summary refs log tree commit diff
path: root/pkgs/development/libraries/libxslt
diff options
context:
space:
mode:
authorRickard Nilsson <rickynils@gmail.com>2017-08-16 15:10:09 +0200
committerRickard Nilsson <rickynils@gmail.com>2017-08-17 13:23:49 +0200
commit1f9d9deb8aaa25225d2e171381ad4ddca85e4a12 (patch)
tree2a04293b80ab6c00f46eb64a651755db55885d7f /pkgs/development/libraries/libxslt
parent824b8e4c6a2ac49dc9867dc9105372b15d5378f6 (diff)
downloadnixpkgs-1f9d9deb8aaa25225d2e171381ad4ddca85e4a12.tar
nixpkgs-1f9d9deb8aaa25225d2e171381ad4ddca85e4a12.tar.gz
nixpkgs-1f9d9deb8aaa25225d2e171381ad4ddca85e4a12.tar.bz2
nixpkgs-1f9d9deb8aaa25225d2e171381ad4ddca85e4a12.tar.lz
nixpkgs-1f9d9deb8aaa25225d2e171381ad4ddca85e4a12.tar.xz
nixpkgs-1f9d9deb8aaa25225d2e171381ad4ddca85e4a12.tar.zst
nixpkgs-1f9d9deb8aaa25225d2e171381ad4ddca85e4a12.zip
libxslt: Patch for CVE-2017-5029
Diffstat (limited to 'pkgs/development/libraries/libxslt')
-rw-r--r--pkgs/development/libraries/libxslt/default.nix9
1 files changed, 8 insertions, 1 deletions
diff --git a/pkgs/development/libraries/libxslt/default.nix b/pkgs/development/libraries/libxslt/default.nix
index 118b8af5a6f..07f96fad33e 100644
--- a/pkgs/development/libraries/libxslt/default.nix
+++ b/pkgs/development/libraries/libxslt/default.nix
@@ -17,7 +17,14 @@ stdenv.mkDerivation rec {
     sha256 = "1klh81xbm9ppzgqk339097i39b7fnpmlj8lzn8bpczl3aww6x5xm";
   };
 
-  patches = stdenv.lib.optional stdenv.isSunOS ./patch-ah.patch;
+  patches = [
+    (fetchpatch {
+      name = "CVE-2017-5029";
+      url = "https://git.gnome.org/browse/libxslt/"
+        + "patch/?id=08ab2774b870de1c7b5a48693df75e8154addae5";
+      sha256 = "10azfmyffjf9d7b5js4ipxw9f20qi0kw3zq34bpqmbcpq3l338ky";
+    })
+  ] ++ stdenv.lib.optional stdenv.isSunOS ./patch-ah.patch;
 
   # fixes: can't build x86_64-unknown-cygwin shared library unless -no-undefined is specified
   postPatch = optionalString hostPlatform.isCygwin ''