Date: Monday, August 9, 2021 @ 16:19:38 Author: diabonas Revision: 997260
upgpkg: fail2ban 0.11.2-2: fix CVE-2021-32749 (FS#71524) Apart from the actual fix (upstream commit 410a6ce5c80dd981c22752da034f2529b5eee844), another patch (upstream commit 747d4683221b5584f9663695fb48145689b42ceb) needs to be backported as well to make the test suite pass. Modified: fail2ban/trunk/PKGBUILD ----------+ PKGBUILD | 13 ++++++++++--- 1 file changed, 10 insertions(+), 3 deletions(-) Modified: PKGBUILD =================================================================== --- PKGBUILD 2021-08-09 12:15:17 UTC (rev 997259) +++ PKGBUILD 2021-08-09 16:19:38 UTC (rev 997260) @@ -6,7 +6,7 @@ pkgname=fail2ban pkgver=0.11.2 -pkgrel=1 +pkgrel=2 pkgdesc='Bans IPs after too many failed authentication attempts' url='https://www.fail2ban.org/' license=('GPL') @@ -17,13 +17,20 @@ backup=(etc/fail2ban/fail2ban.conf etc/fail2ban/jail.conf etc/logrotate.d/fail2ban) -source=("$pkgname-$pkgver.tar.gz::https://github.com/fail2ban/$pkgname/archive/$pkgver.tar.gz") -sha512sums=('46b27abd947b00ea64106dbac563ef8afef38eec86684024d47d9a0e8c1969ff864ad6df7f4f8de2aa3eb1af6d769fb6796592d9f0e35521d5f95f17b8cade97') +source=("$pkgname-$pkgver.tar.gz::https://github.com/fail2ban/$pkgname/archive/$pkgver.tar.gz" + "$pkgname-$pkgver_fix-test-suite.patch::https://github.com/fail2ban/fail2ban/commit/747d4683221b5584f9663695fb48145689b42ceb.patch" + "$pkgname-$pkgver_CVE-2021-32749.patch::https://github.com/fail2ban/fail2ban/commit/410a6ce5c80dd981c22752da034f2529b5eee844.patch") +sha512sums=('46b27abd947b00ea64106dbac563ef8afef38eec86684024d47d9a0e8c1969ff864ad6df7f4f8de2aa3eb1af6d769fb6796592d9f0e35521d5f95f17b8cade97' + '5c0748c048031d88bc8fd2519bf99a35437b78a08fa942dbccdd2c0e4e9125560a847a8f1dc4414691c922dff558acff988492250be6a1f443a139b0e3762898' + '994de8a4fdd4535607cd1b21553266de015b57bdb7f84f931973cb4b3cadd93fb2fda2d402a4ecccf505dffabf146cd9eae2cd0b635c3cb3dfa2d312539d41be') prepare() { cd $pkgname-$pkgver sed -i 's|self.install_dir|"/usr/bin"|' setup.py sed -i 's/^before = paths-debian.conf/before = paths-arch.conf/' config/jail.conf + + patch -Np1 -i "$srcdir/$pkgname-$pkgver_fix-test-suite.patch" + patch -Np1 -i "$srcdir/$pkgname-$pkgver_CVE-2021-32749.patch" } build() {
