summary refs log tree commit diff
path: root/pkgs/development/libraries/expat/default.nix
diff options
context:
space:
mode:
authorRobert Helgesson <robert@rycee.net>2016-05-19 21:40:04 +0200
committerVladimír Čunát <vcunat@gmail.com>2016-05-20 09:43:29 +0200
commit34cf7934c3a733b81e9c804e4cb8385e38d98d0e (patch)
treeafedb22854fb1cf92cb46810ceccc5295ca1a4d3 /pkgs/development/libraries/expat/default.nix
parent5eea16ee9001b9016cf0c0f0729412cf0fe0d2c9 (diff)
downloadnixpkgs-34cf7934c3a733b81e9c804e4cb8385e38d98d0e.tar
nixpkgs-34cf7934c3a733b81e9c804e4cb8385e38d98d0e.tar.gz
nixpkgs-34cf7934c3a733b81e9c804e4cb8385e38d98d0e.tar.bz2
nixpkgs-34cf7934c3a733b81e9c804e4cb8385e38d98d0e.tar.lz
nixpkgs-34cf7934c3a733b81e9c804e4cb8385e38d98d0e.tar.xz
nixpkgs-34cf7934c3a733b81e9c804e4cb8385e38d98d0e.tar.zst
nixpkgs-34cf7934c3a733b81e9c804e4cb8385e38d98d0e.zip
expat: patch CVE-2015-1283 and CVE-2016-0718 (close #15561)
Note, CVE-2015-1283 is already patched in expat version 2.1.1 but, as
explained in the patch, the fix was insufficient.
Diffstat (limited to 'pkgs/development/libraries/expat/default.nix')
-rw-r--r--pkgs/development/libraries/expat/default.nix2
1 files changed, 2 insertions, 0 deletions
diff --git a/pkgs/development/libraries/expat/default.nix b/pkgs/development/libraries/expat/default.nix
index bc1801ef804..1b663fc21a9 100644
--- a/pkgs/development/libraries/expat/default.nix
+++ b/pkgs/development/libraries/expat/default.nix
@@ -15,6 +15,8 @@ stdenv.mkDerivation rec {
 
   outputMan = "dev"; # tiny page for a dev tool
 
+  patches = [ ./CVE-2015-1283-refix.patch ./CVE-2016-0718-v2-2-1.patch ];
+
   doCheck = true;
 
   meta = with stdenv.lib; {