aboutsummaryrefslogtreecommitdiff
path: root/gnu/packages/version-control.scm
diff options
context:
space:
mode:
authorLeo Famulari <leo@famulari.name>2017-08-14 12:27:01 -0400
committerLeo Famulari <leo@famulari.name>2017-08-14 15:55:31 -0400
commit15428168eaf06ce54aa3f8ed8eec819d6bbdefec (patch)
treed8b3b816ca72967aa1ce5acf33fde62bd0f9b484 /gnu/packages/version-control.scm
parent36bfcf7e3a6d2a2dbaa05a4cfb4066adcf13da6d (diff)
downloadguix-15428168eaf06ce54aa3f8ed8eec819d6bbdefec.tar
guix-15428168eaf06ce54aa3f8ed8eec819d6bbdefec.tar.gz
gnu: cvs: Fix CVE-2017-12836.
* gnu/packages/patches/cvs-2017-12836.patch: New file. * gnu/local.mk (dist_patch_DATA): Add it. * gnu/packages/version-control.scm (cvs)[source]: Use it.
Diffstat (limited to 'gnu/packages/version-control.scm')
-rw-r--r--gnu/packages/version-control.scm1
1 files changed, 1 insertions, 0 deletions
diff --git a/gnu/packages/version-control.scm b/gnu/packages/version-control.scm
index 151cf0cf10..7c1f02d5ad 100644
--- a/gnu/packages/version-control.scm
+++ b/gnu/packages/version-control.scm
@@ -924,6 +924,7 @@ machine.")
(uri (string-append
"https://ftp.gnu.org/non-gnu/cvs/source/feature/"
version "/cvs-" version ".tar.bz2"))
+ (patches (search-patches "cvs-2017-12836.patch"))
(sha256
(base32
"0pjir8cwn0087mxszzbsi1gyfc6373vif96cw4q3m1x6p49kd1bq"))))