From: Gustavo Zacarias Date: Wed, 10 Aug 2016 02:30:16 +0000 (-0300) Subject: fontconfig: security bump to version 2.12.1 X-Git-Url: https://git.libre-soc.org/?a=commitdiff_plain;h=ab5b263e80daa3caca57c3012bdee91a27ac5ada;p=buildroot.git fontconfig: security bump to version 2.12.1 Fixes: CVE-2016-5384 - possible double free due to insufficiently validated cache files. Signed-off-by: Gustavo Zacarias Signed-off-by: Thomas Petazzoni --- diff --git a/package/fontconfig/fontconfig.hash b/package/fontconfig/fontconfig.hash index e4ec1ac177..ad3582557b 100644 --- a/package/fontconfig/fontconfig.hash +++ b/package/fontconfig/fontconfig.hash @@ -1,2 +1,2 @@ -# From http://lists.freedesktop.org/archives/fontconfig/2014-March/005167.html -sha256 b6b066c7dce3f436fdc0dfbae9d36122b38094f4f53bd8dffd45e195b0540d8d fontconfig-2.11.1.tar.gz +# From https://lists.freedesktop.org/archives/fontconfig/2016-August/005794.html +sha256 b449a3e10c47e1d1c7a6ec6e2016cca73d3bd68fbbd4f0ae5cc6b573f7d6c7f3 fontconfig-2.12.1.tar.bz2 diff --git a/package/fontconfig/fontconfig.mk b/package/fontconfig/fontconfig.mk index f3bf0d405d..93f2a15938 100644 --- a/package/fontconfig/fontconfig.mk +++ b/package/fontconfig/fontconfig.mk @@ -4,8 +4,9 @@ # ################################################################################ -FONTCONFIG_VERSION = 2.11.1 +FONTCONFIG_VERSION = 2.12.1 FONTCONFIG_SITE = http://fontconfig.org/release +FONTCONFIG_SOURCE = fontconfig-$(FONTCONFIG_VERSION).tar.bz2 FONTCONFIG_INSTALL_STAGING = YES FONTCONFIG_DEPENDENCIES = freetype expat host-pkgconf HOST_FONTCONFIG_DEPENDENCIES = host-freetype host-expat host-pkgconf