package/subversion: security bump to version 1.9.12
authorPeter Korsgaard <peter@korsgaard.com>
Wed, 31 Jul 2019 23:02:50 +0000 (01:02 +0200)
committerPeter Korsgaard <peter@korsgaard.com>
Thu, 1 Aug 2019 08:36:08 +0000 (10:36 +0200)
Fixes the following security issues:

CVE-2018-11782: Remotely triggerable DoS vulnerability in svnserve
'get-deleted-rev'
https://subversion.apache.org/security/CVE-2018-11782-advisory.txt

CVE-2019-0203: Remote unauthenticated denial-of-service in Subversion
svnserve
https://subversion.apache.org/security/CVE-2019-0203-advisory.txt

Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
package/subversion/subversion.hash
package/subversion/subversion.mk

index be0c8ec93134fb40360999c1caeaf2104ef3558f..7f94631f896eff32d95e451ec39df205936e262e 100644 (file)
@@ -1,5 +1,5 @@
 # From https://www.apache.org/dist/subversion/subversion-1.9.10.tar.bz2.sha512
-sha512 58ac11078e0e5a1720199e5c66da76e7a20b86d02edcb8d313f98e2ddc74ae70aa3e0763a7d8a8fcb5a1fd7d65186829625ff110d78028b1c447e91f420d6f48 subversion-1.9.10.tar.bz2
+sha512 08a5c6c0233cc1dbd992180d2077eb1c67725682c457d3f67ebb6d22db0f6b64002a699ab828d435b708340ce6fb07bb1f03d11daefb887053c427ed75ad2de7 subversion-1.9.12.tar.bz2
 
 # Locally calculated
 sha256 3202942c1aba495fd17390618dedc1d3542815c5bc11958da7fd98c985abc11a LICENSE
index 0e26cfd4be130ecc5c635e63aa48b4ee61d12f7c..1013f1fc55e979c63fe6dd4d4d47cff53bd0399c 100644 (file)
@@ -4,7 +4,7 @@
 #
 ################################################################################
 
-SUBVERSION_VERSION = 1.9.10
+SUBVERSION_VERSION = 1.9.12
 SUBVERSION_SOURCE = subversion-$(SUBVERSION_VERSION).tar.bz2
 SUBVERSION_SITE = http://mirror.catn.com/pub/apache/subversion
 SUBVERSION_LICENSE = Apache-2.0