aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorLeo <thinkabit.ukim@gmail.com>2020-05-27 05:36:54 -0300
committerLeo <thinkabit.ukim@gmail.com>2020-05-27 10:47:00 -0300
commitf1c627ea77bf1ce0e01d2683b6c3b71443e800fb (patch)
tree0214800cd5021a04d9b30b3be9b5bc7a570a1777
parent64020ed2bf35f3daf3f5d0ea33fa5302a6d4524d (diff)
downloadaports-3.9-stable.tar.gz
aports-3.9-stable.tar.bz2
aports-3.9-stable.tar.xz
main/json-c: fix CVE-2020-127623.9-stable
See #11581
-rw-r--r--main/json-c/APKBUILD11
1 files changed, 9 insertions, 2 deletions
diff --git a/main/json-c/APKBUILD b/main/json-c/APKBUILD
index de361f308c..365b0ad323 100644
--- a/main/json-c/APKBUILD
+++ b/main/json-c/APKBUILD
@@ -1,7 +1,7 @@
# Maintainer: Natanael Copa <ncopa@alpinelinux.org>
pkgname=json-c
pkgver=0.13.1
-pkgrel=0
+pkgrel=1
pkgdesc="A JSON implementation in C"
url="https://github.com/json-c/json-c/wiki"
arch="all"
@@ -12,9 +12,15 @@ makedepends="$depends_dev autoconf automake libtool"
install=""
subpackages="$pkgname-static $pkgname-dev"
source="https://s3.amazonaws.com/${pkgname}_releases/releases/$pkgname-${pkgver}.tar.gz
+ CVE-2020-12762.patch::https://github.com/json-c/json-c/pull/607.patch
"
builddir="$srcdir"/json-c-$pkgver
+
+# secfixes:
+# 0.13.1-r1:
+# - CVE-2020-12762
+
prepare() {
cd "$builddir"
default_prepare
@@ -53,4 +59,5 @@ static() {
mv "$pkgdir"/usr/lib/*.a "$subpkgdir"/usr/lib/
}
-sha512sums="e984db2a42b9c95b52c798b2e8dd1b79951a8dcba27370af30c43b9549fbb00008dbcf052a535c528209aaee38e6d1f760168b706905ae72f3e704ed20f8a1a1 json-c-0.13.1.tar.gz"
+sha512sums="e984db2a42b9c95b52c798b2e8dd1b79951a8dcba27370af30c43b9549fbb00008dbcf052a535c528209aaee38e6d1f760168b706905ae72f3e704ed20f8a1a1 json-c-0.13.1.tar.gz
+f6c47ba18cdbf5cf150fdac97e931e511e12cbb5c30e6798b1ebf6173556eda1e84384bf0019a95bcfbb9dcd561a13d05639c68e07838b28cdbcf5b86bd3d497 CVE-2020-12762.patch"