From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from eggs.gnu.org ([2001:4830:134:3::10]:52149) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1d62pW-0008F7-Hr for guix-patches@gnu.org; Wed, 03 May 2017 18:33:07 -0400 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1d62pS-0002ve-IU for guix-patches@gnu.org; Wed, 03 May 2017 18:33:06 -0400 Received: from debbugs.gnu.org ([208.118.235.43]:55133) by eggs.gnu.org with esmtps (TLS1.0:RSA_AES_128_CBC_SHA1:16) (Exim 4.71) (envelope-from ) id 1d62pS-0002vH-AG for guix-patches@gnu.org; Wed, 03 May 2017 18:33:02 -0400 Received: from Debian-debbugs by debbugs.gnu.org with local (Exim 4.84_2) (envelope-from ) id 1d62pS-0007Gz-57 for guix-patches@gnu.org; Wed, 03 May 2017 18:33:02 -0400 Subject: bug#26758: [PATCH] gnu: gnome-shell: Patch CVE-2017-8288. Resent-Message-ID: Date: Wed, 3 May 2017 18:31:47 -0400 From: Leo Famulari Message-ID: <20170503223147.GA12175@jasmine> References: <2mJLT7Z/wQdanXzCpACTLW@bec4dusrlz0aOI14CUJvM> MIME-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha256; protocol="application/pgp-signature"; boundary="TB36FDmn/VVEgNH/" Content-Disposition: inline In-Reply-To: <2mJLT7Z/wQdanXzCpACTLW@bec4dusrlz0aOI14CUJvM> List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: guix-patches-bounces+kyle=kyleam.com@gnu.org Sender: "Guix-patches" To: rennes Cc: 26758@debbugs.gnu.org --TB36FDmn/VVEgNH/ Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Wed, May 03, 2017 at 08:49:50AM -0500, rennes wrote: > Hello, >=20 > This patch fix the CVE-2017-8288. > Tested in Linux x86_64. > From fedc016e9f6cf9ad91861893074826f991a30893 Mon Sep 17 00:00:00 2001 > From: rennes > Date: Tue, 2 May 2017 22:46:56 -0500 > Subject: [PATCH] gnu: gnome-shell: Patch CVE-2017-8288. >=20 > * gnu/packages/gnome.scm (gnome-shell)[replacement]: New field. > (gnome-shell/fixed): New variable. > * gnu/packages/patches/gnome-shell-CVE-2017-8288.patch: New file. > * gnu/local.mk (dist_patch_DATA): Add them. Thanks! Do we need to graft it, or can we apply the patch directly to gnome-shell? What would need to be rebuilt if we applied the patch directly? --TB36FDmn/VVEgNH/ Content-Type: application/pgp-signature; name="signature.asc" -----BEGIN PGP SIGNATURE----- iQIzBAABCAAdFiEEsFFZSPHn08G5gDigJkb6MLrKfwgFAlkKWk4ACgkQJkb6MLrK fwgO1w/+PKNjBfUHEm4EwzennlU2/j/kp/a+KNhlJ/NvhLDvGhHXxjKYg4OWz9/T TLZZdITUiygm4tnepaj9VWIpBWl2eTDgX6bvN4v82vKiqvc357SvLS47kwLNnN0q hdxvLG9dhBiZKWsOFT4b4IbcxUPWlc/eyG0Ze4uSdiIxX/jJAikKe1Op5qd0SXtX /kLyRt6TaMEL3WQXKhwivB4QPlNDY57/+t2d1g1NLNZJRLcRQ2nDFhsTfHNWfOcY 3LJW1owNsDu7WAZhR69nyw0D+ceA7ch9aGX0v9NGl3e96tTON9TTNK3CVp+zlVIz cqB87bd2TPh3g7OmvKGmvDbgk3nMaUI51Pnfhq06HKYvRh3RsURsV6oUoMIV1K8y tTczN/iFMF4rCH59d/Sa7vNYt+/fyUicfV/Sg1gZ2x75ns4VPHsEcrZTKmeNkXRl 5iSK82ByvbQlAPc8kjhc3aFQ81D0QqLoXQjwIFcsKLCmyx2ieSSmVT+OHpur/fVG JH0dSUZ23ZBPuexcYbSiMKekCILROVnWsawLBOhECavJlpI6Sulny2KGLQAcL+n+ YMSK2v0s+XT7L0lkEWRA3eC61vO2pjH2R24uEJUqwFSUwceLhxeQ8mogLeu7/sgX wGJlnTcVb4aKTQiwuiegOFMSLmzE2791HRvAog6xbUYO7xq192A= =KDPz -----END PGP SIGNATURE----- --TB36FDmn/VVEgNH/--