From f9e2f2793155f669324b13fdf310d5599884524c Mon Sep 17 00:00:00 2001 From: "A. Wilcox" Date: Fri, 16 Aug 2019 15:08:51 +0000 Subject: user/node: [CVE] bump to 10.16.3 --- user/node/APKBUILD | 17 ++++++++++++++--- user/node/ppc32.patch | 11 +++++++++++ 2 files changed, 25 insertions(+), 3 deletions(-) (limited to 'user/node') diff --git a/user/node/APKBUILD b/user/node/APKBUILD index 69e634a50..ac9eaeb44 100644 --- a/user/node/APKBUILD +++ b/user/node/APKBUILD @@ -1,7 +1,7 @@ # Contributor: A. Wilcox # Maintainer: A. Wilcox pkgname=node -pkgver=10.16.2 +pkgver=10.16.3 pkgrel=0 pkgdesc="JavaScript runtime" url="https://nodejs.org/" @@ -20,6 +20,17 @@ source="https://nodejs.org/download/release/v$pkgver/node-v$pkgver.tar.xz " builddir="$srcdir/$pkgname-v$pkgver" +# secfixes: +# 10.16.3-r0: +# - CVE-2019-9511 +# - CVE-2019-9512 +# - CVE-2019-9513 +# - CVE-2019-9514 +# - CVE-2019-9515 +# - CVE-2019-9516 +# - CVE-2019-9517 +# - CVE-2019-9518 + unpack() { default_unpack [ -z $SKIP_PYTHON ] || return 0 @@ -63,9 +74,9 @@ package() { make DESTDIR="$pkgdir" install } -sha512sums="aad6dd2f8677b38f63e04ef81917fcbf7913fe398c3b73ddde68be821e19398949c05517d9277802c55975dfd013dd4132009c92301d09ccd89920b03454153c node-v10.16.2.tar.xz +sha512sums="5d5457adaae87e41699cdf5bd62d32e9590248f7dadd583614cca9078a1749a4ee477433ebbe4278ec872fdfc377d99097c1e06073e0fd47c8c6597256ccdeb7 node-v10.16.3.tar.xz 27ea43eb45fc68f3d2469d5f07636e10801dee11635a430ec8ec922ed790bb426b072da94df885e4dfa1ea8b7a24f2f56dd92f9b0f51e162330f161216bd6de6 Python-2.7.15.tar.xz 8f64922d586bce9d82c83042a989739cc55ecc5e015778cdfbda21c257aa50527ddb18740985bcb2068e4a749b71eb8a135d9a8152b374d361589df7f33c9b60 libatomic.patch -d369cd9685e372368af11ea763defdde7afc789ce5e2f617b47174fb4d45003d6e494a00ef92c9ed098c49c189d1690edf9ce780448a5b4a5b072c20ea35ab95 ppc32.patch +6d37794c7c78ef92ebb845852af780e22dc8c14653b63a8609c21ab6860877b9dffc5cf856a8516b7978ec704f312c0627075c6440ace55d039f95bdc4c85add ppc32.patch 583326353de5b0ac14a6c42321f6b031bd943a80550624794e15bd7526470f67bfa14a66558db3c94b4ee2db3053d2e4efed2117f4e7b6dca3c59c171048c094 ppc64.patch 3ea09e36ed0cc31e0475ebc9c92b7609b70e9c1637c5db6c92cf1d6363fb8c6f884ffa20dd81054ca390b721695185327d80c9eeff0688a959e9d46947602471 stack-silliness.patch" diff --git a/user/node/ppc32.patch b/user/node/ppc32.patch index 80b97993c..45b051534 100644 --- a/user/node/ppc32.patch +++ b/user/node/ppc32.patch @@ -16,3 +16,14 @@ #endif #elif V8_HOST_ARCH_S390 #if V8_TARGET_ARCH_32_BIT +--- node-v10.16.3/configure.py.old 2019-08-15 19:20:03.000000000 +0000 ++++ node-v10.16.3/configure.py 2019-08-16 14:11:23.086489117 +0000 +@@ -848,7 +848,7 @@ + '__MIPSEL__' : 'mipsel', + '__mips__' : 'mips', + '__PPC64__' : 'ppc64', +- '__PPC__' : 'ppc64', ++ '__PPC__' : 'ppc', + '__x86_64__' : 'x64', + '__s390__' : 's390', + '__s390x__' : 's390x', -- cgit v1.2.3-60-g2f50