OpenPKG CVS Repository
http://cvs.openpkg.org/
____________________________________________________________________________
Server: cvs.openpkg.org Name: Ralf S. Engelschall
Root: /e/openpkg/cvs Email: [EMAIL PROTECTED]
Module: openpkg-src openpkg-web Date: 25-Aug-2003 09:18:13
Branch: HEAD Handle: 2003082508181201
Added files:
openpkg-src/mpg123 mpg123.patch
Modified files:
openpkg-src/mpg123 mpg123.spec
openpkg-web news.txt
Log:
apply security bugfix:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2003-0577
Summary:
Revision Changes Path
1.1 +14 -0 openpkg-src/mpg123/mpg123.patch
1.24 +3 -1 openpkg-src/mpg123/mpg123.spec
1.6282 +1 -0 openpkg-web/news.txt
____________________________________________________________________________
patch -p0 <<'@@ .'
Index: openpkg-src/mpg123/mpg123.patch
============================================================================
$ cvs diff -u -r0 -r1.1 mpg123.patch
--- /dev/null 2003-08-25 09:18:13.000000000 +0200
+++ mpg123.patch 2003-08-25 09:18:13.000000000 +0200
@@ -0,0 +1,14 @@
+Security Bugfix
+http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2003-0577
+
+--- common.c.orig 1999-06-15 18:24:19.000000000 -0300
++++ common.c 2003-07-11 14:28:13.000000000 -0300
+@@ -123,7 +123,7 @@
+ return FALSE;
+ if(!((head>>17)&3))
+ return FALSE;
+- if( ((head>>12)&0xf) == 0xf)
++ if(((head>>12)&0xf) == 0xf || ((head>>12)&0xf) == 0)
+ return FALSE;
+ if( ((head>>10)&0x3) == 0x3 )
+ return FALSE;
@@ .
patch -p0 <<'@@ .'
Index: openpkg-src/mpg123/mpg123.spec
============================================================================
$ cvs diff -u -r1.23 -r1.24 mpg123.spec
--- openpkg-src/mpg123/mpg123.spec 8 Jul 2003 14:41:01 -0000 1.23
+++ openpkg-src/mpg123/mpg123.spec 25 Aug 2003 07:18:13 -0000 1.24
@@ -33,10 +33,11 @@
Group: Audio
License: GPL
Version: 0.59r
-Release: 20020206
+Release: 20030825
# list of sources
Source0: http://www.mpg123.de/mpg123/mpg123-%{version}-pl1.tar.gz
+Patch0: mpg123.patch
# build information
Prefix: %{l_prefix}
@@ -51,6 +52,7 @@
%prep
%setup -q
+ %patch -p0
%build
case "%{l_target}" in
@@ .
patch -p0 <<'@@ .'
Index: openpkg-web/news.txt
============================================================================
$ cvs diff -u -r1.6281 -r1.6282 news.txt
--- openpkg-web/news.txt 24 Aug 2003 08:01:23 -0000 1.6281
+++ openpkg-web/news.txt 25 Aug 2003 07:18:12 -0000 1.6282
@@ -1,3 +1,4 @@
+25-Aug-2003: Upgraded package: P<mpg123-0.59r-20030825>
24-Aug-2003: Upgraded package: P<ncurses-5.3.20030823-20030824>
24-Aug-2003: Upgraded package: P<autogen-5.5.6-20030824>
23-Aug-2003: Upgraded package: P<pcal-4.7.1-20030823>
@@ .
______________________________________________________________________
The OpenPKG Project www.openpkg.org
CVS Repository Commit List [EMAIL PROTECTED]