From 923dd5f36d7e1bf18797ae673daf4d4d888b1971 Mon Sep 17 00:00:00 2001 From: Danny Rawlins Date: Sat, 4 Jul 2020 20:48:29 +1000 Subject: [notify] libcgroup: 0.41 -> 0.42.2 security fix for CVE-2018-14348 --- libcgroup/.footprint | 18 +++++++++++++++--- libcgroup/.signature | 8 ++++---- libcgroup/Pkgfile | 10 ++++------ 3 files changed, 23 insertions(+), 13 deletions(-) (limited to 'libcgroup') diff --git a/libcgroup/.footprint b/libcgroup/.footprint index 3ef295c3f..57f79ad1b 100644 --- a/libcgroup/.footprint +++ b/libcgroup/.footprint @@ -20,12 +20,24 @@ drwxr-xr-x root/root usr/include/libcgroup/ -rw-r--r-- root/root usr/include/libcgroup/log.h -rw-r--r-- root/root usr/include/libcgroup/tasks.h drwxr-xr-x root/root usr/lib/ +-rw-r--r-- root/root usr/lib/libcgroup.a -rwxr-xr-x root/root usr/lib/libcgroup.la -lrwxrwxrwx root/root usr/lib/libcgroup.so -> libcgroup.so.1.0.41 -lrwxrwxrwx root/root usr/lib/libcgroup.so.1 -> libcgroup.so.1.0.41 --rwxr-xr-x root/root usr/lib/libcgroup.so.1.0.41 +lrwxrwxrwx root/root usr/lib/libcgroup.so -> libcgroup.so.1.0.42 +lrwxrwxrwx root/root usr/lib/libcgroup.so.1 -> libcgroup.so.1.0.42 +-rwxr-xr-x root/root usr/lib/libcgroup.so.1.0.42 +-rw-r--r-- root/root usr/lib/libcgroupfortesting.a +-rwxr-xr-x root/root usr/lib/libcgroupfortesting.la +lrwxrwxrwx root/root usr/lib/libcgroupfortesting.so -> libcgroupfortesting.so.1.0.42 +lrwxrwxrwx root/root usr/lib/libcgroupfortesting.so.1 -> libcgroupfortesting.so.1.0.42 +-rwxr-xr-x root/root usr/lib/libcgroupfortesting.so.1.0.42 drwxr-xr-x root/root usr/lib/pkgconfig/ -rw-r--r-- root/root usr/lib/pkgconfig/libcgroup.pc +drwxr-xr-x root/root usr/lib/security/ +-rw-r--r-- root/root usr/lib/security/pam_cgroup.a +-rwxr-xr-x root/root usr/lib/security/pam_cgroup.la +lrwxrwxrwx root/root usr/lib/security/pam_cgroup.so -> pam_cgroup.so.0.0.0 +lrwxrwxrwx root/root usr/lib/security/pam_cgroup.so.0 -> pam_cgroup.so.0.0.0 +-rwxr-xr-x root/root usr/lib/security/pam_cgroup.so.0.0.0 drwxr-xr-x root/root usr/sbin/ -rwxr-xr-x root/root usr/sbin/cgclear -rwxr-xr-x root/root usr/sbin/cgconfigparser diff --git a/libcgroup/.signature b/libcgroup/.signature index 6d4bf0534..bc0185b39 100644 --- a/libcgroup/.signature +++ b/libcgroup/.signature @@ -1,5 +1,5 @@ untrusted comment: verify with /etc/ports/opt.pub -RWSE3ohX2g5d/Sh4x0BYK0hrum7jiLt9hiZm5ooJ0ylyydZKTaREJJtyBR7IWEgh5Ulm/XwD/O82XONPqj4GKE46GVT9tycL/AI= -SHA256 (Pkgfile) = 84a1f472e5e572e37fcf3fc837f014ebb0be630b9d7e1e8764a7a7ea1a55fbc2 -SHA256 (.footprint) = ec1a1cae884afceaa0e3e5a94d2b7f7a104e7a9a776fd209924689cb536660c0 -SHA256 (libcgroup-0.41.tar.bz2) = e4e38bdc7ef70645ce33740ddcca051248d56b53283c0dc6d404e17706f6fb51 +RWSE3ohX2g5d/UWoUnJrOri55bnCnnaRAihC+M0QguaAcUlpwaMKSduc7MSVA4nVjvqAF3AuHfW2qrvRmvwyEiaYWoZdihOaSAg= +SHA256 (Pkgfile) = 4db3416f280343097daa48be04cc8608b964e5e6e3d48d6cf241d7c63ade2b08 +SHA256 (.footprint) = 5a694ede6f96592039be28ca14b95dc9df0a56e0e26732daf1c0a20cfb3e475e +SHA256 (libcgroup-0.42.2.tar.bz2) = 18939381324d418e11be4f5fdca37b01652c18917bfaf1f6b0c505f157e18d07 diff --git a/libcgroup/Pkgfile b/libcgroup/Pkgfile index 72d4b3066..42eb6ecdc 100644 --- a/libcgroup/Pkgfile +++ b/libcgroup/Pkgfile @@ -1,18 +1,16 @@ # Description: Library that abstracts the control group file system in Linux -# URL: http://libcg.sourceforge.net/ +# URL: https://github.com/libcgroup/libcgroup # Maintainer: Thomas Penteker, tek at serverop dot de -# Depends on: name=libcgroup -version=0.41 +version=0.42.2 release=1 -source=(http://download.sourceforge.net/project/libcg/$name/v${version}/${name}-${version}.tar.bz2) +source=(https://github.com/libcgroup/libcgroup/releases/download/v$version/$name-$version.tar.bz2) build() { cd $name-$version - ./configure --prefix=/usr \ - --disable-pam + ./configure --prefix=/usr make make DESTDIR=$PKG install -- cgit v1.2.3