Update of /cvsroot/fink/dists/10.3/unstable/main/finkinfo/utils
In directory sc8-pr-cvs17:/tmp/cvs-serv345/10.3/unstable/main/finkinfo/utils

Modified Files:
        a2ps-ja.info 
Log Message:
SECURITY FIX: CVE-2004-1170 and CVE-2004-1377, imported from Gentoo Linux.

Index: a2ps-ja.info
===================================================================
RCS file: /cvsroot/fink/dists/10.3/unstable/main/finkinfo/utils/a2ps-ja.info,v
retrieving revision 1.4
retrieving revision 1.5
diff -u -d -r1.4 -r1.5
--- a2ps-ja.info        6 Jun 2007 02:50:53 -0000       1.4
+++ a2ps-ja.info        20 Aug 2007 19:42:19 -0000      1.5
@@ -1,6 +1,6 @@
 Package: a2ps-ja
 Version: 4.13c
-Revision: 4
+Revision: 5
 Description: Any to PostScript filter with Japanese extension
 License: GPL
 Maintainer: Todai Fink Team <[EMAIL PROTECTED]>
@@ -15,9 +15,22 @@
 SourceDirectory: a2ps-4.13
 Source2: http://www.on.cs.keio.ac.jp/~yasu/linux/GNU/a2ps-4.13-ja_nls.patch
 Source2-MD5: 75820c89316d271519e8c5a18c479c1e
+Source3: 
ftp://ftp.riken.go.jp/pub/Linux/gentoo/app-text/a2ps/files/a2ps-4.13-select-freebsd.patch
+Source3-MD5: b62538dbd828d995bdc3ce36188b0768
+Source4: 
ftp://ftp.riken.go.jp/pub/Linux/gentoo/app-text/a2ps/files/a2ps-%v-fixps.patch
+Source4-MD5: df6bc895cc6fb0fd47f22fd1c36d1ed3
+Source5: 
ftp://ftp.riken.go.jp/pub/Linux/gentoo/app-text/a2ps/files/a2ps-%v-psmandup.diff
+Source5-MD5: d68d0bfab547ef1ce70576c7a5570f13
 PatchScript: <<
  sed -e '1,40d; 136,150d; 172,188d; 238,275d; 279,295d; 4404,4449d' 
../a2ps-4.13-ja_nls.patch | patch -p1
  sed 's|@PREFIX@|%p|g' < %a/%n.patch | patch -p1
+
+ # Fix a vulnerability in a2ps filename handling, CVE-2004-1170.
+ patch -p0 < ../a2ps-4.13-select-freebsd.patch
+
+ # Fix insecure tempfile handlings, CVE-2004-1377.
+ patch -p0 < ../a2ps-%v-fixps.patch
+ patch -p0 < ../a2ps-%v-psmandup.diff
 <<
 ConfigureParams: <<
  --build=%m-apple-darwin`uname -r|sed 's/\..*//'` --enable-nls \


-------------------------------------------------------------------------
This SF.net email is sponsored by: Splunk Inc.
Still grepping through log files to find problems?  Stop.
Now Search log events and configuration files using AJAX and a browser.
Download your FREE copy of Splunk now >>  http://get.splunk.com/
_______________________________________________
Fink-commits mailing list
Fink-commits@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/fink-commits

Reply via email to