aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorLeo <thinkabit.ukim@gmail.com>2019-10-11 16:42:14 -0300
committerKevin Daudt <kdaudt@alpinelinux.org>2019-10-12 19:27:58 +0000
commit67b7be458895eb0d8faab3d9b232ec040e11ef26 (patch)
tree8bdfb9f4806a74c71f36c2e8bb8c868e769feea8
parent261552a56ed61e9ecebfb87a1fc4cd9a48b1d5a2 (diff)
downloadaports-67b7be458895eb0d8faab3d9b232ec040e11ef26.tar.gz
aports-67b7be458895eb0d8faab3d9b232ec040e11ef26.tar.bz2
aports-67b7be458895eb0d8faab3d9b232ec040e11ef26.tar.xz
main/varnish: security upgrade to 6.0.4
fixes CVE-2019-15892 ref #10775 Closes !422
-rw-r--r--main/varnish/APKBUILD11
1 files changed, 6 insertions, 5 deletions
diff --git a/main/varnish/APKBUILD b/main/varnish/APKBUILD
index 5c04e82f95..a9d5943432 100644
--- a/main/varnish/APKBUILD
+++ b/main/varnish/APKBUILD
@@ -2,7 +2,7 @@
# Contributor: V.Krishn <vkrishn4@gmail.com>
# Maintainer: Natanael Copa <ncopa@alpinelinux.org>
pkgname=varnish
-pkgver=6.0.2
+pkgver=6.0.4
pkgrel=0
pkgdesc="High-performance HTTP accelerator"
url="http://www.varnish-cache.org/"
@@ -33,11 +33,12 @@ source="http://varnish-cache.org/_downloads/$pkgname-$pkgver.tgz
builddir="$srcdir/$pkgname-$pkgver"
# secfixes:
+# 6.0.4-r0:
+# - CVE-2019-15892
# 5.2.1-r0:
-# - CVE-2017-8807
+# - CVE-2017-8807
# 5.1.3-r0:
-# - CVE-2017-12425
-
+# - CVE-2017-12425
build() {
cd "$builddir"
@@ -99,7 +100,7 @@ geoip() {
"$subpkgdir"/usr/lib/varnish/plugins/maxminddb.vcl
}
-sha512sums="4bdd09f640805d061e19c7579b6f6fae908d7d9a21f268d239e38fb815c37f739068f92957ae827dfb0719e328652fb8de778374e757fa87002ceb2af6a21bd5 varnish-6.0.2.tgz
+sha512sums="37fa48f404a3b704ae72edbee4d44fd8783e474990ef81dd01d114edd7513eb9351dc60f7cda4c0d1646a7c0a1faebf155299aeabb5d25ddc534162110d070f7 varnish-6.0.4.tgz
2123668169b055f2d88f9b5b8e0877ca8b3cbfcd61e03d91fd7d0513b3267e4ef01a4d858cc6a3298cca0a49aaea2f92ff4fd9c0baf52a6c67b452a53f7e54d0 musl-include-vpf.patch
c51c8964880990c2b01807b2a38d886b146736a918bda9ea2e032c50085bf6745cab3cccb4ee4c561ab936a8b7cfb278cfcb758543ea6c605c15b8973c9f10ce musl-include-vsb.patch
5ac7867e85cbd721f903c524ed4b524423d9dada4acfeefb0e543214a208828df5cc4efe2f012991bea6b38c2b223c24b17d3890ec4ed2c57d2b441b8e5a6900 varnishd.initd