libksba: security bump to version 1.3.2
authorGustavo Zacarias <gustavo@zacarias.com.ar>
Tue, 25 Nov 2014 22:39:23 +0000 (19:39 -0300)
committerPeter Korsgaard <peter@korsgaard.com>
Tue, 25 Nov 2014 23:07:54 +0000 (00:07 +0100)
Fixes a buffer overflow in ksba_oid_to_str.

Signed-off-by: Gustavo Zacarias <gustavo@zacarias.com.ar>
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
package/libksba/libksba.hash
package/libksba/libksba.mk

index c7d209a1988e551747144af8851add8227920af9..3bd6ef028059590e77fbb6afb5ebebfbf6bca78e 100644 (file)
@@ -1,2 +1,2 @@
-# Locally calculated after checking pgp signature
-sha256 bc96b95516bd2b67f413bc8b5cc5a75a2583c6e666d24dfd0d5bcc6b1aab46f9        libksba-1.3.1.tar.bz2
+# From http://lists.gnupg.org/pipermail/gnupg-announce/2014q4/000359.html
+sha1   37d0893a587354af2b6e49f6ae701ca84f52da67        libksba-1.3.2.tar.bz2
index aaf9b627f452b6a8bdd1a93b234c6a0f9ddc7ded..b48cac5538920813fc0d2671e9a0ca10b4b23b63 100644 (file)
@@ -4,7 +4,7 @@
 #
 ################################################################################
 
-LIBKSBA_VERSION = 1.3.1
+LIBKSBA_VERSION = 1.3.2
 LIBKSBA_SOURCE = libksba-$(LIBKSBA_VERSION).tar.bz2
 LIBKSBA_SITE = ftp://ftp.gnupg.org/gcrypt/libksba
 LIBKSBA_LICENSE = LGPLv3+ or GPLv2+ (library, headers), GPLv3+ (manual, tests, build system)