[PATCH] gnu: curl: Update replacement to 7.56.0. [security fixes]

  • Done
  • quality assurance status badge
Details
One participant
  • Kei Kebreau
Owner
unassigned
Submitted by
Kei Kebreau
Severity
normal
K
K
Kei Kebreau wrote on 4 Oct 2017 17:24
(name . Kei Kebreau)(address . kkebreau@posteo.net)
20171004152427.14012-1-kkebreau@posteo.net
Fixes CVE-2017-1000254.

* gnu/packages/curl.scm (curl)[replacement]: Update to 7.56.0.
(curl-7.55.0): Rename to ...
(curl-7.56.0): ... this.
[arguments]: Remove 'fix-Makefile' phase.
---
gnu/packages/curl.scm | 21 ++++-----------------
1 file changed, 4 insertions(+), 17 deletions(-)

Toggle diff (47 lines)
diff --git a/gnu/packages/curl.scm b/gnu/packages/curl.scm
index 23606b481..ef1b6c74b 100644
--- a/gnu/packages/curl.scm
+++ b/gnu/packages/curl.scm
@@ -42,7 +42,7 @@
(define-public curl
(package
(name "curl")
- (replacement curl-7.55.0)
+ (replacement curl-7.56.0)
(version "7.54.1")
(source (origin
(method url-fetch)
@@ -123,28 +123,15 @@ tunneling, and so on.")
"See COPYING in the distribution."))
(home-page "https://curl.haxx.se/")))
-(define-public curl-7.55.0
+(define-public curl-7.56.0
(package
(inherit curl)
- (version "7.55.0")
+ (version "7.56.0")
(source
(origin
(method url-fetch)
(uri (string-append "https://curl.haxx.se/download/curl-"
version ".tar.xz"))
- (patches (search-patches "curl-bounds-check.patch"))
(sha256
(base32
- "1785vxi0jamiv9d1wr1l45g0fm9ircxdfyfzf7ld8zv0z0i8bmfd"))))
- (arguments
- `(,@(substitute-keyword-arguments (package-arguments curl)
- ((#:phases phases)
- `(modify-phases ,phases
- (add-before 'install 'fix-Makefile
- ;; Fix a regression in 7.55.0 where docs are not installed.
- ;; https://github.com/curl/curl/commit/a7bbbb7c368c6096802007f61f19a02e9d75285b
- (lambda _
- (substitute* "Makefile"
- (("install-data-hook:\n")
- "install-data-hook:\n\tcd docs/libcurl && $(MAKE) install\n"))
- #t)))))))))
+ "0wni3zkw7jyrwgwkqnrkf2x2b7c78wsp7p4z6a246hz9l367nhrj"))))))
--
2.14.2
K
K
Kei Kebreau wrote on 4 Oct 2017 18:37
(address . 28703-done@debbugs.gnu.org)
87376yzx6u.fsf@posteo.net
Unintentional duplicate of bug #28702.
-----BEGIN PGP SIGNATURE-----
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=TWD7
-----END PGP SIGNATURE-----

Closed
?
Your comment

This issue is archived.

To comment on this conversation send an email to 28703@debbugs.gnu.org

To respond to this issue using the mumi CLI, first switch to it
mumi current 28703
Then, you may apply the latest patchset in this issue (with sign off)
mumi am -- -s
Or, compose a reply to this issue
mumi compose
Or, send patches to this issue
mumi send-email *.patch