OpenPKG CVS Repository
http://cvs.openpkg.org/
____________________________________________________________________________
Server: cvs.openpkg.org Name: Michael van Elst
Root: /e/openpkg/cvs Email: [EMAIL PROTECTED]
Module: openpkg-src openpkg-web Date: 11-Jul-2003 11:50:57
Branch: HEAD Handle: 2003071110505403
Modified files:
openpkg-src/acroread acroread.spec
openpkg-web news.txt
Log:
avoid security problem by disabling external hyperlinks
Summary:
Revision Changes Path
1.17 +6 -1 openpkg-src/acroread/acroread.spec
1.5529 +1 -0 openpkg-web/news.txt
____________________________________________________________________________
patch -p0 <<'@@ .'
Index: openpkg-src/acroread/acroread.spec
============================================================================
$ cvs diff -u -r1.16 -r1.17 acroread.spec
--- openpkg-src/acroread/acroread.spec 8 Jul 2003 14:38:30 -0000 1.16
+++ openpkg-src/acroread/acroread.spec 11 Jul 2003 09:50:57 -0000 1.17
@@ -37,7 +37,7 @@
Group: Graphics
License: Commercial
Version: %{V_real}
-Release: 20030618
+Release: 20030711
# list of sources
Source0:
ftp://ftp.adobe.com/pub/adobe/acrobatreader/unix/5.x/linux-%{V_comp}.tar.gz
@@ -117,6 +117,11 @@
$RPM_BUILD_ROOT%{l_prefix}/libexec/acroread/Reader/intellinux/bin/*
;;
esac
+
+ # FIXME mlelstv
+ # -- this DLL contains a buffer overflow in acroread-5.07
+ # http://www.securityfocus.org/archive/1/328649/2003-07-08/2003-07-14/0
+ rm -f
%RPM_BUILD_ROOT%{l_prefix}/libexec/acroread/Reader/intellinux/plug_ins/wwwlink.api
# determine installation files
%{l_rpmtool} files -v -ofiles -r$RPM_BUILD_ROOT %{l_files_std}
@@ .
patch -p0 <<'@@ .'
Index: openpkg-web/news.txt
============================================================================
$ cvs diff -u -r1.5528 -r1.5529 news.txt
--- openpkg-web/news.txt 11 Jul 2003 09:50:08 -0000 1.5528
+++ openpkg-web/news.txt 11 Jul 2003 09:50:54 -0000 1.5529
@@ -1,3 +1,4 @@
+11-Jul-2003: Upgraded package: P<acroread-5.07-20030711>
11-Jul-2003: Upgraded package: P<mysqlcc-0.9.2-20030711>
11-Jul-2003: Upgraded package: P<j2se14-1.4.2-20030711>
11-Jul-2003: Upgraded package: P<tomcat-3.3.1a-20030711>
@@ .
______________________________________________________________________
The OpenPKG Project www.openpkg.org
CVS Repository Commit List [EMAIL PROTECTED]