Mail archive
alpine-aports

[alpine-aports] [PATCH edge] community/webkit2gtk: security upgrade to 2.14.5 - fixes #6887

From: Sergei Lukin <sergej.lukin_at_gmail.com>
Date: Mon, 20 Feb 2017 13:31:08 +0000

CVE-2017-2350
CVE-2017-2354
CVE-2017-2355
CVE-2017-2356
CVE-2017-2362
CVE-2017-2363
CVE-2017-2364
CVE-2017-2365
CVE-2017-2366
CVE-2017-2369
CVE-2017-2371
CVE-2017-2373
---
 community/webkit2gtk/APKBUILD | 25 +++++++++++++++++++------
 1 file changed, 19 insertions(+), 6 deletions(-)
diff --git a/community/webkit2gtk/APKBUILD b/community/webkit2gtk/APKBUILD
index a4a2ff02e6..a38a2d6ff8 100644
--- a/community/webkit2gtk/APKBUILD
+++ b/community/webkit2gtk/APKBUILD
_at_@ -1,7 +1,8 @@
+# Contributor: Sergei Lukin <sergej.lukin_at_gmail.com>
 # Contributor: Jiri Horner <laeqten_at_gmail.com>
 # Maintainer: Jiri Horner <laeqten_at_gmail.com>
 pkgname=webkit2gtk
-pkgver=2.14.3
+pkgver=2.14.5
 pkgrel=0
 pkgdesc="portable web rendering engine WebKit for GTK+"
 url="http://webkitgtk.org/"
_at_@ -42,6 +43,22 @@ source="http://webkitgtk.org/releases/webkitgtk-$pkgver.tar.xz
 	musl-fixes.patch
 	"
 
+# secfixes:
+#   2.14.5-r0:
+#   - CVE-2017-2350
+#   - CVE-2017-2354
+#   - CVE-2017-2355
+#   - CVE-2017-2356
+#   - CVE-2017-2362
+#   - CVE-2017-2363
+#   - CVE-2017-2364
+#   - CVE-2017-2365
+#   - CVE-2017-2366
+#   - CVE-2017-2369
+#   - CVE-2017-2371
+#   - CVE-2017-2373
+
+
 builddir="${srcdir}/webkitgtk-${pkgver}"
 prepare() {
 	default_prepare || return 1
_at_@ -72,9 +89,5 @@ package() {
 	paxmark -m "$pkgdir"/usr/lib/webkit2gtk-4.0/WebKitWebProcess || return 1
 }
 
-md5sums="cb08302a3e140f5487fe757262cf5267  webkitgtk-2.14.3.tar.xz
-4e74c88f7e9522c6a573f9d588da9bc4  musl-fixes.patch"
-sha256sums="0bead450a4c92024f09008725bb3e8c3830a32c7e2983d566368c4fede9e106c  webkitgtk-2.14.3.tar.xz
-5cc1b9790056b4430b8a7b357f376ddcae43e38ab228d6a259c0abdc7ab4b892  musl-fixes.patch"
-sha512sums="b530b84f238230f29462ef599ffd1b9a9458690ba03a78d09126bf4c4ab37b4dfb477da7c364d2446cc259720ff4743112672ebf7888b8e3ff2c8fc1271fda57  webkitgtk-2.14.3.tar.xz
+sha512sums="3351d9b05458434835fa2db050c34906649c3b1222d7936d123306634a46e35e8cc3aa1bb7512b103af1996fce722254692826b6f695e32ae176032dc8c94e1c  webkitgtk-2.14.5.tar.xz
 95f88563cb83387e3f44781dd8b00c5adf53e352869ca1d217c6cfc0895e9b7680e24820b8df340316564dcbc4cb65eb502fb003089b4805b9ac9f583f454013  musl-fixes.patch"
-- 
2.11.1
---
Unsubscribe:  alpine-aports+unsubscribe_at_lists.alpinelinux.org
Help:         alpine-aports+help_at_lists.alpinelinux.org
---
Received on Mon Feb 20 2017 - 13:31:08 GMT