib-dev utmps-dev" makedepends_build="bash" makedepends="$makedepends_host $makedepends_build" subpackages="$pkgname-doc $pkgname-dev $pkgname-lang" -source="https://www.sudo.ws/dist/sudo-${_realver}.tar.gz - fix-cross-compile.patch - musl-fix-headers.patch - SIGUNUSED.patch - CVE-2021-3156.patch - " +source="https://www.sudo.ws/dist/sudo-${_realver}.tar.gz" builddir="$srcdir"/$pkgname-$_realver somask="audit_json.so group_file.so @@ -37,6 +32,10 @@ somask="audit_json.so " # secfixes: +# 1.9.9-r0: +# - CVE-2021-3156 +# - CVE-2021-23239 +# - CVE-2021-23240 # 1.8.20_p2-r0: # - CVE-2017-1000368 # 1.8.28-r0: @@ -64,11 +63,6 @@ build() { --disable-log-server \ --disable-log-client \ --with-secure-path="/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin" - - # Workaround until SIGUNUSED.patch is not needed anymore - rm lib/util/mksiglist.h lib/util/mksigname.h - make -C lib/util DEVEL=1 mksiglist.h mksigname.h - make } @@ -84,8 +78,4 @@ package() { rm -rf "$pkgdir"/var/run } -sha512sums="20afdf2604b1c93395157382b24f225cd1ff88d3a892362e2d69fecd240c4e7171f05032c08be1778cd1dea6e460025e4241f57272fac0ea3550e220b6d73d21 sudo-1.9.2.tar.gz -f0f462f40502da2194310fe4a72ec1a16ba40f95a821ba9aa6aabaa423d28c4ab26b684afa7fb81c2407cf60de9327bdab01de51b878c5d4de49b0d62645f53c fix-cross-compile.patch -dcc03abdd672c934f90dfd3683b3f81a8d39cfff91307d2dbd20a31a852022ab605d034c4fe11860ba99b78d391a9812fca1d6e052620b8ff2c42e4f0c7a1a62 musl-fix-headers.patch -2733c220ccbdaf61a32d8c72a5bc0209673733014f0d71b568f1523b71416e9d1754dd8c95bc6cd99aa7f935ed6e93c5f19b1a1dbb7dfc2daf9917fd37f96e78 SIGUNUSED.patch -7ef329edccbbd26ac55ff58d4c6c470bf2d829ff8ad1388d67b6ea8c2c8284fd362209cf11458787efaa4e301106bd3b49b8b7310c9d222ac3a3483a17b3ec0e CVE-2021-3156.patch" +sha512sums="53064240431ae3d9409dc5cb7d72ab55d9ab5f802af4de99fadd987855461b3cca53f261d6256e3b6f35e30c7e162f4dfa3978ef6976415cf5be874fb2026614 sudo-1.9.9.tar.gz" -- cgit v1.2.3-60-g2f50