Commit c06e4863 authored by Leonardo Arena's avatar Leonardo Arena

main/curl: security upgrade to 7.58.0

CVE-2018-1000005, CVE-2018-1000007

Fixes #8439
parent 11536a1e
......@@ -3,7 +3,7 @@
# Contributor: Łukasz Jendrysik <scadu@yandex.com>
# Maintainer: Natanael Copa <ncopa@alpinelinux.org>
pkgname=curl
pkgver=7.57.0
pkgver=7.58.0
pkgrel=0
pkgdesc="An URL retrival utility and library"
url="http://curl.haxx.se"
......@@ -13,8 +13,11 @@ depends="ca-certificates"
makedepends="zlib-dev libressl-dev libssh2-dev groff perl"
source="http://curl.haxx.se/download/$pkgname-$pkgver.tar.bz2"
subpackages="$pkgname-dbg $pkgname-doc $pkgname-dev libcurl"
builddir="$srcdir/$pkgname-$pkgver"
# secfixes:
# 7.58.0-r0:
# - CVE-2018-1000005
# 7.57.0-r0:
# - CVE-2017-8816
# - CVE-2017-8817
......@@ -57,8 +60,6 @@ subpackages="$pkgname-dbg $pkgname-doc $pkgname-dev libcurl"
# - CVE-2014-0138
# - CVE-2014-0139
builddir="$srcdir/$pkgname-$pkgver"
build() {
cd "$builddir"
./configure \
......@@ -90,4 +91,4 @@ libcurl() {
mv "$pkgdir"/usr/lib "$subpkgdir"/usr
}
sha512sums="f366d2e931d7aff63bac0e1f760ced32c849252947d522427ba92124566906a7e6bd081b6d1630df36895dda2a00ac4cf1bed1470740693ef47ab90c6a270377 curl-7.57.0.tar.bz2"
sha512sums="853b945fbfe87e8dcf2186d8cc6609681b9ed3727f9f075bb434d5df07dcccc633fdf30795f6d5956e3355a5cf94a3780e4a3603b08cbd0368e44103de27085b curl-7.58.0.tar.bz2"
Markdown is supported
0%
or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment