summary refs log tree commit diff
path: root/pkgs
diff options
context:
space:
mode:
authorGraham Christensen <graham@grahamc.com>2016-09-27 21:06:42 -0400
committerGraham Christensen <graham@grahamc.com>2016-09-27 21:07:35 -0400
commitdad5651bd4f2376294ad3159c0361e03fb91cb06 (patch)
treeb4dd64a47c09885b1ea4174ff8f3f3e8576c994f /pkgs
parentb5ab13a5ff147c0bb61a3222270691e8acea8b73 (diff)
downloadnixpkgs-dad5651bd4f2376294ad3159c0361e03fb91cb06.tar
nixpkgs-dad5651bd4f2376294ad3159c0361e03fb91cb06.tar.gz
nixpkgs-dad5651bd4f2376294ad3159c0361e03fb91cb06.tar.bz2
nixpkgs-dad5651bd4f2376294ad3159c0361e03fb91cb06.tar.lz
nixpkgs-dad5651bd4f2376294ad3159c0361e03fb91cb06.tar.xz
nixpkgs-dad5651bd4f2376294ad3159c0361e03fb91cb06.tar.zst
nixpkgs-dad5651bd4f2376294ad3159c0361e03fb91cb06.zip
rpm: 4.12.0 -> 4.13.0-rc1 for CVEs
Null pointer deref & out of bound reads. See: https://lwn.net/Vulnerabilities/685287/

Fedora is shipping the rc1 as well.

re: https://github.com/NixOS/nixpkgs/pull/18975
Diffstat (limited to 'pkgs')
-rw-r--r--pkgs/tools/package-management/rpm/default.nix6
1 files changed, 3 insertions, 3 deletions
diff --git a/pkgs/tools/package-management/rpm/default.nix b/pkgs/tools/package-management/rpm/default.nix
index dee408e1d65..6c3a63119b0 100644
--- a/pkgs/tools/package-management/rpm/default.nix
+++ b/pkgs/tools/package-management/rpm/default.nix
@@ -1,11 +1,11 @@
 { stdenv, fetchurl, cpio, zlib, bzip2, file, elfutils, libarchive, nspr, nss, popt, db, xz, python, lua, pkgconfig, autoreconfHook }:
 
 stdenv.mkDerivation rec {
-  name = "rpm-4.12.0";
+  name = "rpm-4.13.0-rc1";
 
   src = fetchurl {
-    url = "http://rpm.org/releases/rpm-4.12.x/${name}.tar.bz2";
-    sha256 = "18hk47hc755nslvb7xkq4jb095z7va0nlcyxdpxayc4lmb8mq3bp";
+    url = "http://www.rpm.org/releases/testing/rpm-4.13.0-rc1.tar.bz2";
+    sha256 = "097mc0kkrf09c01hrgi71df7maahmvayfgsvspnxigvl3xysv8hp";
   };
 
   outputs = [ "out" "dev" "man" ];