summary refs log tree commit diff
path: root/pkgs/applications/misc
diff options
context:
space:
mode:
authorGabriel Ebner <gebner@gebner.org>2017-12-06 12:18:49 +0900
committerGitHub <noreply@github.com>2017-12-06 12:18:49 +0900
commit51d5277c40b9426e54e7d5d02f5c766921a698c4 (patch)
treeeef7b219dce24d350eb3bbd1c4c91c390c9130a8 /pkgs/applications/misc
parent6b7e12b738e9be4b2859d0897247a114e075e5be (diff)
parent30d80869658f11687dcc4b58d9752a3b7fb15408 (diff)
downloadnixlib-51d5277c40b9426e54e7d5d02f5c766921a698c4.tar
nixlib-51d5277c40b9426e54e7d5d02f5c766921a698c4.tar.gz
nixlib-51d5277c40b9426e54e7d5d02f5c766921a698c4.tar.bz2
nixlib-51d5277c40b9426e54e7d5d02f5c766921a698c4.tar.lz
nixlib-51d5277c40b9426e54e7d5d02f5c766921a698c4.tar.xz
nixlib-51d5277c40b9426e54e7d5d02f5c766921a698c4.tar.zst
nixlib-51d5277c40b9426e54e7d5d02f5c766921a698c4.zip
Merge pull request #32347 from pbogdan/procmail-cve-2017-16844
procmail: fix CVE-2017-16844
Diffstat (limited to 'pkgs/applications/misc')
-rw-r--r--pkgs/applications/misc/procmail/default.nix9
1 files changed, 8 insertions, 1 deletions
diff --git a/pkgs/applications/misc/procmail/default.nix b/pkgs/applications/misc/procmail/default.nix
index b62c6b77cac3..cd3a46ab09ba 100644
--- a/pkgs/applications/misc/procmail/default.nix
+++ b/pkgs/applications/misc/procmail/default.nix
@@ -3,7 +3,14 @@
 stdenv.mkDerivation {
   name = "procmail-3.22";
 
-  patches = [ ./CVE-2014-3618.patch ];
+  patches = [
+    ./CVE-2014-3618.patch
+    (fetchurl {
+      url = https://sources.debian.org/data/main/p/procmail/3.22-26/debian/patches/30;
+      sha256 = "11zmz1bj0v9pay3ldmyyg7473b80h89gycrhndsgg9q50yhcqaaq";
+      name = "CVE-2017-16844";
+    })
+  ];
 
   # getline is defined differently in glibc now. So rename it.
   # Without the .PHONY target "make install" won't install anything on Darwin.