From mboxrd@z Thu Jan 1 00:00:00 1970 From: Efraim Flashner Subject: Re: [PATCH 1/1] gnu: curl: Update replacement to 7.50.2 [fixes CVE-2016-7141]. Date: Thu, 8 Sep 2016 08:40:12 +0300 Message-ID: <20160908054012.GA12493@macbook42.flashner.co.il> References: Mime-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha512; protocol="application/pgp-signature"; boundary="x+6KMIRAuhnl3hBn" Return-path: Received: from eggs.gnu.org ([2001:4830:134:3::10]:45874) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1bhs4Z-00055Q-Pg for guix-devel@gnu.org; Thu, 08 Sep 2016 01:40:28 -0400 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1bhs4V-0000sq-NB for guix-devel@gnu.org; Thu, 08 Sep 2016 01:40:26 -0400 Received: from flashner.co.il ([178.62.234.194]:57702) by eggs.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1bhs4V-0000qN-Fp for guix-devel@gnu.org; Thu, 08 Sep 2016 01:40:23 -0400 Content-Disposition: inline In-Reply-To: List-Id: "Development of GNU Guix and the GNU System distribution." List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: guix-devel-bounces+gcggd-guix-devel=m.gmane.org@gnu.org Sender: "Guix-devel" To: Leo Famulari Cc: guix-devel@gnu.org --x+6KMIRAuhnl3hBn Content-Type: text/plain; charset=utf-8 Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Wed, Sep 07, 2016 at 06:04:23PM -0400, Leo Famulari wrote: > * gnu/packages/curl.scm (curl)[replacement]: Update to 7.50.2 > (curl-7.50.1): Replace with ... > (curl-7.50.2): ... this. > --- > gnu/packages/curl.scm | 8 ++++---- > 1 file changed, 4 insertions(+), 4 deletions(-) >=20 > diff --git a/gnu/packages/curl.scm b/gnu/packages/curl.scm > index a250bb1..f3c0ade 100644 > --- a/gnu/packages/curl.scm > +++ b/gnu/packages/curl.scm > @@ -40,7 +40,7 @@ > (define-public curl > (package > (name "curl") > - (replacement curl-7.50.1) > + (replacement curl-7.50.2) > (version "7.47.0") > (source (origin > (method url-fetch) > @@ -125,15 +125,15 @@ tunneling, and so on.") > "See COPYING in the distribution.")) > (home-page "http://curl.haxx.se/"))) > =20 > -(define curl-7.50.1 > +(define curl-7.50.2 > (package > (inherit curl) > (source > - (let ((version "7.50.1")) > + (let ((version "7.50.2")) > (origin > (method url-fetch) > (uri (string-append "https://curl.haxx.se/download/curl-" > version ".tar.lzma")) > (sha256 > (base32 > - "0qc3qp3h18v24irzw7dgg1jf39v4hnz8irv83v9lbn9rxzrpdcdj"))))))) > + "0d5ly1xms0hh5zkv0m77d50c1816ywmbvmi1m158jyl70ndi9gby"))))))) > --=20 > 2.10.0 >=20 Looks good! --=20 Efraim Flashner =D7=90=D7=A4=D7=A8=D7=99=D7=9D = =D7=A4=D7=9C=D7=A9=D7=A0=D7=A8 GPG key =3D A28B F40C 3E55 1372 662D 14F7 41AA E7DC CA3D 8351 Confidentiality cannot be guaranteed on emails sent or received unencrypted --x+6KMIRAuhnl3hBn Content-Type: application/pgp-signature; name="signature.asc" -----BEGIN PGP SIGNATURE----- Version: GnuPG v2 iQIcBAEBCgAGBQJX0PmzAAoJEPTB05F+rO6T+V8P/irNP9eAxS4BUj2Tr+uGnCrL 3LzoGnkuutlc3JU3nVlTfGpOrlxxshsiMUZ8Tj6sgTQ2MB4D4iSBxlWv7jtxF5Fo fj45zoY/SP9ej6IitYv+dRur+SfdNP1simVYJ5crDoxqnl7SFcakIAwGYWpM+1Ne pV0laTYtW9VTZma23eBQKT1Qm8XyBUJtEglULibShvY1JNwvf24oVQEwGCN6PsAG S5BbuyRGkcWo3Lok0rP4598pIezNMmuHXSnfJnUxnEMpQKdozcESaVAMvHBDEJ6q g+obztjdEx30XIIFREZkFLxSPLZVPTmiEp+Pd141y2csDVpU4X8UyKmVJ/7TyaSA cV/N/JCM+EphzDB/hrkjqm4jROVXaUTj69oXAC1eVeHY9RORZt77TS2VmghuyDCk 5IU+LigtS9KcNysBBNQBmIrFKXhMatP84tz/auSV5Tw3c15BzL74L6MI6kdTqNFp teM79iFboz4Th9/W4UlXMjyUl/fz6pDGRDladEeS9RPUTghXwuOd/HjFbLp7Tb/8 fhnx/dTtEZpBCNLobjnZhDzjJKeWHr9YCPKHTJz7+Wluv9JEKGVTyyhCVyrZbWbo Gvq8sBhC4WLWPrpSoXCp2K2AxG2YGFxRxbEH1dw94NWruUEHTo4fNF8UmndNRD4L SKo5jtkSKcJl69OMvq5V =yfH1 -----END PGP SIGNATURE----- --x+6KMIRAuhnl3hBn--