From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from mp0 ([2001:41d0:2:4a6f::]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits)) by ms11 with LMTPS id EAIJA8cpI2BVYQAA0tVLHw (envelope-from ) for ; Wed, 10 Feb 2021 00:33:11 +0000 Received: from aspmx1.migadu.com ([2001:41d0:2:4a6f::]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits)) by mp0 with LMTPS id 6BFsOsYpI2BuMgAA1q6Kng (envelope-from ) for ; Wed, 10 Feb 2021 00:33:10 +0000 Received: from lists.gnu.org (lists.gnu.org [209.51.188.17]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by aspmx1.migadu.com (Postfix) with ESMTPS id 1E97F940250 for ; Wed, 10 Feb 2021 00:33:10 +0000 (UTC) Received: from localhost ([::1]:54232 helo=lists1p.gnu.org) by lists.gnu.org with esmtp (Exim 4.90_1) (envelope-from ) id 1l9dRM-0007jL-Ul for larch@yhetil.org; Tue, 09 Feb 2021 19:33:08 -0500 Received: from eggs.gnu.org ([2001:470:142:3::10]:50010) by lists.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.90_1) (envelope-from ) id 1l9d26-0007KK-Dz for guix-patches@gnu.org; Tue, 09 Feb 2021 19:07:03 -0500 Received: from debbugs.gnu.org ([209.51.188.43]:43536) by eggs.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_128_GCM_SHA256:128) (Exim 4.90_1) (envelope-from ) id 1l9d26-00012E-6u for guix-patches@gnu.org; Tue, 09 Feb 2021 19:07:02 -0500 Received: from Debian-debbugs by debbugs.gnu.org with local (Exim 4.84_2) (envelope-from ) id 1l9d26-0001DC-2b for guix-patches@gnu.org; Tue, 09 Feb 2021 19:07:02 -0500 X-Loop: help-debbugs@gnu.org Subject: [bug#46415] [PATCH] gnu: OpenLDAP: Update to 2.4.57 [security fixes]. Resent-From: Leo Famulari Original-Sender: "Debbugs-submit" Resent-CC: guix-patches@gnu.org Resent-Date: Wed, 10 Feb 2021 00:07:01 +0000 Resent-Message-ID: Resent-Sender: help-debbugs@gnu.org X-GNU-PR-Message: report 46415 X-GNU-PR-Package: guix-patches X-GNU-PR-Keywords: patch To: 46415@debbugs.gnu.org X-Debbugs-Original-To: guix-patches@gnu.org Received: via spool by submit@debbugs.gnu.org id=B.16129155994627 (code B ref -1); Wed, 10 Feb 2021 00:07:01 +0000 Received: (at submit) by debbugs.gnu.org; 10 Feb 2021 00:06:39 +0000 Received: from localhost ([127.0.0.1]:55082 helo=debbugs.gnu.org) by debbugs.gnu.org with esmtp (Exim 4.84_2) (envelope-from ) id 1l9d1b-0001CS-D9 for submit@debbugs.gnu.org; Tue, 09 Feb 2021 19:06:39 -0500 Received: from lists.gnu.org ([209.51.188.17]:54586) by debbugs.gnu.org with esmtp (Exim 4.84_2) (envelope-from ) id 1l9d1W-0001CH-TC for submit@debbugs.gnu.org; Tue, 09 Feb 2021 19:06:30 -0500 Received: from eggs.gnu.org ([2001:470:142:3::10]:49898) by lists.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.90_1) (envelope-from ) id 1l9d1W-00070U-OP for guix-patches@gnu.org; Tue, 09 Feb 2021 19:06:26 -0500 Received: from wout1-smtp.messagingengine.com ([64.147.123.24]:45579) by eggs.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.90_1) (envelope-from ) id 1l9d1S-0000nH-ET for guix-patches@gnu.org; Tue, 09 Feb 2021 19:06:26 -0500 Received: from compute3.internal (compute3.nyi.internal [10.202.2.43]) by mailout.west.internal (Postfix) with ESMTP id 5CF66A30; Tue, 9 Feb 2021 19:06:20 -0500 (EST) Received: from mailfrontend2 ([10.202.2.163]) by compute3.internal (MEProxy); Tue, 09 Feb 2021 19:06:20 -0500 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=famulari.name; h=from:to:subject:date:message-id:mime-version:content-type :content-transfer-encoding; s=mesmtp; bh=LzLIhS2IgtlUdQbyCcxD8t1 kp/ORMmFzkqgHL8ya2NU=; b=ZJgNgb+do/P0JbvVndCnoHbbCBtLHLwHcurfJjb vpCA7ZSquGaPWVfsMudCnwE8bIMIyxrGp/Q/JGW42ivJ2nyjAJ1ervBw/scPznLa Wt6Xa1SujL4xkTGiUNQ4b78ygwfZ9z6U9vnVmOIRkNisEVinoB9dtMVKPOBLA1IZ ETXY= DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=content-transfer-encoding:content-type :date:from:message-id:mime-version:subject:to:x-me-proxy :x-me-proxy:x-me-sender:x-me-sender:x-sasl-enc; s=fm2; bh=LzLIhS 2IgtlUdQbyCcxD8t1kp/ORMmFzkqgHL8ya2NU=; b=nGb6FJdmF2OblBJhX7Oahr N5NXAufVuEYAFE6g35y2IbLrWvJt6y/QMkoUFz5zOBRIEm2e03Dv5V4y9+Qimxvg 4rRNTBHwZdWezELDPmydiFBndT1ERij/RWgf9tj/Hjt4Yctk8b2E6l0f8dgsnI1i m8R3j72/bLCjLCBlsp9Ump8dIgZmCRa0ZW7w+8aXabyMknzN2OkyHM9ZmHu4xVc1 UyhM4kD7KJwZLbD4IibczWiZxVvkcG8BGV2MpncYZyUAuVCFBPmNuA1tZyTgohBt iyO6i1EHuEEkd30A2BKMy2buLHuoHFMPU24soG2xCKgEdERisZalmA11p1B+GqfQ == X-ME-Sender: X-ME-Proxy-Cause: gggruggvucftvghtrhhoucdtuddrgeduledrheeigddulecutefuodetggdotefrodftvf curfhrohhfihhlvgemucfhrghsthforghilhdpqfgfvfdpuffrtefokffrpgfnqfghnecu uegrihhlohhuthemuceftddtnecunecujfgurhephffvufffkffogggtgfesthekredtre dtjeenucfhrhhomhepnfgvohcuhfgrmhhulhgrrhhiuceolhgvohesfhgrmhhulhgrrhhi rdhnrghmvgeqnecuggftrfgrthhtvghrnheptddtkeeigeeuueeiveeiiefghfehhfdufe etvddtheejvdevvedvffegueehvdefnecuffhomhgrihhnpehophgvnhhluggrphdrohhr ghdpshifihhttghhrdgthhdpughtihdrrggurdhjphenucfkphepuddttddruddurdduie elrdduudeknecuvehluhhsthgvrhfuihiivgeptdenucfrrghrrghmpehmrghilhhfrhho mheplhgvohesfhgrmhhulhgrrhhirdhnrghmvg X-ME-Proxy: Received: from jasmine.lan (pool-100-11-169-118.phlapa.fios.verizon.net [100.11.169.118]) by mail.messagingengine.com (Postfix) with ESMTPA id 40BA5108005B for ; Tue, 9 Feb 2021 19:06:19 -0500 (EST) From: Leo Famulari Date: Tue, 9 Feb 2021 19:06:04 -0500 Message-Id: X-Mailer: git-send-email 2.30.0 MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit Received-SPF: pass client-ip=64.147.123.24; envelope-from=leo@famulari.name; helo=wout1-smtp.messagingengine.com X-Spam_score_int: -27 X-Spam_score: -2.8 X-Spam_bar: -- X-Spam_report: (-2.8 / 5.0 requ) BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_LOW=-0.7, RCVD_IN_MSPIKE_H4=0.001, RCVD_IN_MSPIKE_WL=0.001, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001 autolearn=ham autolearn_force=no X-Spam_action: no action X-BeenThere: debbugs-submit@debbugs.gnu.org X-Mailman-Version: 2.1.18 Precedence: list X-BeenThere: guix-patches@gnu.org List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: guix-patches-bounces+larch=yhetil.org@gnu.org Sender: "Guix-patches" X-Migadu-Flow: FLOW_IN X-Migadu-Spam-Score: 1.14 Authentication-Results: aspmx1.migadu.com; dkim=fail ("headers rsa verify failed") header.d=famulari.name header.s=mesmtp header.b=ZJgNgb+d; dkim=fail ("headers rsa verify failed") header.d=messagingengine.com header.s=fm2 header.b=nGb6FJdm; dmarc=none; spf=pass (aspmx1.migadu.com: domain of guix-patches-bounces@gnu.org designates 209.51.188.17 as permitted sender) smtp.mailfrom=guix-patches-bounces@gnu.org X-Migadu-Queue-Id: 1E97F940250 X-Spam-Score: 1.14 X-Migadu-Scanner: scn0.migadu.com X-TUID: 38qaPMpsjGOU Fixes CVE-2020-{36221,36222,36223,36224,36225,36226,36226,36228,36229,36230}. * gnu/packages/openldap.scm (openldap-2.4.57): New variable. (openldap)[replacement]: New field. --- gnu/packages/openldap.scm | 24 +++++++++++++++++++++++- 1 file changed, 23 insertions(+), 1 deletion(-) diff --git a/gnu/packages/openldap.scm b/gnu/packages/openldap.scm index fb917882e7..c23a9f6c25 100644 --- a/gnu/packages/openldap.scm +++ b/gnu/packages/openldap.scm @@ -1,7 +1,7 @@ ;;; GNU Guix --- Functional package management for GNU ;;; Copyright © 2013, 2014, 2015, 2019, 2020 Ludovic Courtès ;;; Copyright © 2013 Andreas Enge -;;; Copyright © 2016 Leo Famulari +;;; Copyright © 2016, 2021 Leo Famulari ;;; Copyright © 2017, 2018, 2019 Ricardo Wurmus ;;; Copyright © 2018 Tobias Geerinckx-Rice ;;; Copyright © 2019 Mathieu Othacehe @@ -61,6 +61,7 @@ (define-public openldap (package (name "openldap") + (replacement openldap-2.4.57) (version "2.4.50") (source (origin (method url-fetch) @@ -125,6 +126,27 @@ (license openldap2.8) (home-page "https://www.openldap.org/"))) +(define-public openldap-2.4.57 + (package + (inherit openldap) + (version "2.4.57") + (source (origin + (method url-fetch) + ;; See for a list of + ;; mirrors. + (uri (list (string-append + "ftp://mirror.switch.ch/mirror/OpenLDAP/" + "openldap-release/openldap-" version ".tgz") + (string-append + "https://www.openldap.org/software/download/OpenLDAP/" + "openldap-release/openldap-" version ".tgz") + (string-append + "ftp://ftp.dti.ad.jp/pub/net/OpenLDAP/" + "openldap-release/openldap-" version ".tgz"))) + (sha256 + (base32 + "0nmlyqhc52v24b4awh914sczmvxbazgq2cnlycvb9dgcwvhlgfn7")))))) + (define-public nss-pam-ldapd (package (name "nss-pam-ldapd") -- 2.30.0