pkgsrc-Changes-HG archive
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]
[pkgsrc/trunk]: pkgsrc/graphics/ImageMagick6 ImageMagick6: Disable ghostscrip...
details: https://anonhg.NetBSD.org/pkgsrc/rev/f9c53df62a2a
branches: trunk
changeset: 384418:f9c53df62a2a
user: leot <leot%pkgsrc.org@localhost>
date: Wed Aug 22 13:38:00 2018 +0000
description:
ImageMagick6: Disable ghostscript coders by default in policy.xml
Disable ghostscript coders in policy.xml as a workaround for
VU#332928 (<https://www.kb.cert.org/vuls/id/332928>).
Please note that apart commenting/removing lines added in policy.xml,
the ghostscript coders can be enabled per-user by copying policy.xml
to ~/.config/ImageMagick/policy.xml and adjusting it with the
following lines:
| [...]
| <policy domain="coder" rights="read|write" pattern="PS" />
| <policy domain="coder" rights="read|write" pattern="EPS" />
| <policy domain="coder" rights="read|write" pattern="PDF" />
| <policy domain="coder" rights="read|write" pattern="XPS" />
| [...]
Bump PKGREVISION
diffstat:
graphics/ImageMagick6/Makefile | 4 +-
graphics/ImageMagick6/distinfo | 3 +-
graphics/ImageMagick6/patches/patch-config_policy.xml | 22 +++++++++++++++++++
3 files changed, 26 insertions(+), 3 deletions(-)
diffs (51 lines):
diff -r ebe80d9396d2 -r f9c53df62a2a graphics/ImageMagick6/Makefile
--- a/graphics/ImageMagick6/Makefile Wed Aug 22 13:00:41 2018 +0000
+++ b/graphics/ImageMagick6/Makefile Wed Aug 22 13:38:00 2018 +0000
@@ -1,6 +1,6 @@
-# $NetBSD: Makefile,v 1.17 2018/08/22 09:45:10 wiz Exp $
+# $NetBSD: Makefile,v 1.18 2018/08/22 13:38:00 leot Exp $
-PKGREVISION= 3
+PKGREVISION= 4
.include "Makefile.common"
PKGNAME= ImageMagick6-${DISTVERSION}
diff -r ebe80d9396d2 -r f9c53df62a2a graphics/ImageMagick6/distinfo
--- a/graphics/ImageMagick6/distinfo Wed Aug 22 13:00:41 2018 +0000
+++ b/graphics/ImageMagick6/distinfo Wed Aug 22 13:38:00 2018 +0000
@@ -1,7 +1,8 @@
-$NetBSD: distinfo,v 1.9 2018/03/12 15:47:00 fhajny Exp $
+$NetBSD: distinfo,v 1.10 2018/08/22 13:38:00 leot Exp $
SHA1 (ImageMagick-6.9.9-38.tar.xz) = 2dc6b3c415b342efb7ab64d18bb801c7f1881212
RMD160 (ImageMagick-6.9.9-38.tar.xz) = 50008946057cde9fc7a6d0149414e870a2a351b0
SHA512 (ImageMagick-6.9.9-38.tar.xz) = 78ecb605d2ea529603bab723c284be9c03a7d370814bbe708c2c34e0b91f75c1a0c193a5a2ea8f3583019d3610ac08d0d28671d8fdb2df2478865d9ab7417b91
Size (ImageMagick-6.9.9-38.tar.xz) = 8913864 bytes
SHA1 (patch-Makefile.in) = bb747b5e062f2a59e307289b5b33861dd5f96ab0
+SHA1 (patch-config_policy.xml) = 2b7e37cc8fedb0d06502ba1d7e65a5aea9d6ec96
diff -r ebe80d9396d2 -r f9c53df62a2a graphics/ImageMagick6/patches/patch-config_policy.xml
--- /dev/null Thu Jan 01 00:00:00 1970 +0000
+++ b/graphics/ImageMagick6/patches/patch-config_policy.xml Wed Aug 22 13:38:00 2018 +0000
@@ -0,0 +1,22 @@
+$NetBSD: patch-config_policy.xml,v 1.1 2018/08/22 13:38:00 leot Exp $
+
+Disable ghostscript coders by default to workaround VU#332928:
+<https://www.kb.cert.org/vuls/id/332928>
+
+--- config/policy.xml.orig 2018-08-13 11:05:28.000000000 +0000
++++ config/policy.xml
+@@ -74,4 +74,14 @@
+ <!-- <policy domain="cache" name="memory-map" value="anonymous"/> -->
+ <!-- <policy domain="cache" name="synchronize" value="True"/> -->
+ <!-- <policy domain="cache" name="shared-secret" value="passphrase" stealth="true"/> -->
++
++ <!--
++ -- Disable ghostscript coders as suggested by VU#332928
++ -- <https://www.kb.cert.org/vuls/id/332928>
++ -->
++ <policy domain="coder" rights="none" pattern="PS" />
++ <policy domain="coder" rights="none" pattern="EPS" />
++ <policy domain="coder" rights="none" pattern="PDF" />
++ <policy domain="coder" rights="none" pattern="XPS" />
++
+ </policymap>
Home |
Main Index |
Thread Index |
Old Index