pkgsrc-Changes-HG archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

[pkgsrc/trunk]: pkgsrc/archivers/p5-Archive-Tar - updated to 1.38



details:   https://anonhg.NetBSD.org/pkgsrc/rev/21452ad80fb4
branches:  trunk
changeset: 538210:21452ad80fb4
user:      rhaen <rhaen%pkgsrc.org@localhost>
date:      Fri Feb 01 11:59:03 2008 +0000

description:
- updated to 1.38
- ok'ed by rillig
ChangeLog:
* important changes in vesrion 1.38    14/12/2007:
- Promote 1.37_01 to stable.

* important changes in version 1.37_01 11/11/2007:
_ Address #30380: directory traversal vulnerability in Archive-Tar
  - Add $INSECURE_EXTRACT_MODE which defaults to 0, disallowing
    archives to extract files outside of cwd(). This is a backwards
    incompatible change from 1.36 and before.
  - Add a -I option to ptar to enable insecure extraction if needed

diffstat:

 archivers/p5-Archive-Tar/Makefile |  4 ++--
 archivers/p5-Archive-Tar/distinfo |  8 ++++----
 2 files changed, 6 insertions(+), 6 deletions(-)

diffs (25 lines):

diff -r 1bc187992a59 -r 21452ad80fb4 archivers/p5-Archive-Tar/Makefile
--- a/archivers/p5-Archive-Tar/Makefile Fri Feb 01 11:51:26 2008 +0000
+++ b/archivers/p5-Archive-Tar/Makefile Fri Feb 01 11:59:03 2008 +0000
@@ -1,6 +1,6 @@
-# $NetBSD: Makefile,v 1.28 2007/12/11 11:53:38 rhaen Exp $
+# $NetBSD: Makefile,v 1.29 2008/02/01 11:59:03 rhaen Exp $
 
-DISTNAME=              Archive-Tar-1.36
+DISTNAME=              Archive-Tar-1.38
 PKGNAME=               p5-${DISTNAME}
 SVR4_PKGNAME=          p5tar
 CATEGORIES=            archivers perl5
diff -r 1bc187992a59 -r 21452ad80fb4 archivers/p5-Archive-Tar/distinfo
--- a/archivers/p5-Archive-Tar/distinfo Fri Feb 01 11:51:26 2008 +0000
+++ b/archivers/p5-Archive-Tar/distinfo Fri Feb 01 11:59:03 2008 +0000
@@ -1,5 +1,5 @@
-$NetBSD: distinfo,v 1.13 2007/12/11 11:53:38 rhaen Exp $
+$NetBSD: distinfo,v 1.14 2008/02/01 11:59:03 rhaen Exp $
 
-SHA1 (Archive-Tar-1.36.tar.gz) = ad248b1f40e229f5bc1b6291a52364442df81b7d
-RMD160 (Archive-Tar-1.36.tar.gz) = d3a00c44b34b0ad02ab461dbb5e14e48d8238dba
-Size (Archive-Tar-1.36.tar.gz) = 41126 bytes
+SHA1 (Archive-Tar-1.38.tar.gz) = f52b4928b839d0bb8f77e507a59ff46af816737e
+RMD160 (Archive-Tar-1.38.tar.gz) = 908cf29622038cc526bcca98a65523e4cb445b8c
+Size (Archive-Tar-1.38.tar.gz) = 42452 bytes



Home | Main Index | Thread Index | Old Index