summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorSantiago M. Mola <coldwind@gentoo.org>2008-06-29 22:52:02 +0000
committerSantiago M. Mola <coldwind@gentoo.org>2008-06-29 22:52:02 +0000
commit7671efc282994ebca7125942ad0188f5a15e04f0 (patch)
treed18ce0ebfdec9a4bf6bf3787e798fbea8316a5f9 /net-p2p
parentadd patches from bugs #229719, #229723, #216391 (diff)
downloadhistorical-7671efc282994ebca7125942ad0188f5a15e04f0.tar.gz
historical-7671efc282994ebca7125942ad0188f5a15e04f0.tar.bz2
historical-7671efc282994ebca7125942ad0188f5a15e04f0.zip
Security fix, second round.
Package-Manager: portage-2.2_rc1/cvs/Linux 2.6.25-gentoo-r3 x86_64
Diffstat (limited to 'net-p2p')
-rw-r--r--net-p2p/linuxdcpp/ChangeLog9
-rw-r--r--net-p2p/linuxdcpp/Manifest6
-rw-r--r--net-p2p/linuxdcpp/files/linuxdcpp-1.0.1-fix-remote-vulnerability.patch18
-rw-r--r--net-p2p/linuxdcpp/linuxdcpp-1.0.1-r2.ebuild (renamed from net-p2p/linuxdcpp/linuxdcpp-1.0.1-r1.ebuild)2
4 files changed, 30 insertions, 5 deletions
diff --git a/net-p2p/linuxdcpp/ChangeLog b/net-p2p/linuxdcpp/ChangeLog
index d9c59b09af51..2378af9c439b 100644
--- a/net-p2p/linuxdcpp/ChangeLog
+++ b/net-p2p/linuxdcpp/ChangeLog
@@ -1,6 +1,13 @@
# ChangeLog for net-p2p/linuxdcpp
# Copyright 1999-2008 Gentoo Foundation; Distributed under the GPL v2
-# $Header: /var/cvsroot/gentoo-x86/net-p2p/linuxdcpp/ChangeLog,v 1.26 2008/06/29 18:46:01 coldwind Exp $
+# $Header: /var/cvsroot/gentoo-x86/net-p2p/linuxdcpp/ChangeLog,v 1.27 2008/06/29 22:52:01 coldwind Exp $
+
+*linuxdcpp-1.0.1-r2 (29 Jun 2008)
+
+ 29 Jun 2008; Santiago M. Mola <coldwind@gentoo.org>
+ files/linuxdcpp-1.0.1-fix-remote-vulnerability.patch,
+ -linuxdcpp-1.0.1-r1.ebuild, +linuxdcpp-1.0.1-r2.ebuild:
+ Security fix, second round.
*linuxdcpp-1.0.1-r1 (29 Jun 2008)
diff --git a/net-p2p/linuxdcpp/Manifest b/net-p2p/linuxdcpp/Manifest
index e1e9be601f3d..6c8538bafa62 100644
--- a/net-p2p/linuxdcpp/Manifest
+++ b/net-p2p/linuxdcpp/Manifest
@@ -1,7 +1,7 @@
-AUX linuxdcpp-1.0.1-fix-remote-vulnerability.patch 477 RMD160 ebae519df7ece754f3206c214d1662dd351679c0 SHA1 5094c1da73582b31db28078c924f0f083971b378 SHA256 ebb4fbdb4b291f26f0df76caa302fc3565454c43e418caeb2c1a1579f7d3b49e
+AUX linuxdcpp-1.0.1-fix-remote-vulnerability.patch 953 RMD160 26457948031fccde029f9d8e2df6eb24de069316 SHA1 dede29ac45406f2016f0f0d55c83657e840d27b4 SHA256 41fb65c533d80a6b2d792c9c1133b26e83780478017ca11b129a30467ac6537c
DIST linuxdcpp-1.0.1.tar.bz2 282410 RMD160 daaac78b0e7bd73cccd81f23d1983814937f930b SHA1 0da46e3c1920f8d898852a2abeb197609fe35ae7 SHA256 647448d41e8b24219bda4f286e2e6bef0eb956bd4f51e12cced18e3e94de1b38
-EBUILD linuxdcpp-1.0.1-r1.ebuild 1296 RMD160 40408e0607a3e4e8cc184049f88faec02d492fe3 SHA1 6d9012a76d4d38e8a41722ee8127889036431a92 SHA256 6b9e795ab1d07aee90c9141376ef2aead0f7c90ce471e66997d67950ac38023f
+EBUILD linuxdcpp-1.0.1-r2.ebuild 1296 RMD160 ee51412c5c3d875756ac79d5989045911bc6d489 SHA1 909903d4ec557eefe9356e2646019fa9f68f0d05 SHA256 482381e5c7a9bd1155d416ec2798ae47e0b99818dc874f963b1361d80969372a
EBUILD linuxdcpp-1.0.1.ebuild 1190 RMD160 19aa34862d6c173d076127ddcffb95fb73f234fe SHA1 191dc37481ab50158e171c661382e4b4efc34a49 SHA256 b86f590d9152e0b5ccdb42c5a6e2b952ad7834416fd38da7d33b527bc35121fc
EBUILD linuxdcpp-9999.ebuild 1284 RMD160 c2537dc188ef6b5e01d1e0f7e9265350697ef66c SHA1 f71857349670ee27043f72288f9a3f38e1a8237a SHA256 074abf8f2c8dc310cebe670998e45ad3e58e5c9d4ad0a1432019733ff7d17604
-MISC ChangeLog 3915 RMD160 d39c56183178ebf83484e8cb4dc3b76570638e5d SHA1 f198689aa12ee2a7b5157136173e3421d18f89ea SHA256 aa30d6a49c0138424a1fd7b0110720cb2eebaf4a794e6304ad9855ddb860a4a4
+MISC ChangeLog 4149 RMD160 2f4189d412b8733bf40c8dde13ae8b1065e4008b SHA1 794672587f096d4bbd97600a1efde97f17aef73a SHA256 279fc7f8ee7086cd31e1d63341926184877d35f86078d4513de836ba5ab8c11a
MISC metadata.xml 160 RMD160 828887200387b28c37fc97111fc6bc3a0a2fcccd SHA1 813ef5bc57f6a8d95e7cab7a745a2a824858f49c SHA256 fe06593409e7f28665c032001005e94cb650299711a0af7f1a558bdb56c4004f
diff --git a/net-p2p/linuxdcpp/files/linuxdcpp-1.0.1-fix-remote-vulnerability.patch b/net-p2p/linuxdcpp/files/linuxdcpp-1.0.1-fix-remote-vulnerability.patch
index 91f164a37d18..ab2346678a38 100644
--- a/net-p2p/linuxdcpp/files/linuxdcpp-1.0.1-fix-remote-vulnerability.patch
+++ b/net-p2p/linuxdcpp/files/linuxdcpp-1.0.1-fix-remote-vulnerability.patch
@@ -13,3 +13,21 @@ Security bug, fixed upstream.
for(ShareManager::Directory::MapIter it2 = it->second->directories.begin(); it2 != it->second->directories.end(); ++it2) {
it2->second->toXml(sos, indent, tmp, recurse);
}
+--- client/NmdcHub.cpp 4 Aug 2007 21:17:21 -0000 1.14
++++ client/NmdcHub.cpp 29 Jun 2008 15:42:27 -0000 1.15
+@@ -693,10 +693,14 @@
+ if(fromNick.empty())
+ return;
+
++ if(param.size() < j + 2) {
++ return;
++ }
++ string msg = param.substr(j + 2);
++
+ OnlineUser* replyTo = findUser(rtNick);
+ OnlineUser* from = findUser(fromNick);
+
+- string msg = param.substr(j + 2);
+ if(replyTo == NULL || from == NULL) {
+ if(replyTo == 0) {
+ // Assume it's from the hub
diff --git a/net-p2p/linuxdcpp/linuxdcpp-1.0.1-r1.ebuild b/net-p2p/linuxdcpp/linuxdcpp-1.0.1-r2.ebuild
index 704601f69773..88be874a9bc5 100644
--- a/net-p2p/linuxdcpp/linuxdcpp-1.0.1-r1.ebuild
+++ b/net-p2p/linuxdcpp/linuxdcpp-1.0.1-r2.ebuild
@@ -1,6 +1,6 @@
# Copyright 1999-2008 Gentoo Foundation
# Distributed under the terms of the GNU General Public License v2
-# $Header: /var/cvsroot/gentoo-x86/net-p2p/linuxdcpp/linuxdcpp-1.0.1-r1.ebuild,v 1.1 2008/06/29 18:46:01 coldwind Exp $
+# $Header: /var/cvsroot/gentoo-x86/net-p2p/linuxdcpp/linuxdcpp-1.0.1-r2.ebuild,v 1.1 2008/06/29 22:52:01 coldwind Exp $
inherit eutils