Source-Changes-HG archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

[pkgsrc/trunk]: pkgsrc/lang/nodejs12 nodejs12: updated to 12.18.0



details:   https://anonhg.NetBSD.org/pkgsrc/rev/78387c0c107b
branches:  trunk
changeset: 433493:78387c0c107b
user:      adam <adam%pkgsrc.org@localhost>
date:      Wed Jun 03 08:42:41 2020 +0000

description:
nodejs12: updated to 12.18.0

Version 12.18.0 'Erbium' (LTS)

Notable changes

This is a security release.

Vulnerabilities fixed:

CVE-2020-8172: TLS session reuse can lead to host certificate verification bypass (High).
CVE-2020-11080: HTTP/2 Large Settings Frame DoS (Low).
CVE-2020-8174: napi_get_value_string_*() allows various kinds of memory corruption (High).

Commits

- crypto: update root certificates
- (SEMVER-MINOR) deps: update nghttp2 to 1.41.0
- (SEMVER-MINOR) http2: implement support for max settings entries
- napi: fix memory corruption vulnerability
- tls: emit session after verifying certificate
- tools: update certdata.txt

diffstat:

 lang/nodejs12/Makefile      |   5 ++---
 lang/nodejs12/buildlink3.mk |   4 ++--
 lang/nodejs12/distinfo      |  10 +++++-----
 3 files changed, 9 insertions(+), 10 deletions(-)

diffs (52 lines):

diff -r 10e58877cfcc -r 78387c0c107b lang/nodejs12/Makefile
--- a/lang/nodejs12/Makefile    Wed Jun 03 08:41:24 2020 +0000
+++ b/lang/nodejs12/Makefile    Wed Jun 03 08:42:41 2020 +0000
@@ -1,10 +1,9 @@
-# $NetBSD: Makefile,v 1.17 2020/06/02 08:22:46 adam Exp $
+# $NetBSD: Makefile,v 1.18 2020/06/03 08:42:41 adam Exp $
 
-DISTNAME=      node-v12.17.0
+DISTNAME=      node-v12.18.0
 
 USE_LANGUAGES= c gnu++14
 
-PKGREVISION= 1
 .include "../../mk/bsd.prefs.mk"
 
 # XXX: figure out a way to add rpaths to torque
diff -r 10e58877cfcc -r 78387c0c107b lang/nodejs12/buildlink3.mk
--- a/lang/nodejs12/buildlink3.mk       Wed Jun 03 08:41:24 2020 +0000
+++ b/lang/nodejs12/buildlink3.mk       Wed Jun 03 08:42:41 2020 +0000
@@ -1,4 +1,4 @@
-# $NetBSD: buildlink3.mk,v 1.6 2020/06/02 08:22:46 adam Exp $
+# $NetBSD: buildlink3.mk,v 1.7 2020/06/03 08:42:41 adam Exp $
 
 BUILDLINK_TREE+=       nodejs
 
@@ -26,7 +26,7 @@
 pkgbase := nodejs
 .include "../../mk/pkg-build-options.mk"
 
-.if !empty(PKG_BUILD_OPTIONS.nodejs:Mopenssl)
+.if ${PKG_BUILD_OPTIONS.nodejs:Mopenssl}
 .  include "../../security/openssl/buildlink3.mk"
 .endif
 
diff -r 10e58877cfcc -r 78387c0c107b lang/nodejs12/distinfo
--- a/lang/nodejs12/distinfo    Wed Jun 03 08:41:24 2020 +0000
+++ b/lang/nodejs12/distinfo    Wed Jun 03 08:42:41 2020 +0000
@@ -1,9 +1,9 @@
-$NetBSD: distinfo,v 1.11 2020/05/30 20:45:12 joerg Exp $
+$NetBSD: distinfo,v 1.12 2020/06/03 08:42:41 adam Exp $
 
-SHA1 (node-v12.17.0.tar.gz) = dc53d894b4da759a7ee4cd1d96d6e59449503570
-RMD160 (node-v12.17.0.tar.gz) = 55dc3d91e1773f4bfb8a9a6e062c9f82a41169b1
-SHA512 (node-v12.17.0.tar.gz) = 2c003fb5684adcfbab9a096ada336efa92703043febbf48753bc57693528779cdea5b6d30614c4b406e24fbd85fb7750148e4185b99fa74d52b8fbddfcc7f7b5
-Size (node-v12.17.0.tar.gz) = 52417986 bytes
+SHA1 (node-v12.18.0.tar.gz) = 64ae33910c22fbca45979944b7bb01e6fd72788d
+RMD160 (node-v12.18.0.tar.gz) = d300996ae8390687a0011595f02f25bc10eb815d
+SHA512 (node-v12.18.0.tar.gz) = fc47292b7bb13996e6162261ae3341be2414f32b0a76c5d73d3404eb4439bbdbf9415301270b52507b38bc28b431690ba026ab399f39ff1147a9719cb294692f
+Size (node-v12.18.0.tar.gz) = 52416819 bytes
 SHA1 (patch-common.gypi) = a3fa3b5b974f910b3c8fea640ded4dca262e1ba8
 SHA1 (patch-deps_cares_cares.gyp) = 22b44f2ac59963f694dfe4f4585e08960b3dec32
 SHA1 (patch-deps_uv_common.gypi) = d38a9c8d9e3522f15812aec2f5b1e1e636d4bab3



Home | Main Index | Thread Index | Old Index