X-Original-To: alpine-aports@lists.alpinelinux.org Received: from mail-lf0-f66.google.com (mail-lf0-f66.google.com [209.85.215.66]) by lists.alpinelinux.org (Postfix) with ESMTP id BB6F35C427B for ; Mon, 13 Feb 2017 09:35:22 +0000 (GMT) Received: by mail-lf0-f66.google.com with SMTP id x1so7853247lff.0 for ; Mon, 13 Feb 2017 01:35:22 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=from:to:cc:subject:date:message-id; bh=bl5WK6iHVInYGgNIQ0QBK8mhH7IzHc93889gsmuNcPg=; b=mtQH3IiWtq1qCbA55zE6AvaagRJl0wHz5hnrb4lcK3dJcuF4rdv20JpHET9fUGbKHm tO4IDHoG5XasyG7Dt8xmoojQMJVtSwzXstmpAg7MQLi4uTKv1/HJ//fZb4Fgf5u8+iZC 3RXJqo0BNISHwy2A/y4pSMmCCOy4jU4LffEHqKgCZkOBh9vSsR0TM+AlpbjyQejJRI2O 6smoRUz4O07Eli9Ljgg6SZ3P5EkIttVkJpiHl4zsmJ4LPA/1WXKcodY4YMxMmff6zFQa 12MEXdO07J6H0m3XjJjfKzbmb3OPaPBFz+DoX1QAgFcrgZ658eZUOMeyLrl50/0JBsXy /WjQ== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:from:to:cc:subject:date:message-id; bh=bl5WK6iHVInYGgNIQ0QBK8mhH7IzHc93889gsmuNcPg=; b=P1pAlTjBx4TOhhaPZa9tLd1dVwizvvood8zOjYWGl7Ep++fLCx1lkiZI1XQ/iTpYK/ +K2Xzqb3mYV3pR6Z0TUAMbPvVI8vgzo7i00CzLEP4avrTEw/GVj7DVihOvutvGbCqqsx AYjlR93a6OUudxhot/BVK7EojgkupRsY5VdbBd9ndDdz9nAhNzd/xfTlHvr3KWITXX88 P7HbU8XbgQ0Hp+SENNKnMmRC5Pqrt3AvcHXA6uQhYLJ5Q9Y54jIDwZc3IzeKE09qscu2 rk3sFteh4C3Rl+PdOGWDwRL4izWHSh6V4C00V0yYSnjVrv3nh5qAOFstLrqSh9ZZNEpk 3vww== X-Gm-Message-State: AMke39nYig0gp3Ki+EPvbNlK2VqBqDqJ2RxKoGnVUKK7M+8ybioZg13yeTQY32VMF81TRA== X-Received: by 10.25.168.132 with SMTP id r126mr5431435lfe.70.1486978522065; Mon, 13 Feb 2017 01:35:22 -0800 (PST) Received: from v3-3.util.wtbts.net ([83.145.235.199]) by smtp.gmail.com with ESMTPSA id g85sm2604933lji.21.2017.02.13.01.35.21 (version=TLS1_2 cipher=ECDHE-RSA-AES128-SHA bits=128/128); Mon, 13 Feb 2017 01:35:21 -0800 (PST) From: Sergei Lukin To: alpine-aports@lists.alpinelinux.org Cc: Sergei Lukin Subject: [alpine-aports] [PATCH v3.3] main/postfixadmin: security upgrade to 3.0.2 - fixes #6837 Date: Mon, 13 Feb 2017 09:35:14 +0000 Message-Id: <1486978514-643-1-git-send-email-sergej.lukin@gmail.com> X-Mailer: git-send-email 2.6.6 X-Mailinglist: alpine-aports Precedence: list List-Id: Alpine Development List-Unsubscribe: List-Post: List-Help: List-Subscribe: CVE-2017-5930: allows to delete protected aliases https://svn.code.sf.net/p/postfixadmin/code/trunk/CHANGELOG.TXT --- Upgrading from 3.0 beta3 (=2.93) to 3.0.2 Looks that there were no major changes made main/postfixadmin/APKBUILD | 13 +++++++++---- 1 file changed, 9 insertions(+), 4 deletions(-) diff --git a/main/postfixadmin/APKBUILD b/main/postfixadmin/APKBUILD index 2b76413..36d2ef6 100644 --- a/main/postfixadmin/APKBUILD +++ b/main/postfixadmin/APKBUILD @@ -1,7 +1,8 @@ +# Contributor: Sergei Lukin # Contributor: Natanael Copa # Maintainer: Natanael Copa pkgname=postfixadmin -pkgver=2.93 +pkgver=3.0.2 pkgrel=0 pkgdesc="Web Based Management tool for Postfix" url="http://postfixadmin.com/" @@ -13,6 +14,10 @@ install="" subpackages="" source="http://downloads.sourceforge.net/project/postfixadmin/postfixadmin/postfixadmin-$pkgver/postfixadmin-$pkgver.tar.gz" +# secfixes: +# 3.0.2-r0: +# - CVE-2017-5930 + _builddir="$srcdir"/postfixadmin-$pkgver prepare() { local i @@ -41,6 +46,6 @@ package() { "$pkgdir"/usr/share/webapps/postfixadmin/config.inc.php } -md5sums="d9a0e19bdb3241411cac8446d511fdb4 postfixadmin-2.93.tar.gz" -sha256sums="cc1ec188ea90254d8365081171dbbf2bfdf2a020bc943725b5a957de34bc1769 postfixadmin-2.93.tar.gz" -sha512sums="ef2d7b1112c18722ba94fac3c34b0b9bbd961ba3bf1eb866fecd63ccceca9feccca53efcb54dc1d4c109fd407ba2cee642f310a9b3254b164137e41664de0af9 postfixadmin-2.93.tar.gz" +md5sums="84fd489199832cb40af8315c0cb3ad4f postfixadmin-3.0.2.tar.gz" +sha256sums="9a4edb111258c90912aea66ad1dd684445b4f03f08f8549b9d708336ae019c8c postfixadmin-3.0.2.tar.gz" +sha512sums="19db70cc59e8e41356e4cd632b0cb9df8d8de0f0451e7e2c84d61a0aa6ede5cc93bbf8914786a2eec012e4c013ad130a001d143ce869aa54b54a50fb798ed92b postfixadmin-3.0.2.tar.gz" -- 2.6.6 --- Unsubscribe: alpine-aports+unsubscribe@lists.alpinelinux.org Help: alpine-aports+help@lists.alpinelinux.org ---