Path to this page:
Subject: CVS commit: [pkgsrc-2011Q2] pkgsrc/textproc/groff
From: Steven Drake
Date: 2011-07-21 06:24:07
Message id: 20110721042407.958D3175DD@cvs.netbsd.org
Log Message:
Pullup ticket #3477 - requested by tez
textproc/groff security fix
Revisions pulled up:
- textproc/groff/Makefile 1.58
- textproc/groff/distinfo 1.15
- textproc/groff/patches/patch-config.guess 1.1
- textproc/groff/patches/patch-configure 1.1
- textproc/groff/patches/patch-contrib_eqn2graph_eqn2graph.sh 1.1
- textproc/groff/patches/patch-contrib_gdiffmk_tests_runtests.in 1.1
- textproc/groff/patches/patch-contrib_grap2graph_grap2graph.sh 1.1
- textproc/groff/patches/patch-contrib_groffer_perl_groffer.pl 1.1
- textproc/groff/patches/patch-contrib_groffer_perl_roff2.pl 1.1
- textproc/groff/patches/patch-contrib_pdfmark_pdfroff.man 1.1
- textproc/groff/patches/patch-contrib_pdfmark_pdfroff.sh 1.1
- textproc/groff/patches/patch-contrib_pic2graph_pic2graph.sh 1.1
- textproc/groff/patches/patch-doc_fixinfo.sh 1.1
- textproc/groff/patches/patch-doc_groff.info-2 1.1
- textproc/groff/patches/patch-gendef.sh 1.1
- textproc/groff/patches/patch-src_roff_groff_pipeline.c 1.1
---
Module Name: pkgsrc
Committed By: tez
Date: Tue Jul 19 21:09:40 UTC 2011
Modified Files:
pkgsrc/textproc/groff: Makefile distinfo
Added Files:
pkgsrc/textproc/groff/patches: patch-config.guess patch-configure
patch-contrib_eqn2graph_eqn2graph.sh
patch-contrib_gdiffmk_tests_runtests.in
patch-contrib_grap2graph_grap2graph.sh
patch-contrib_groffer_perl_groffer.pl
patch-contrib_groffer_perl_roff2.pl
patch-contrib_pdfmark_pdfroff.man patch-contrib_pdfmark_pdfroff.sh
patch-contrib_pic2graph_pic2graph.sh patch-doc_fixinfo.sh
patch-doc_groff.info-2 patch-gendef.sh
patch-src_roff_groff_pipeline.c
Log Message:
Fix many temporary file handling issues, including in pdfroff
(resolves CVE-2009-5044 / SA44999)
Patches copied from:
\
http://cvsweb.openwall.com/cgi/cvsweb.cgi/Owl/packages/groff/groff-1.20.1-owl-tmp.diff?rev=1.2
Modified for pkgsrc and excluded a documentaion change to doc/groff.texinfo
that changes a `makeinfo' is too old warning into a fatal error.
Added patch to make pdfroff.sh use -dSAFER
See http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=538338 for details.
Files: