Commit e8b9e4a7 authored by Leonardo Arena's avatar Leonardo Arena
Browse files

main/python3: security fixes (CVE-2018-1060, CVE-2018-1061)

Fixes #9271
parent 8f44fd6c
......@@ -2,9 +2,9 @@
# Contributor: Kiyoshi Aman <kiyoshi.aman@gmail.com>
pkgname=python3
pkgver=3.5.2
pkgver=3.5.6
_basever="${pkgver%.*}"
pkgrel=10
pkgrel=0
pkgdesc="A high-level scripting language"
url="http://www.python.org"
arch="all"
......@@ -18,10 +18,14 @@ makedepends="expat-dev libressl-dev zlib-dev ncurses-dev bzip2-dev xz-dev
tk tk-dev"
source="http://www.python.org/ftp/python/$pkgver/Python-$pkgver.tar.xz
musl-find_library.patch
issue-27955.patch
"
builddir="$srcdir/Python-$pkgver"
# secfixes
# 3.5.6-r0:
# - CVE-2018-1060
# - CVE-2018-1061
prepare() {
default_prepare || return 1
......@@ -100,12 +104,9 @@ wininst() {
"$subpkgdir"/usr/lib/python$_basever/distutils/command
}
md5sums="8906efbacfcdc7c3c9198aeefafd159e Python-3.5.2.tar.xz
2840477c6552a0ca2f4ede885ad872f1 musl-find_library.patch
b63a796d0662515d7abe1e94576ced1d issue-27955.patch"
sha256sums="0010f56100b9b74259ebcd5d4b295a32324b58b517403a10d1a2aa7cb22bca40 Python-3.5.2.tar.xz
83fd071bc556d4e88373a35fde74cb9c464ee4b8e95e5583b55f2e36d4f33cf2 musl-find_library.patch
61ea7a484332c245f0fccdbe93597efd91e3613a495d7172627a47b85dd8d088 issue-27955.patch"
sha512sums="c07c3366f1c81e214241444bb9da6db9d11da32ad66bfa29cdad5a3b2e34e4d870bda6d4ce3c3910b582942e91f1d8c8a1c1a7b9464cc147b83c9e0007012742 Python-3.5.2.tar.xz
ab8eaa2858d5109049b1f9f553198d40e0ef8d78211ad6455f7b491af525bffb16738fed60fc84e960c4889568d25753b9e4a1494834fea48291b33f07000ec2 musl-find_library.patch
388a0f49e98daf953bf859c15cc43f71dc7d77e82e65cb14a51999e8dd78cf93636ab5c116148c6310a8ea93a7c6d03fcd35e1b8f023d8e94fcff637b6c47c54 issue-27955.patch"
md5sums="f5a99f765e765336a3ebbb2a24ca2be3 Python-3.5.6.tar.xz
2840477c6552a0ca2f4ede885ad872f1 musl-find_library.patch"
sha256sums="f55cde04f521f273c7cba08912921cc5642cfc15ca7b22d5829f0aff4371155f Python-3.5.6.tar.xz
83fd071bc556d4e88373a35fde74cb9c464ee4b8e95e5583b55f2e36d4f33cf2 musl-find_library.patch"
sha512sums="1ccf287dbe8594eb577c1197c19d882fbe235c72f4c01cda23258f2add8a93e639b41ebaf556508b867cbe1b4c1fc4e1cf457d70b98cf7a1502013660a7e0ac1 Python-3.5.6.tar.xz
ab8eaa2858d5109049b1f9f553198d40e0ef8d78211ad6455f7b491af525bffb16738fed60fc84e960c4889568d25753b9e4a1494834fea48291b33f07000ec2 musl-find_library.patch"
Markdown is supported
0% or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment