aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorLeo <thinkabit.ukim@gmail.com>2020-10-27 16:38:27 -0300
committerLeo <thinkabit.ukim@gmail.com>2020-10-27 16:39:53 -0300
commit3c7f8a65fa2500a75462679adfb8686fe0288f57 (patch)
treee053175bba97ae230f41ae92ea131faa336dc00a
parente053f6efb7121e64cf2ee830b2a858e2675b0ae3 (diff)
downloadaports-3c7f8a65fa2500a75462679adfb8686fe0288f57.tar.gz
aports-3c7f8a65fa2500a75462679adfb8686fe0288f57.tar.bz2
aports-3c7f8a65fa2500a75462679adfb8686fe0288f57.tar.xz
community/mupdf: fix CVE-2020-26519
See: #12052
-rw-r--r--community/mupdf/APKBUILD10
1 files changed, 8 insertions, 2 deletions
diff --git a/community/mupdf/APKBUILD b/community/mupdf/APKBUILD
index fe6702b95e..6f64891c41 100644
--- a/community/mupdf/APKBUILD
+++ b/community/mupdf/APKBUILD
@@ -3,7 +3,7 @@
# Maintainer: Daniel Sabogal <dsabogalcc@gmail.com>
pkgname=mupdf
pkgver=1.17.0
-pkgrel=1
+pkgrel=2
pkgdesc="Lightweight PDF and XPS viewer"
url="https://mupdf.com"
arch="all"
@@ -29,11 +29,15 @@ options="!check"
source="https://mupdf.com/downloads/archive/mupdf-$pkgver-source.tar.xz
shared-lib.patch
fix-big-endian.patch
+ https://github.com/ArtifexSoftware/mupdf/commit/32e4e8b4bcbacbf92af7c.patch
+ https://github.com/ArtifexSoftware/mupdf/commit/b82e9b6d6b46877e5c376.patch
"
# FIXME: shared linking of /usr/lib/libmupdf.so.0
# secfixes:
+# 1.17.0-r2:
+# - CVE-2020-26519
# 1.13-r0:
# - CVE-2018-1000051
# - CVE-2018-6544
@@ -106,4 +110,6 @@ _tools() {
sha512sums="39188e6ce3eaefb525b2c32767c4bf52ed881b41889edef086aa64bfe1c38e6f3cb853450c8284d175ef8854f32e9bc67415a692048ead26cf31c35645f9e0e5 mupdf-1.17.0-source.tar.xz
212ea566b6f1d60a1087054a8eb29d0d9ca08eef237219151fc4fe8880461cd86fcb03b0266a7347015af458b557dfd914e827f5ff8fee78e9e50c7f358fc8e0 shared-lib.patch
-486d09df319050ddb33dbd1e2e0638a7bc6a3e188032a35b81119c45b0de911629b827b21aa47cde6669b66d73fb22cff54d190a8449151fdc27eace71beefbd fix-big-endian.patch"
+486d09df319050ddb33dbd1e2e0638a7bc6a3e188032a35b81119c45b0de911629b827b21aa47cde6669b66d73fb22cff54d190a8449151fdc27eace71beefbd fix-big-endian.patch
+1d836c1a3f37c21ed349da799d5cb0c57d3fc275a632a42343cda81aae76394273c06230fc9c22a6d5366498b51a057d5a11797376a4b2af96b937618ba31e11 32e4e8b4bcbacbf92af7c.patch
+91620d0d429d2f4068e1834ec9466d9e9f9bfb363fba33247636e38651196580a89bd36785e42b31328070c42bd2210585ddabea8a0a970d72e7066e61804d6c b82e9b6d6b46877e5c376.patch"