summary refs log tree commit diff
path: root/pkgs/development/tools/analysis/radare2/default.nix
diff options
context:
space:
mode:
authorMartin Weinelt <hexa@darmstadt.ccc.de>2023-01-15 22:01:01 +0100
committerMartin Weinelt <hexa@darmstadt.ccc.de>2023-01-15 22:01:01 +0100
commit5a61f34f2e731059b67daa59d0d398688a477cfb (patch)
tree30200629dd32b4f40d27d3d27af979cddc62ecf0 /pkgs/development/tools/analysis/radare2/default.nix
parent225ee3890d9ccaeb2505632934d1313ceb9ed7dc (diff)
downloadnixpkgs-5a61f34f2e731059b67daa59d0d398688a477cfb.tar
nixpkgs-5a61f34f2e731059b67daa59d0d398688a477cfb.tar.gz
nixpkgs-5a61f34f2e731059b67daa59d0d398688a477cfb.tar.bz2
nixpkgs-5a61f34f2e731059b67daa59d0d398688a477cfb.tar.lz
nixpkgs-5a61f34f2e731059b67daa59d0d398688a477cfb.tar.xz
nixpkgs-5a61f34f2e731059b67daa59d0d398688a477cfb.tar.zst
nixpkgs-5a61f34f2e731059b67daa59d0d398688a477cfb.zip
radare2: Fix ANSI Escape Sequence Injection vulns via DWARF
Fixes: CVE-2023-0302
Diffstat (limited to 'pkgs/development/tools/analysis/radare2/default.nix')
-rw-r--r--pkgs/development/tools/analysis/radare2/default.nix5
1 files changed, 5 insertions, 0 deletions
diff --git a/pkgs/development/tools/analysis/radare2/default.nix b/pkgs/development/tools/analysis/radare2/default.nix
index 94165d992d8..e02ce86d8ef 100644
--- a/pkgs/development/tools/analysis/radare2/default.nix
+++ b/pkgs/development/tools/analysis/radare2/default.nix
@@ -63,6 +63,11 @@ stdenv.mkDerivation rec {
       url = "https://github.com/radareorg/radare2/commit/842f809d4ec6a12af2906f948657281c9ebc8a24.patch";
       sha256 = "sha256-asEXW9Ox48w9WQhOA9tleXIvynIjsWb6ItKmFTojgbQ=";
     })
+    (fetchpatch {
+      name = "CVE-2023-0302.patch";
+      url = "https://github.com/radareorg/radare2/commit/961f0e723903011d4f54c2396e44efa91fcc74ce.patch";
+      hash = "sha256-QinRQDIY4p3P+M3Hh9w3Dv3N/2XTaf3N0nUluHPpAvg=";
+    })
   ];
 
   preBuild = ''