pkgsrc-Changes-HG archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

[pkgsrc/trunk]: pkgsrc/mail/claws-mail fix format string vulnerability in POP...



details:   https://anonhg.NetBSD.org/pkgsrc/rev/ed944f70066e
branches:  trunk
changeset: 532812:ed944f70066e
user:      drochner <drochner%pkgsrc.org@localhost>
date:      Fri Aug 31 11:04:18 2007 +0000

description:
fix format string vulnerability in POP3 client (CVE-2007-2958),
bump PKGREVISION

diffstat:

 mail/claws-mail/Makefile         |   4 ++--
 mail/claws-mail/distinfo         |   3 ++-
 mail/claws-mail/patches/patch-ae |  13 +++++++++++++
 3 files changed, 17 insertions(+), 3 deletions(-)

diffs (49 lines):

diff -r 17a9c9556c84 -r ed944f70066e mail/claws-mail/Makefile
--- a/mail/claws-mail/Makefile  Fri Aug 31 10:47:35 2007 +0000
+++ b/mail/claws-mail/Makefile  Fri Aug 31 11:04:18 2007 +0000
@@ -1,4 +1,4 @@
-# $NetBSD: Makefile,v 1.5 2007/08/17 03:23:02 smb Exp $
+# $NetBSD: Makefile,v 1.6 2007/08/31 11:04:18 drochner Exp $
 
 .include "Makefile.common"
 
@@ -6,7 +6,7 @@
 
 MAINTAINER=    smb%NetBSD.org@localhost
 COMMENT=       X based e-mail and netnews client
-PKGREVISION=   2
+PKGREVISION=   3
 
 CONFLICTS+=    sylpheed-claws-[0-9]*
 
diff -r 17a9c9556c84 -r ed944f70066e mail/claws-mail/distinfo
--- a/mail/claws-mail/distinfo  Fri Aug 31 10:47:35 2007 +0000
+++ b/mail/claws-mail/distinfo  Fri Aug 31 11:04:18 2007 +0000
@@ -1,4 +1,4 @@
-$NetBSD: distinfo,v 1.2 2007/08/17 03:23:02 smb Exp $
+$NetBSD: distinfo,v 1.3 2007/08/31 11:04:18 drochner Exp $
 
 SHA1 (claws-mail-2.10.0.tar.bz2) = 0ee38ec2dd0c37941b0bcc4af7ab441ec432c63c
 RMD160 (claws-mail-2.10.0.tar.bz2) = e10eed2c3461a8c85d6313f0c57581a3b0ea654f
@@ -6,3 +6,4 @@
 SHA1 (patch-ab) = d908b8b47b525aa9d6ed677e5c1d5e5eddf74cc0
 SHA1 (patch-ac) = 51eff8f483ad603c1493bdc6520a9669c3d097c9
 SHA1 (patch-ad) = 9090824f9ad3688315567ed0857673cb94123897
+SHA1 (patch-ae) = 003ce854d58b8f25f12617b99fb245749704ec3d
diff -r 17a9c9556c84 -r ed944f70066e mail/claws-mail/patches/patch-ae
--- /dev/null   Thu Jan 01 00:00:00 1970 +0000
+++ b/mail/claws-mail/patches/patch-ae  Fri Aug 31 11:04:18 2007 +0000
@@ -0,0 +1,13 @@
+$NetBSD: patch-ae,v 1.1 2007/08/31 11:04:18 drochner Exp $
+
+--- ./src/inc.c.orig   2007-08-31 12:46:22.000000000 +0200
++++ ./src/inc.c
+@@ -1203,7 +1203,7 @@ static void inc_put_error(IncState istat
+               mainwindow_show_error();
+ 
+       if (err_msg) {
+-              alertpanel_error_log(err_msg);
++              alertpanel_error_log("%s", err_msg);
+               g_free(err_msg);
+       }
+ }



Home | Main Index | Thread Index | Old Index