pkgsrc-Changes-HG archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

[pkgsrc/trunk]: pkgsrc/print/poppler add a missing pointer initialization, fi...



details:   https://anonhg.NetBSD.org/pkgsrc/rev/b9ddd99f7e3f
branches:  trunk
changeset: 544087:b9ddd99f7e3f
user:      drochner <drochner%pkgsrc.org@localhost>
date:      Wed Jul 09 10:30:37 2008 +0000

description:
add a missing pointer initialization, fixes possible memory corruption
(CVE-2008-2950), patch from the advisory, bump PKGREVISION

diffstat:

 print/poppler/Makefile         |   4 +++-
 print/poppler/distinfo         |   3 ++-
 print/poppler/patches/patch-aj |  13 +++++++++++++
 3 files changed, 18 insertions(+), 2 deletions(-)

diffs (46 lines):

diff -r 790c4fb9f64a -r b9ddd99f7e3f print/poppler/Makefile
--- a/print/poppler/Makefile    Wed Jul 09 10:26:32 2008 +0000
+++ b/print/poppler/Makefile    Wed Jul 09 10:30:37 2008 +0000
@@ -1,8 +1,10 @@
-# $NetBSD: Makefile,v 1.29 2008/06/05 21:03:37 drochner Exp $
+# $NetBSD: Makefile,v 1.30 2008/07/09 10:30:37 drochner Exp $
 #
 
 .include "../../print/poppler/Makefile.common"
 
+PKGREVISION=   1
+
 COMMENT=               PDF rendering library
 
 USE_TOOLS+=            gmake
diff -r 790c4fb9f64a -r b9ddd99f7e3f print/poppler/distinfo
--- a/print/poppler/distinfo    Wed Jul 09 10:26:32 2008 +0000
+++ b/print/poppler/distinfo    Wed Jul 09 10:30:37 2008 +0000
@@ -1,4 +1,4 @@
-$NetBSD: distinfo,v 1.29 2008/06/05 21:03:37 drochner Exp $
+$NetBSD: distinfo,v 1.30 2008/07/09 10:30:37 drochner Exp $
 
 SHA1 (poppler-0.8.3.tar.gz) = 763d18d9f0e625a936b3a3fbbcd00b58ddd2f84f
 RMD160 (poppler-0.8.3.tar.gz) = f6553fdf468bd67ec8a7f943ba2cc7f141052302
@@ -6,3 +6,4 @@
 SHA1 (patch-aa) = 43c63c16d3a845e394a8eb0c3a321944fcf17615
 SHA1 (patch-ab) = e3d413ec50a098af06cb2efc2fac2042064498dd
 SHA1 (patch-ag) = d1581a1ca40bba34146a4a6f4ee7d38b8f6ff3b7
+SHA1 (patch-aj) = 7599a5c14b4d2bdd83283275e71c5a720360f362
diff -r 790c4fb9f64a -r b9ddd99f7e3f print/poppler/patches/patch-aj
--- /dev/null   Thu Jan 01 00:00:00 1970 +0000
+++ b/print/poppler/patches/patch-aj    Wed Jul 09 10:30:37 2008 +0000
@@ -0,0 +1,13 @@
+$NetBSD: patch-aj,v 1.3 2008/07/09 10:30:37 drochner Exp $
+
+--- poppler/Page.cc.orig       2008-07-09 12:02:41.000000000 +0200
++++ poppler/Page.cc
+@@ -230,7 +230,7 @@ GBool PageAttrs::readBox(Dict *dict, cha
+ 
+ Page::Page(XRef *xrefA, int numA, Dict *pageDict, PageAttrs *attrsA, Form *form) {
+   Object tmp;
+-      
++  pageWidgets =       NULL;  //Security fix
+   ok = gTrue;
+   xref = xrefA;
+   num = numA;



Home | Main Index | Thread Index | Old Index