summary refs log tree commit diff
path: root/pkgs/development/libraries/imlib
diff options
context:
space:
mode:
authorAndreas Rammhold <andreas@rammhold.de>2019-07-20 22:42:31 +0200
committerAndreas Rammhold <andreas@rammhold.de>2019-07-20 22:44:06 +0200
commitfc83a1c7452ae74264632fb7e89be96308df7589 (patch)
treea7b4e067050701822987bb7f520491135f77fa76 /pkgs/development/libraries/imlib
parenta071bfa7e7bbd62e1b43830e5e79d8b36afe5fa6 (diff)
downloadnixpkgs-fc83a1c7452ae74264632fb7e89be96308df7589.tar
nixpkgs-fc83a1c7452ae74264632fb7e89be96308df7589.tar.gz
nixpkgs-fc83a1c7452ae74264632fb7e89be96308df7589.tar.bz2
nixpkgs-fc83a1c7452ae74264632fb7e89be96308df7589.tar.lz
nixpkgs-fc83a1c7452ae74264632fb7e89be96308df7589.tar.xz
nixpkgs-fc83a1c7452ae74264632fb7e89be96308df7589.tar.zst
nixpkgs-fc83a1c7452ae74264632fb7e89be96308df7589.zip
imlib: apply patch for CVE-2007-3568
While it probably doesn't have much impact it also doesn't really hurt
fixing this…
Diffstat (limited to 'pkgs/development/libraries/imlib')
-rw-r--r--pkgs/development/libraries/imlib/default.nix10
1 files changed, 9 insertions, 1 deletions
diff --git a/pkgs/development/libraries/imlib/default.nix b/pkgs/development/libraries/imlib/default.nix
index a6281156afa..e476bc22eca 100644
--- a/pkgs/development/libraries/imlib/default.nix
+++ b/pkgs/development/libraries/imlib/default.nix
@@ -1,4 +1,4 @@
-{stdenv, fetchurl, libX11, libXext, xorgproto, libjpeg, libungif, libtiff, libpng}:
+{stdenv, fetchurl, fetchpatch, libX11, libXext, xorgproto, libjpeg, libungif, libtiff, libpng}:
 
 stdenv.mkDerivation {
   name = "imlib-1.9.15";
@@ -7,6 +7,14 @@ stdenv.mkDerivation {
     sha256 = "0ggjxyvgp4pxc0b88v40xj9daz90518ydnycw7qax011gxpr12d3";
   };
 
+  patches = [
+    (fetchpatch {
+      name = "CVE-2007-3568.patch";
+      url = https://gitweb.gentoo.org/repo/gentoo.git/plain/media-libs/imlib/files/imlib-1.9.15-bpp16-CVE-2007-3568.patch;
+      sha256 = "0lxfibi094gki39sq1w4p0hcx25xlk0875agbhjkjngzx862wvbg";
+    })
+  ];
+
   configureFlags = [
     "--disable-shm"
     "--x-includes=${libX11.dev}/include"