summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorbsiegert <bsiegert@pkgsrc.org>2020-06-09 11:59:46 +0000
committerbsiegert <bsiegert@pkgsrc.org>2020-06-09 11:59:46 +0000
commit7edac649bbb9ed7af8d5c291f092ea3f203d9907 (patch)
treef957d8cb9a60c50ef7646e9f7054f159050d5024
parent39997e54937c077612681dee7314dd82176001a4 (diff)
downloadpkgsrc-7edac649bbb9ed7af8d5c291f092ea3f203d9907.tar.gz
Pullup ticket #6234 - requested by wiz
devel/libntlm: security fix Revisions pulled up: - devel/libntlm/Makefile 1.22 - devel/libntlm/distinfo 1.12 --- Module Name: pkgsrc Committed By: wiz Date: Tue Jun 9 06:18:18 UTC 2020 Modified Files: pkgsrc/devel/libntlm: Makefile distinfo Log Message: libntlm: update to 1.6. * Version 1.6 (released 2020-04-19) ** Fix buffer overflow in buildSmbNtlmAuth* function. CVE-2019-17455. Reported by Kirin in <https://gitlab.com/jas/libntlm/-/issues/2> and patch provided by Cedric Buissart. See newly introduced regression check test_CVE-2019-17455.c for test of a vulnerable library. ** API and ABI modifications. No changes since last version.
-rw-r--r--devel/libntlm/Makefile6
-rw-r--r--devel/libntlm/distinfo10
2 files changed, 8 insertions, 8 deletions
diff --git a/devel/libntlm/Makefile b/devel/libntlm/Makefile
index 960702c544d..705878eb824 100644
--- a/devel/libntlm/Makefile
+++ b/devel/libntlm/Makefile
@@ -1,7 +1,7 @@
-# $NetBSD: Makefile,v 1.21 2020/01/18 23:30:32 rillig Exp $
+# $NetBSD: Makefile,v 1.21.2.1 2020/06/09 11:59:46 bsiegert Exp $
-DISTNAME= libntlm-1.5
-CATEGORIES= security
+DISTNAME= libntlm-1.6
+CATEGORIES= devel security
MASTER_SITES= http://www.nongnu.org/libntlm/releases/
MAINTAINER= pkgsrc-users@NetBSD.org
diff --git a/devel/libntlm/distinfo b/devel/libntlm/distinfo
index ca028acb5ce..04b3af50b71 100644
--- a/devel/libntlm/distinfo
+++ b/devel/libntlm/distinfo
@@ -1,6 +1,6 @@
-$NetBSD: distinfo,v 1.11 2019/11/26 12:39:45 wiz Exp $
+$NetBSD: distinfo,v 1.11.2.1 2020/06/09 11:59:46 bsiegert Exp $
-SHA1 (libntlm-1.5.tar.gz) = eaecb15173d41381862920cb78238c695b41f43a
-RMD160 (libntlm-1.5.tar.gz) = 831aaba9288014cc01eb92f80e704933afa64071
-SHA512 (libntlm-1.5.tar.gz) = 3592764b6cad21e2f4162997954c10c2122918ddb3496a3959e660c9a61103cc93bc65b8d26eff7f01055a3803c20539902fead4305dc0065747d6476704a8ba
-Size (libntlm-1.5.tar.gz) = 658935 bytes
+SHA1 (libntlm-1.6.tar.gz) = d6f9b69f154d82d0f9a49e9686b79fc03f21c3c6
+RMD160 (libntlm-1.6.tar.gz) = 673b3b2d18a8429565c09b52b309f598937ca081
+SHA512 (libntlm-1.6.tar.gz) = d68bc6b5cd7f5f70385ba78275a810fa46e60f761f0949f2262eef35ae052661739ef17ce3fc4ab75f7e8cfc788b1ccd7766d4ff0ee78db08ea4de3e224653f2
+Size (libntlm-1.6.tar.gz) = 688608 bytes