From patchwork Mon Nov 7 21:13:58 2022 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Adolf Belka X-Patchwork-Id: 6072 Return-Path: Received: from mail01.ipfire.org (mail01.haj.ipfire.org [172.28.1.202]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature ECDSA (P-384) client-signature ECDSA (P-384)) (Client CN "mail01.haj.ipfire.org", Issuer "R3" (verified OK)) by web04.haj.ipfire.org (Postfix) with ESMTPS id 4N5kW20Hjcz3wcM for ; Mon, 7 Nov 2022 21:14:06 +0000 (UTC) Received: from mail02.haj.ipfire.org (mail02.haj.ipfire.org [172.28.1.201]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature ECDSA (P-384) client-signature ECDSA (P-384)) (Client CN "mail02.haj.ipfire.org", Issuer "R3" (verified OK)) by mail01.ipfire.org (Postfix) with ESMTPS id 4N5kW0438vzyn; Mon, 7 Nov 2022 21:14:04 +0000 (UTC) Received: from mail02.haj.ipfire.org (localhost [127.0.0.1]) by mail02.haj.ipfire.org (Postfix) with ESMTP id 4N5kW02cLhz2ycW; Mon, 7 Nov 2022 21:14:04 +0000 (UTC) Received: from mail01.ipfire.org (mail01.haj.ipfire.org [172.28.1.202]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature ECDSA (P-384) client-signature ECDSA (P-384)) (Client CN "mail01.haj.ipfire.org", Issuer "R3" (verified OK)) by mail02.haj.ipfire.org (Postfix) with ESMTPS id 4N5kVy2WhVz2xgt for ; Mon, 7 Nov 2022 21:14:02 +0000 (UTC) Received: from [127.0.0.1] (localhost [127.0.0.1]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature ECDSA (P-384) server-digest SHA384) (No client certificate requested) by mail01.ipfire.org (Postfix) with ESMTPSA id 4N5kVx4GsTzmp; Mon, 7 Nov 2022 21:14:01 +0000 (UTC) DKIM-Signature: v=1; a=ed25519-sha256; c=relaxed/relaxed; d=ipfire.org; s=202003ed25519; t=1667855641; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:cc:mime-version:mime-version: content-transfer-encoding:content-transfer-encoding; bh=xW83OAo03pS2JOeGKZJzwDroUZ+p0bt0M3Wd2+8SPgU=; b=sUGfTt64U4E2Rq1jnAVSPgc8THqApZPNZHVZQO18k7au4sRJrO+UvzgRhJ8J0BbZ6iECfd iuUQXaFnqlOUhZBA== DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ipfire.org; s=202003rsa; t=1667855641; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:cc:mime-version:mime-version: content-transfer-encoding:content-transfer-encoding; bh=xW83OAo03pS2JOeGKZJzwDroUZ+p0bt0M3Wd2+8SPgU=; b=T0PRXvXLZEE6qvDA6Td4UdDBhE/kZn2Kk8xKtmSL3wgWCluug6mPetBMtgiXRyqET/5XSY FXXnp9FYV3AI1zlFQ7n+wFfa+s2K+pagphlt0FNfvschG7vcvHQEAfp1GIG9gBQrJNxurR xgWAsl7qjRF/mYx0JyWgMnVMKb+nXMca6f+o9BkqqQrftrRHYjKutTI907VDpB/fsdm8DP LnJtv6wOLuBz6tb6tYeHhBhxH/YPlQsOxFCGEjc6J+BKAQ8smpY4oIPlVs0ZN8V0IWrU9z 8lZOQRv7yEv1Ps1eyhRQPHglVKgfCwFI2rGYeZZE4ptFFwmOTT6uAaxjmUeo/g== From: Adolf Belka To: development@lists.ipfire.org Subject: [PATCH] expat: Update to version 2.5.0 Date: Mon, 7 Nov 2022 22:13:58 +0100 Message-Id: <20221107211358.3219461-1-adolf.belka@ipfire.org> MIME-Version: 1.0 X-BeenThere: development@lists.ipfire.org X-Mailman-Version: 2.1.29 Precedence: list List-Id: IPFire development talk List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: development-bounces@lists.ipfire.org Sender: "Development" - Update from version 2.4.9 to 2.5.0 - Update of rootfile. - Changelog Release 2.5.0 Tue October 25 2022 Security fixes: #616 #649 #650 CVE-2022-43680 -- Fix heap use-after-free after overeager destruction of a shared DTD in function XML_ExternalEntityParserCreate in out-of-memory situations. Expected impact is denial of service or potentially arbitrary code execution. Bug fixes: #612 #645 Fix curruption from undefined entities #613 #654 Fix case when parsing was suspended while processing nested entities #616 #652 #653 Stop leaking opening tag bindings after a closing tag mismatch error where a parser is reset through XML_ParserReset and then reused to parse #656 CMake: Fix generation of pkg-config file #658 MinGW|CMake: Fix static library name Other changes: #663 Protect header expat_config.h from multiple inclusion #666 examples: Make use of XML_GetBuffer and be more consistent across examples #648 Address compiler warnings #667 #668 Version info bumped from 9:9:8 to 9:10:8; see https://verbump.de/ for what these numbers do Signed-off-by: Adolf Belka Reviewed-by: Michael Tremer --- config/rootfiles/common/expat | 20 ++++++++++---------- lfs/expat | 4 ++-- 2 files changed, 12 insertions(+), 12 deletions(-) diff --git a/config/rootfiles/common/expat b/config/rootfiles/common/expat index 8feb895b3..5b25d63b8 100644 --- a/config/rootfiles/common/expat +++ b/config/rootfiles/common/expat @@ -2,20 +2,20 @@ #usr/include/expat.h #usr/include/expat_config.h #usr/include/expat_external.h -#usr/lib/cmake/expat-2.4.9 -#usr/lib/cmake/expat-2.4.9/expat-config-version.cmake -#usr/lib/cmake/expat-2.4.9/expat-config.cmake -#usr/lib/cmake/expat-2.4.9/expat-noconfig.cmake -#usr/lib/cmake/expat-2.4.9/expat.cmake +#usr/lib/cmake/expat-2.5.0 +#usr/lib/cmake/expat-2.5.0/expat-config-version.cmake +#usr/lib/cmake/expat-2.5.0/expat-config.cmake +#usr/lib/cmake/expat-2.5.0/expat-noconfig.cmake +#usr/lib/cmake/expat-2.5.0/expat.cmake #usr/lib/libexpat.la #usr/lib/libexpat.so usr/lib/libexpat.so.1 -usr/lib/libexpat.so.1.8.9 +usr/lib/libexpat.so.1.8.10 #usr/lib/pkgconfig/expat.pc #usr/share/doc/expat -#usr/share/doc/expat-2.4.9 -#usr/share/doc/expat-2.4.9/ok.min.css -#usr/share/doc/expat-2.4.9/reference.html -#usr/share/doc/expat-2.4.9/style.css +#usr/share/doc/expat-2.5.0 +#usr/share/doc/expat-2.5.0/ok.min.css +#usr/share/doc/expat-2.5.0/reference.html +#usr/share/doc/expat-2.5.0/style.css #usr/share/doc/expat/AUTHORS #usr/share/doc/expat/changelog diff --git a/lfs/expat b/lfs/expat index a1a1326d0..a89b6d114 100644 --- a/lfs/expat +++ b/lfs/expat @@ -24,7 +24,7 @@ include Config -VER = 2.4.9 +VER = 2.5.0 THISAPP = expat-$(VER) DL_FILE = $(THISAPP).tar.bz2 @@ -40,7 +40,7 @@ objects = $(DL_FILE) $(DL_FILE) = $(DL_FROM)/$(DL_FILE) -$(DL_FILE)_BLAKE2 = d60183f96f3359acc069af638cc8d16ba19f51fbd8a61eddd80c2babddde357dcf0561e87af901f53617bfd9452e146c9dd9f317729cd3648b65832a38388640 +$(DL_FILE)_BLAKE2 = 15a5dcd3af17995fb4299301710b38d609c1fe7a8d6a6284581fedd96e89e0c16526d0342fb55773ac9d678cd65dc5cdb1532c764eeb3a20ccdf1e168b96e337 install : $(TARGET)