OpenPKG CVS Repository
  http://cvs.openpkg.org/
  ____________________________________________________________________________

  Server: cvs.openpkg.org                  Name:   Ralf S. Engelschall
  Root:   /e/openpkg/cvs                   Email:  [EMAIL PROTECTED]
  Module: openpkg-src openpkg-web          Date:   25-Aug-2003 09:18:13
  Branch: HEAD                             Handle: 2003082508181201

  Added files:
    openpkg-src/mpg123      mpg123.patch
  Modified files:
    openpkg-src/mpg123      mpg123.spec
    openpkg-web             news.txt

  Log:
    apply security bugfix:
    http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2003-0577

  Summary:
    Revision    Changes     Path
    1.1         +14 -0      openpkg-src/mpg123/mpg123.patch
    1.24        +3  -1      openpkg-src/mpg123/mpg123.spec
    1.6282      +1  -0      openpkg-web/news.txt
  ____________________________________________________________________________

  patch -p0 <<'@@ .'
  Index: openpkg-src/mpg123/mpg123.patch
  ============================================================================
  $ cvs diff -u -r0 -r1.1 mpg123.patch
  --- /dev/null 2003-08-25 09:18:13.000000000 +0200
  +++ mpg123.patch      2003-08-25 09:18:13.000000000 +0200
  @@ -0,0 +1,14 @@
  +Security Bugfix
  +http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2003-0577
  +
  +--- common.c.orig    1999-06-15 18:24:19.000000000 -0300
  ++++ common.c 2003-07-11 14:28:13.000000000 -0300
  +@@ -123,7 +123,7 @@
  +     return FALSE;
  +     if(!((head>>17)&3))
  +     return FALSE;
  +-    if( ((head>>12)&0xf) == 0xf)
  ++    if(((head>>12)&0xf) == 0xf || ((head>>12)&0xf) == 0)
  +     return FALSE;
  +     if( ((head>>10)&0x3) == 0x3 )
  +     return FALSE;
  @@ .
  patch -p0 <<'@@ .'
  Index: openpkg-src/mpg123/mpg123.spec
  ============================================================================
  $ cvs diff -u -r1.23 -r1.24 mpg123.spec
  --- openpkg-src/mpg123/mpg123.spec    8 Jul 2003 14:41:01 -0000       1.23
  +++ openpkg-src/mpg123/mpg123.spec    25 Aug 2003 07:18:13 -0000      1.24
  @@ -33,10 +33,11 @@
   Group:        Audio
   License:      GPL
   Version:      0.59r
  -Release:      20020206
  +Release:      20030825
   
   #   list of sources
   Source0:      http://www.mpg123.de/mpg123/mpg123-%{version}-pl1.tar.gz
  +Patch0:       mpg123.patch
   
   #   build information
   Prefix:       %{l_prefix}
  @@ -51,6 +52,7 @@
   
   %prep
       %setup -q
  +    %patch -p0
   
   %build
       case "%{l_target}" in
  @@ .
  patch -p0 <<'@@ .'
  Index: openpkg-web/news.txt
  ============================================================================
  $ cvs diff -u -r1.6281 -r1.6282 news.txt
  --- openpkg-web/news.txt      24 Aug 2003 08:01:23 -0000      1.6281
  +++ openpkg-web/news.txt      25 Aug 2003 07:18:12 -0000      1.6282
  @@ -1,3 +1,4 @@
  +25-Aug-2003: Upgraded package: P<mpg123-0.59r-20030825>
   24-Aug-2003: Upgraded package: P<ncurses-5.3.20030823-20030824>
   24-Aug-2003: Upgraded package: P<autogen-5.5.6-20030824>
   23-Aug-2003: Upgraded package: P<pcal-4.7.1-20030823>
  @@ .
______________________________________________________________________
The OpenPKG Project                                    www.openpkg.org
CVS Repository Commit List                     [EMAIL PROTECTED]

Reply via email to