aboutsummaryrefslogtreecommitdiffstats
path: root/main/rxvt-unicode/CVE-2021-33477.patch
diff options
context:
space:
mode:
authorAriadne Conill <ariadne@dereferenced.org>2021-05-31 18:17:41 -0600
committerAriadne Conill <ariadne@dereferenced.org>2021-05-31 18:26:20 -0600
commitd825775c2f569e1ebf09697bf2eece365e7dbaee (patch)
treeee3d31e6d6bd67ca020b2a791cb03c0d4bf77c4c /main/rxvt-unicode/CVE-2021-33477.patch
parentcf8d2c018382202b921826d740e6a2e504de392b (diff)
downloadaports-d825775c2f569e1ebf09697bf2eece365e7dbaee.tar.gz
aports-d825775c2f569e1ebf09697bf2eece365e7dbaee.tar.bz2
aports-d825775c2f569e1ebf09697bf2eece365e7dbaee.tar.xz
main/rxvt-unicode: add mitigation for CVE-2021-33477
Diffstat (limited to 'main/rxvt-unicode/CVE-2021-33477.patch')
-rw-r--r--main/rxvt-unicode/CVE-2021-33477.patch20
1 files changed, 20 insertions, 0 deletions
diff --git a/main/rxvt-unicode/CVE-2021-33477.patch b/main/rxvt-unicode/CVE-2021-33477.patch
new file mode 100644
index 0000000000..e315fb1309
--- /dev/null
+++ b/main/rxvt-unicode/CVE-2021-33477.patch
@@ -0,0 +1,20 @@
+--- rxvt-unicode/src/command.C 2016/07/14 05:33:26 1.582
++++ rxvt-unicode/src/command.C 2017/05/18 02:43:18 1.583
+@@ -2695,7 +2695,7 @@
+ /* kidnapped escape sequence: Should be 8.3.48 */
+ case C1_ESA: /* ESC G */
+ // used by original rxvt for rob nations own graphics mode
+- if (cmd_getc () == 'Q')
++ if (cmd_getc () == 'Q' && option (Opt_insecure))
+ tt_printf ("\033G0\012"); /* query graphics - no graphics */
+ break;
+
+@@ -2914,7 +2914,7 @@
+ break;
+
+ case CSI_CUB: /* 8.3.18: (1) CURSOR LEFT */
+- case CSI_HPB: /* 8.3.59: (1) CHARACTER POSITION BACKWARD */
++ case CSI_HPB: /* 8.3.59: (1) CHARACTER POSITION BACKWARD */
+ #ifdef ISO6429
+ arg[0] = -arg[0];
+ #else /* emulate common DEC VTs */