pkgsrc-Changes archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

CVS commit: [pkgsrc-2012Q2] pkgsrc/graphics/png

Module Name:    pkgsrc
Committed By:   tron
Date:           Fri Jul 13 08:51:00 UTC 2012

Modified Files:
        pkgsrc/graphics/png [pkgsrc-2012Q2]: Makefile distinfo

Log Message:
Pullup ticket #3858 - requested by wiz
graphics/png: security update

Revisions pulled up:
- graphics/png/Makefile                                         1.150
- graphics/png/distinfo                                         1.97

   Module Name: pkgsrc
   Committed By:        wiz
   Date:                Wed Jul 11 09:00:42 UTC 2012

   Modified Files:
        pkgsrc/graphics/png: Makefile distinfo

   Log Message:
   Update to 1.5.12:
     Removed scripts/makefile.cegcc from the *.zip and *.7z distributions; it
       depends on configure, which is not included in those archives.
     Changed "a+w" to "u+w" in to fix CVE-2012-3386.

   I don't see CVS-2012-3386 as a vulnerability that applies to pkgsrc,
   since to trigger it, you have to run 'make distcheck', and pkgsrc
   never does that.

To generate a diff of this commit:
cvs rdiff -u -r1.149 -r1.149.2.1 pkgsrc/graphics/png/Makefile
cvs rdiff -u -r1.96 -r1.96.2.1 pkgsrc/graphics/png/distinfo

Please note that diffs are not public domain; they are subject to the
copyright notices on the relevant files.

Home | Main Index | Thread Index | Old Index