summaryrefslogtreecommitdiff
path: root/gnu/packages/compression.scm
diff options
context:
space:
mode:
authorLéo Le Bouter <lle-bout@zaclys.net>2021-03-26 22:51:14 +0100
committerLéo Le Bouter <lle-bout@zaclys.net>2021-03-26 22:52:33 +0100
commit53dd99bc0b2e23c5463b4cb95546fd438a72d229 (patch)
treec1cb3205914000f4896e93e609c86ad863413d82 /gnu/packages/compression.scm
parent147b86ad30bb574e0d3b4e30486b70ae31fd16c3 (diff)
downloadguix-patches-53dd99bc0b2e23c5463b4cb95546fd438a72d229.tar
guix-patches-53dd99bc0b2e23c5463b4cb95546fd438a72d229.tar.gz
gnu: upx: Fix CVE-2021-20285.
* gnu/packages/patches/upx-CVE-2021-20285.patch: New patch. * gnu/local.mk (dist_patch_DATA): Register it. * gnu/packages/compression.scm (upx): Apply patch.
Diffstat (limited to 'gnu/packages/compression.scm')
-rw-r--r--gnu/packages/compression.scm3
1 files changed, 2 insertions, 1 deletions
diff --git a/gnu/packages/compression.scm b/gnu/packages/compression.scm
index 2d065046ee..ef73e6038b 100644
--- a/gnu/packages/compression.scm
+++ b/gnu/packages/compression.scm
@@ -2100,7 +2100,8 @@ decompression is a little bit slower.")
version "/upx-" version "-src.tar.xz"))
(sha256
(base32
- "051pk5jk8fcfg5mpgzj43z5p4cn7jy5jbyshyn78dwjqr7slsxs7"))))
+ "051pk5jk8fcfg5mpgzj43z5p4cn7jy5jbyshyn78dwjqr7slsxs7"))
+ (patches (search-patches "upx-CVE-2021-20285.patch"))))
(build-system gnu-build-system)
(native-inputs
`(("perl" ,perl)))