pkgsrc-Changes archive
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]
CVS commit: pkgsrc/graphics/ImageMagick
Module Name: pkgsrc
Committed By: leot
Date: Wed Aug 22 13:39:24 UTC 2018
Modified Files:
pkgsrc/graphics/ImageMagick: Makefile distinfo
Added Files:
pkgsrc/graphics/ImageMagick/patches: patch-config_policy.xml
Log Message:
ImageMagick: Disable ghostscript coders by default in policy.xml
Disable ghostscript coders in policy.xml as a workaround for
VU#332928 (<https://www.kb.cert.org/vuls/id/332928>).
Please note that apart commenting/removing lines added in policy.xml,
the ghostscript coders can be enabled per-user by copying policy.xml
to ~/.config/ImageMagick/policy.xml and adjusting it with the
following lines:
| [...]
| <policy domain="coder" rights="read|write" pattern="PS" />
| <policy domain="coder" rights="read|write" pattern="EPS" />
| <policy domain="coder" rights="read|write" pattern="PDF" />
| <policy domain="coder" rights="read|write" pattern="XPS" />
| [...]
Bump PKGREVISION
To generate a diff of this commit:
cvs rdiff -u -r1.245 -r1.246 pkgsrc/graphics/ImageMagick/Makefile
cvs rdiff -u -r1.190 -r1.191 pkgsrc/graphics/ImageMagick/distinfo
cvs rdiff -u -r0 -r1.1 \
pkgsrc/graphics/ImageMagick/patches/patch-config_policy.xml
Please note that diffs are not public domain; they are subject to the
copyright notices on the relevant files.
Modified files:
Index: pkgsrc/graphics/ImageMagick/Makefile
diff -u pkgsrc/graphics/ImageMagick/Makefile:1.245 pkgsrc/graphics/ImageMagick/Makefile:1.246
--- pkgsrc/graphics/ImageMagick/Makefile:1.245 Wed Aug 22 09:45:10 2018
+++ pkgsrc/graphics/ImageMagick/Makefile Wed Aug 22 13:39:24 2018
@@ -1,6 +1,6 @@
-# $NetBSD: Makefile,v 1.245 2018/08/22 09:45:10 wiz Exp $
+# $NetBSD: Makefile,v 1.246 2018/08/22 13:39:24 leot Exp $
-PKGREVISION= 1
+PKGREVISION= 2
.include "Makefile.common"
PKGNAME= ImageMagick-${DISTVERSION}
Index: pkgsrc/graphics/ImageMagick/distinfo
diff -u pkgsrc/graphics/ImageMagick/distinfo:1.190 pkgsrc/graphics/ImageMagick/distinfo:1.191
--- pkgsrc/graphics/ImageMagick/distinfo:1.190 Thu Aug 16 08:23:16 2018
+++ pkgsrc/graphics/ImageMagick/distinfo Wed Aug 22 13:39:24 2018
@@ -1,6 +1,7 @@
-$NetBSD: distinfo,v 1.190 2018/08/16 08:23:16 wiz Exp $
+$NetBSD: distinfo,v 1.191 2018/08/22 13:39:24 leot Exp $
SHA1 (ImageMagick-7.0.8-10.tar.xz) = c69fb5b1ec2d04711a98df8762926a37e3f13bc5
RMD160 (ImageMagick-7.0.8-10.tar.xz) = 9e5339d7e4f2dbc42090cd8394bca5b97dc485ba
SHA512 (ImageMagick-7.0.8-10.tar.xz) = a4869e0a9be5e04c04fcd1fce5c4141d63968ee7f1dd78d84724921f2f088bdcea8c3b3799e1ff555a2a04dec32a1fb7c4a1e6053a6185e9a36c6ae0f1b9c6ed
Size (ImageMagick-7.0.8-10.tar.xz) = 8635496 bytes
+SHA1 (patch-config_policy.xml) = 2b7e37cc8fedb0d06502ba1d7e65a5aea9d6ec96
Added files:
Index: pkgsrc/graphics/ImageMagick/patches/patch-config_policy.xml
diff -u /dev/null pkgsrc/graphics/ImageMagick/patches/patch-config_policy.xml:1.1
--- /dev/null Wed Aug 22 13:39:24 2018
+++ pkgsrc/graphics/ImageMagick/patches/patch-config_policy.xml Wed Aug 22 13:39:24 2018
@@ -0,0 +1,22 @@
+$NetBSD: patch-config_policy.xml,v 1.1 2018/08/22 13:39:24 leot Exp $
+
+Disable ghostscript coders by default to workaround VU#332928:
+<https://www.kb.cert.org/vuls/id/332928>
+
+--- config/policy.xml.orig 2018-08-13 11:05:28.000000000 +0000
++++ config/policy.xml
+@@ -74,4 +74,14 @@
+ <!-- <policy domain="cache" name="memory-map" value="anonymous"/> -->
+ <!-- <policy domain="cache" name="synchronize" value="True"/> -->
+ <!-- <policy domain="cache" name="shared-secret" value="passphrase" stealth="true"/> -->
++
++ <!--
++ -- Disable ghostscript coders as suggested by VU#332928
++ -- <https://www.kb.cert.org/vuls/id/332928>
++ -->
++ <policy domain="coder" rights="none" pattern="PS" />
++ <policy domain="coder" rights="none" pattern="EPS" />
++ <policy domain="coder" rights="none" pattern="PDF" />
++ <policy domain="coder" rights="none" pattern="XPS" />
++
+ </policymap>
Home |
Main Index |
Thread Index |
Old Index