From patchwork Sun Jun 28 10:23:13 2020 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Fabrice Fontaine X-Patchwork-Id: 1318513 Return-Path: X-Original-To: incoming-buildroot@patchwork.ozlabs.org Delivered-To: patchwork-incoming-buildroot@bilbo.ozlabs.org Authentication-Results: ozlabs.org; spf=pass (sender SPF authorized) smtp.mailfrom=busybox.net (client-ip=140.211.166.133; helo=hemlock.osuosl.org; envelope-from=buildroot-bounces@busybox.net; receiver=) Authentication-Results: ozlabs.org; dmarc=fail (p=none dis=none) header.from=gmail.com Authentication-Results: ozlabs.org; dkim=fail reason="signature verification failed" (2048-bit key; unprotected) header.d=gmail.com header.i=@gmail.com header.a=rsa-sha256 header.s=20161025 header.b=KW9hBIsr; dkim-atps=neutral Received: from hemlock.osuosl.org (smtp2.osuosl.org [140.211.166.133]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ozlabs.org (Postfix) with ESMTPS id 49vmtx1bLGz9sDX for ; Sun, 28 Jun 2020 20:24:08 +1000 (AEST) Received: from localhost (localhost [127.0.0.1]) by hemlock.osuosl.org (Postfix) with ESMTP id A80A38817B; Sun, 28 Jun 2020 10:24:04 +0000 (UTC) X-Virus-Scanned: amavisd-new at osuosl.org Received: from hemlock.osuosl.org ([127.0.0.1]) by localhost (.osuosl.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id AjL6GYoS+WTe; Sun, 28 Jun 2020 10:24:04 +0000 (UTC) Received: from ash.osuosl.org (ash.osuosl.org [140.211.166.34]) by hemlock.osuosl.org (Postfix) with ESMTP id 0254D88191; Sun, 28 Jun 2020 10:24:04 +0000 (UTC) X-Original-To: buildroot@lists.busybox.net Delivered-To: buildroot@osuosl.org Received: from hemlock.osuosl.org (smtp2.osuosl.org [140.211.166.133]) by ash.osuosl.org (Postfix) with ESMTP id DB4071BF3DC for ; Sun, 28 Jun 2020 10:24:02 +0000 (UTC) Received: from localhost (localhost [127.0.0.1]) by hemlock.osuosl.org (Postfix) with ESMTP id D815288191 for ; Sun, 28 Jun 2020 10:24:02 +0000 (UTC) X-Virus-Scanned: amavisd-new at osuosl.org Received: from hemlock.osuosl.org ([127.0.0.1]) by localhost (.osuosl.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id zKT488sMQwt7 for ; Sun, 28 Jun 2020 10:23:59 +0000 (UTC) X-Greylist: domain auto-whitelisted by SQLgrey-1.7.6 Received: from mail-wr1-f41.google.com (mail-wr1-f41.google.com [209.85.221.41]) by hemlock.osuosl.org (Postfix) with ESMTPS id 8CE368817B for ; Sun, 28 Jun 2020 10:23:59 +0000 (UTC) Received: by mail-wr1-f41.google.com with SMTP id z13so13554895wrw.5 for ; Sun, 28 Jun 2020 03:23:59 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=from:to:cc:subject:date:message-id:mime-version :content-transfer-encoding; bh=1k0IvU7qxeNH2lBrlYEZnkxpPQjgCYZHXVfF1xgLR1k=; b=KW9hBIsrRh3zFVTFw7GiPGK6orOEqZdkvhSb7FjIh5fpTwAHGF/sX6jtGr5sleEoTE 8xOZ0e2lZgP4gw7b7lgfDgse4WG5JjyE6NCTINmFFgzcDbCwFx53Z5zMc0N8aEusO88w 9l2pgvjf7omxE/svbZTadcMrwd07fXkFfvH4EiXGxLAAhl+Z/rkrNTH11NzJL69IA3Vv w/zymWIQ3OYqAJJo/rMQbXimsmZNiPmtgXTByL4+mY12qyeXODtMgNGCbSvS0xkT41z1 kS69ePjwcjR2aREkU3GGhynjGungPIMVnKNML5/p3s4XWs6lgvFl0UQjMbktsrWJizC8 FXcQ== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:from:to:cc:subject:date:message-id:mime-version :content-transfer-encoding; bh=1k0IvU7qxeNH2lBrlYEZnkxpPQjgCYZHXVfF1xgLR1k=; b=JGi5pgKo8NeslMBbsOkHlzd7/fkKrLlM6tR9VQ07qyR2M5HMJjmuzb+RAohl4VUXIn 3Ng917l7nGqIyAObrarCjZXWBOdCq1Ox2ghbU0Eem73f8hNMZHNmHNNsoZxnuBLDZnON +Cm1r+bb9rZ7+BeLpcnJOwGU6nhHeUbs0/H4VQ5ucy/oQK86O2xBmJUWujbrpktMTUHg at6rXzXF/6zWhTUVox5GZC7wdWaKnSrJpaMO47kdW2xAgNuVYYb2hPzBCKGDPaHVhpOt My9o+OihL/SKhYI9xz0WH/dmIW6squ9LGnzYFv+syhZeRDMoXs+NicZCkIIFHsmUHWCh dumQ== X-Gm-Message-State: AOAM532M+fdOq6NW78+NUIt8eRRwfiMOLlf+B+yV+iHcY7Mdx88W3hV3 HL8TrxTb+DOD+BLNuN2VBDWceKxT X-Google-Smtp-Source: ABdhPJzULbMteQwzE/feUZ+UrSjK8T0caGtueS4qPhojvdeLJ6yCfY15ZO8aDUEdSzkoaR48D4+jqg== X-Received: by 2002:adf:8168:: with SMTP id 95mr12457745wrm.104.1593339837726; Sun, 28 Jun 2020 03:23:57 -0700 (PDT) Received: from kali.home (2a01cb0881b76d00c2afd0dfa851d2b9.ipv6.abo.wanadoo.fr. [2a01:cb08:81b7:6d00:c2af:d0df:a851:d2b9]) by smtp.gmail.com with ESMTPSA id p29sm2158475wmi.43.2020.06.28.03.23.56 (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Sun, 28 Jun 2020 03:23:57 -0700 (PDT) From: Fabrice Fontaine To: buildroot@buildroot.org Date: Sun, 28 Jun 2020 12:23:13 +0200 Message-Id: <20200628102313.268227-1-fontaine.fabrice@gmail.com> X-Mailer: git-send-email 2.26.2 MIME-Version: 1.0 Subject: [Buildroot] [PATCH 1/1] package/libfribidi: bump to version 1.0.9 X-BeenThere: buildroot@busybox.net X-Mailman-Version: 2.1.29 Precedence: list List-Id: Discussion and development of buildroot List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Cc: Fabrice Fontaine , Mikhail Boiko Errors-To: buildroot-bounces@busybox.net Sender: "buildroot" - Drop patch (already in version) - Update indentation in hash file (two spaces) Signed-off-by: Fabrice Fontaine --- ..._level-to-FRIBIDI_BIDI_MAX_EXPLICIT_.patch | 30 ------------------- package/libfribidi/libfribidi.hash | 4 +-- package/libfribidi/libfribidi.mk | 4 +-- 3 files changed, 4 insertions(+), 34 deletions(-) delete mode 100644 package/libfribidi/0001-Truncate-isolate_level-to-FRIBIDI_BIDI_MAX_EXPLICIT_.patch diff --git a/package/libfribidi/0001-Truncate-isolate_level-to-FRIBIDI_BIDI_MAX_EXPLICIT_.patch b/package/libfribidi/0001-Truncate-isolate_level-to-FRIBIDI_BIDI_MAX_EXPLICIT_.patch deleted file mode 100644 index b78f9b2111..0000000000 --- a/package/libfribidi/0001-Truncate-isolate_level-to-FRIBIDI_BIDI_MAX_EXPLICIT_.patch +++ /dev/null @@ -1,30 +0,0 @@ -From 034c6e9a1d296286305f4cfd1e0072b879f52568 Mon Sep 17 00:00:00 2001 -From: Dov Grobgeld -Date: Thu, 24 Oct 2019 09:37:29 +0300 -Subject: [PATCH] Truncate isolate_level to FRIBIDI_BIDI_MAX_EXPLICIT_LEVEL - -CVE-2019-18397 - -Signed-off-by: Peter Korsgaard ---- - lib/fribidi-bidi.c | 4 +++- - 1 file changed, 3 insertions(+), 1 deletion(-) - -diff --git a/lib/fribidi-bidi.c b/lib/fribidi-bidi.c -index 6c84392..d384878 100644 ---- a/lib/fribidi-bidi.c -+++ b/lib/fribidi-bidi.c -@@ -747,7 +747,9 @@ fribidi_get_par_embedding_levels_ex ( - } - - RL_LEVEL (pp) = level; -- RL_ISOLATE_LEVEL (pp) = isolate_level++; -+ RL_ISOLATE_LEVEL (pp) = isolate_level; -+ if (isolate_level < FRIBIDI_BIDI_MAX_EXPLICIT_LEVEL-1) -+ isolate_level++; - base_level_per_iso_level[isolate_level] = new_level; - - if (!FRIBIDI_IS_NEUTRAL (override)) --- -2.20.1 - diff --git a/package/libfribidi/libfribidi.hash b/package/libfribidi/libfribidi.hash index eba767668d..9856f4eaa2 100644 --- a/package/libfribidi/libfribidi.hash +++ b/package/libfribidi/libfribidi.hash @@ -1,3 +1,3 @@ # Locally computed -sha256 5ab5f21e9f2fc57b4b40f8ea8f14dba78a5cc46d9cf94bc5e00a58e6886a935d fribidi-1.0.7.tar.bz2 -sha256 32434afcc8666ba060e111d715bfdb6c2d5dd8a35fa4d3ab8ad67d8f850d2f2b COPYING +sha256 c5e47ea9026fb60da1944da9888b4e0a18854a0e2410bbfe7ad90a054d36e0c7 fribidi-1.0.9.tar.xz +sha256 32434afcc8666ba060e111d715bfdb6c2d5dd8a35fa4d3ab8ad67d8f850d2f2b COPYING diff --git a/package/libfribidi/libfribidi.mk b/package/libfribidi/libfribidi.mk index 0e17be6db0..6818b13425 100644 --- a/package/libfribidi/libfribidi.mk +++ b/package/libfribidi/libfribidi.mk @@ -4,8 +4,8 @@ # ################################################################################ -LIBFRIBIDI_VERSION = 1.0.7 -LIBFRIBIDI_SOURCE = fribidi-$(LIBFRIBIDI_VERSION).tar.bz2 +LIBFRIBIDI_VERSION = 1.0.9 +LIBFRIBIDI_SOURCE = fribidi-$(LIBFRIBIDI_VERSION).tar.xz LIBFRIBIDI_SITE = https://github.com/fribidi/fribidi/releases/download/v$(LIBFRIBIDI_VERSION) LIBFRIBIDI_LICENSE = LGPL-2.1+ LIBFRIBIDI_LICENSE_FILES = COPYING