From patchwork Sun Jun 13 21:00:13 2021 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Fabrice Fontaine X-Patchwork-Id: 1491499 Return-Path: X-Original-To: incoming-buildroot@patchwork.ozlabs.org Delivered-To: patchwork-incoming-buildroot@bilbo.ozlabs.org Authentication-Results: ozlabs.org; spf=pass (sender SPF authorized) smtp.mailfrom=busybox.net (client-ip=2605:bc80:3010::133; helo=smtp2.osuosl.org; envelope-from=buildroot-bounces@busybox.net; receiver=) Authentication-Results: ozlabs.org; dkim=fail reason="signature verification failed" (2048-bit key; unprotected) header.d=gmail.com header.i=@gmail.com header.a=rsa-sha256 header.s=20161025 header.b=RPK9yfmX; dkim-atps=neutral Received: from smtp2.osuosl.org (smtp2.osuosl.org [IPv6:2605:bc80:3010::133]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (No client certificate requested) by ozlabs.org (Postfix) with ESMTPS id 4G36Rr1CQLz9sRf for ; Mon, 14 Jun 2021 07:00:40 +1000 (AEST) Received: from localhost (localhost [127.0.0.1]) by smtp2.osuosl.org (Postfix) with ESMTP id 11FC6401B7; Sun, 13 Jun 2021 21:00:37 +0000 (UTC) X-Virus-Scanned: amavisd-new at osuosl.org Received: from smtp2.osuosl.org ([127.0.0.1]) by localhost (smtp2.osuosl.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id KYGXdwDHVJCq; Sun, 13 Jun 2021 21:00:36 +0000 (UTC) Received: from ash.osuosl.org (ash.osuosl.org [140.211.166.34]) by smtp2.osuosl.org (Postfix) with ESMTP id 4A7F940154; Sun, 13 Jun 2021 21:00:35 +0000 (UTC) X-Original-To: buildroot@lists.busybox.net Delivered-To: buildroot@osuosl.org Received: from smtp4.osuosl.org (smtp4.osuosl.org [140.211.166.137]) by ash.osuosl.org (Postfix) with ESMTP id DD5F41BF3BE for ; Sun, 13 Jun 2021 21:00:33 +0000 (UTC) Received: from localhost (localhost [127.0.0.1]) by smtp4.osuosl.org (Postfix) with ESMTP id D8FFF40387 for ; Sun, 13 Jun 2021 21:00:33 +0000 (UTC) X-Virus-Scanned: amavisd-new at osuosl.org Authentication-Results: smtp4.osuosl.org (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com Received: from smtp4.osuosl.org ([127.0.0.1]) by localhost (smtp4.osuosl.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 7C_6NU08L_pY for ; Sun, 13 Jun 2021 21:00:32 +0000 (UTC) X-Greylist: whitelisted by SQLgrey-1.8.0 Received: from mail-wr1-x432.google.com (mail-wr1-x432.google.com [IPv6:2a00:1450:4864:20::432]) by smtp4.osuosl.org (Postfix) with ESMTPS id 7AFF44035E for ; Sun, 13 Jun 2021 21:00:32 +0000 (UTC) Received: by mail-wr1-x432.google.com with SMTP id a11so12159597wrt.13 for ; Sun, 13 Jun 2021 14:00:32 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=from:to:cc:subject:date:message-id:mime-version :content-transfer-encoding; bh=NkR7a2/hmxa68pooLBP1moDKnos4PyoXhTnulRt1h5k=; b=RPK9yfmXMt35LXd+ahchJfjDUuSS691E8+eaJFnUAHT4uYWuzFDRWvNLZLtozBq8Rw pSV1XCTJs2ycrxveQEuFsOMvLXfU9hRSoZCd56P2YkjGcDnqsQMe04yGgMAOYCB7SwOS 1+OtbAQZ6WPA9sI4RaYJx6VDa/T2lkQDS6EaSaqhEv1EOxZ/BMn8HY2gWbdwfKTw6mN/ U2W5ML3OI6j0/bXCWDi7XXQjplT8O32oXwpOZLYV/r1pkvd7dZpRPZ3CJe4Xghqyrpji V3k3yW3KhXHXyCzhgGpIMaK72dKTVVU1X0tXxe0sMc4Jl8wfwMEn+QOwR5/s5610OU02 9gpA== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:from:to:cc:subject:date:message-id:mime-version :content-transfer-encoding; bh=NkR7a2/hmxa68pooLBP1moDKnos4PyoXhTnulRt1h5k=; b=KHeG56ZNW1zsPy/HgqjbrhFkmIIj3xx7rlMtyTT820WSatzPz1AOyrAux5BVRt63uQ Ks648Z7TkBTJGwXMKpFJLYSEip78ZV4TEjNJphG09GQ5O/pa99dyUF3Q1aLP0x/wnOzm lCrHcvL49HCYDs89la6WgcOUjSW9Fgr99gkg6TthGxrYFdy2G9wxj7/IPIC7UsnfPf+4 wRXiOw8IHzMUlzB5ztOmpbsYjc4mT38zAIqLxMUn/VEzHd6TnWXdtr8d5JI5WNhIzLIf ZRNMKJVVk5W9rgvEAhR91ojjqFSl95zdvtGiJj1NGa8sVrCmh2Ks5TF3IHtYydV5mbsE It0w== X-Gm-Message-State: AOAM530yUypuuudas4E9RZlU1D7xEsHnX8IfpMjj3bAy0ljgJjwoIeBB mY5y6MPDTI3UpC5l60E2LUrpHZoxS5Kwdw== X-Google-Smtp-Source: ABdhPJwM6HVxA5m0NOKyy7C5FZmHVjIUUHbA/MomXk0fVbO5WXDd/8yGLVERwKofReIy4YF+epURWA== X-Received: by 2002:adf:d204:: with SMTP id j4mr15147768wrh.3.1623618030054; Sun, 13 Jun 2021 14:00:30 -0700 (PDT) Received: from kali.home (lfbn-ren-1-1383-171.w86-229.abo.wanadoo.fr. [86.229.230.171]) by smtp.gmail.com with ESMTPSA id t11sm2305643wrz.7.2021.06.13.14.00.29 (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Sun, 13 Jun 2021 14:00:29 -0700 (PDT) From: Fabrice Fontaine To: buildroot@buildroot.org Date: Sun, 13 Jun 2021 23:00:13 +0200 Message-Id: <20210613210013.1565385-1-fontaine.fabrice@gmail.com> X-Mailer: git-send-email 2.30.2 MIME-Version: 1.0 Subject: [Buildroot] [PATCH 1/1] package/libtasn1: security bump to version 4.17.0 X-BeenThere: buildroot@busybox.net X-Mailman-Version: 2.1.29 Precedence: list List-Id: Discussion and development of buildroot List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Cc: Fabrice Fontaine Errors-To: buildroot-bounces@busybox.net Sender: "buildroot" - Fix some clang issues due to illegal pointers, thanks to Stefan Weil. - Fix memory leak caught by oss-fuzz, thanks to Dmitry Baryshkov. - Fix bugs unveiled by Static Analysis, reported by Simo Sorce. - LICENSE has been renamed to COPYING since https://gitlab.com/gnutls/libtasn1/-/commit/a72a8d1ef13436bf8916097f11c3fc90f07ba911 https://gitlab.com/gnutls/libtasn1/-/blob/v4.17.0/NEWS Signed-off-by: Fabrice Fontaine --- package/libtasn1/libtasn1.hash | 6 +++--- package/libtasn1/libtasn1.mk | 4 ++-- 2 files changed, 5 insertions(+), 5 deletions(-) diff --git a/package/libtasn1/libtasn1.hash b/package/libtasn1/libtasn1.hash index 93cfa1a68b..fc3610b965 100644 --- a/package/libtasn1/libtasn1.hash +++ b/package/libtasn1/libtasn1.hash @@ -1,7 +1,7 @@ # Locally calculated after checking pgp signature -# https://ftp.gnu.org/gnu/libtasn1/libtasn1-4.16.0.tar.gz.sig -sha256 0e0fb0903839117cb6e3b56e68222771bebf22ad7fc2295a0ed7d576e8d4329d libtasn1-4.16.0.tar.gz +# https://ftp.gnu.org/gnu/libtasn1/libtasn1-4.17.0.tar.gz.sig +sha256 ece7551cea7922b8e10d7ebc70bc2248d1fdd73351646a2d6a8d68a9421c45a5 libtasn1-4.17.0.tar.gz # Locally calculated -sha256 7446831f659f7ebfd8d497acc7f05dfa8e31c6cb6ba1b45df33d4895ab80f5a6 LICENSE +sha256 7446831f659f7ebfd8d497acc7f05dfa8e31c6cb6ba1b45df33d4895ab80f5a6 COPYING sha256 8ceb4b9ee5adedde47b31e975c1d90c73ad27b6b165a1dcd80c7c545eb65b903 doc/COPYING sha256 dc626520dcd53a22f727af3ee42c770e56c97a64fe3adb063799d8ab032fe551 doc/COPYING.LESSER diff --git a/package/libtasn1/libtasn1.mk b/package/libtasn1/libtasn1.mk index a354716824..d9d14fde83 100644 --- a/package/libtasn1/libtasn1.mk +++ b/package/libtasn1/libtasn1.mk @@ -4,11 +4,11 @@ # ################################################################################ -LIBTASN1_VERSION = 4.16.0 +LIBTASN1_VERSION = 4.17.0 LIBTASN1_SITE = $(BR2_GNU_MIRROR)/libtasn1 LIBTASN1_DEPENDENCIES = host-bison host-pkgconf LIBTASN1_LICENSE = GPL-3.0+ (tests, tools), LGPL-2.1+ (library) -LIBTASN1_LICENSE_FILES = LICENSE doc/COPYING doc/COPYING.LESSER +LIBTASN1_LICENSE_FILES = COPYING doc/COPYING doc/COPYING.LESSER LIBTASN1_CPE_ID_VENDOR = gnu LIBTASN1_INSTALL_STAGING = YES