summary refs log tree commit diff
path: root/pkgs/development/libraries/expat/default.nix
diff options
context:
space:
mode:
authorVladimír Čunát <v@cunat.cz>2019-09-14 19:08:38 +0200
committerVladimír Čunát <v@cunat.cz>2019-09-14 19:18:16 +0200
commit3605f128558958cca1157c6a8d59e535ad1cb641 (patch)
tree13e7c71914b53b52e24cc1ac0a57ab069726ead6 /pkgs/development/libraries/expat/default.nix
parent7d39ecdf58cc000013e4bf05d9c2f32ab4bf93a7 (diff)
downloadnixpkgs-3605f128558958cca1157c6a8d59e535ad1cb641.tar
nixpkgs-3605f128558958cca1157c6a8d59e535ad1cb641.tar.gz
nixpkgs-3605f128558958cca1157c6a8d59e535ad1cb641.tar.bz2
nixpkgs-3605f128558958cca1157c6a8d59e535ad1cb641.tar.lz
nixpkgs-3605f128558958cca1157c6a8d59e535ad1cb641.tar.xz
nixpkgs-3605f128558958cca1157c6a8d59e535ad1cb641.tar.zst
nixpkgs-3605f128558958cca1157c6a8d59e535ad1cb641.zip
giflib: 5.1.4 -> 5.2.1
5.1.5 says: Fix SF bug #113:
  Heap Buffer Overflow-2 in function DGifDecompressLine()
  in cgif.c.  This had been assigned CVE-2018-11490.
This *probably* also fixes a minor CVE-2019-15133 #68563 (DoS only).
(I couldn't find a good reference quickly.)

The changelogs are almost only bugfixes, and ABI tracker also looks OK:
https://abi-laboratory.pro/?view=timeline&l=giflib
so I gather this is suitable for direct push to nixpkgs staging-next.
I built several reverse dependencies locally.
Diffstat (limited to 'pkgs/development/libraries/expat/default.nix')
0 files changed, 0 insertions, 0 deletions