aboutsummaryrefslogtreecommitdiff
path: root/gnu/packages/base.scm
diff options
context:
space:
mode:
authorAlex Vong <alexvong1995@gmail.com>2016-12-31 00:05:49 +0800
committerLeo Famulari <leo@famulari.name>2017-01-01 20:19:36 -0500
commit20be64dcf7d4d08e75eb56c34890420bea7882ec (patch)
treeb7513f16357459b762afdf6f0c6ce4b68d542246 /gnu/packages/base.scm
parent89ccb1d88132be14180ca3068df57d685dacdb08 (diff)
downloadguix-20be64dcf7d4d08e75eb56c34890420bea7882ec.tar
guix-20be64dcf7d4d08e75eb56c34890420bea7882ec.tar.gz
gnu: tar: Fix CVE-2016-6321.
* gnu/packages/patches/tar-CVE-2016-6321.patch: New file. * gnu/local.mk (dist_patch_DATA): Add it. * gnu/packages/base.scm (tar)[source]: Use it. Signed-off-by: Leo Famulari <leo@famulari.name>
Diffstat (limited to 'gnu/packages/base.scm')
-rw-r--r--gnu/packages/base.scm3
1 files changed, 2 insertions, 1 deletions
diff --git a/gnu/packages/base.scm b/gnu/packages/base.scm
index 30364f373c..1962086169 100644
--- a/gnu/packages/base.scm
+++ b/gnu/packages/base.scm
@@ -162,7 +162,8 @@ implementation offers several extensions over the standard utility.")
(sha256
(base32
"097hx7sbzp8qirl4m930lw84kn0wmxhmq7v1qpra3mrg0b8cyba0"))
- (patches (search-patches "tar-skip-unreliable-tests.patch"))))
+ (patches (search-patches "tar-CVE-2016-6321.patch"
+ "tar-skip-unreliable-tests.patch"))))
(build-system gnu-build-system)
;; Note: test suite requires ~1GiB of disk space.
(arguments