summarylogtreecommitdiffstats
diff options
context:
space:
mode:
authorTaijian2020-03-07 19:17:58 +0100
committerTaijian2020-03-07 19:17:58 +0100
commita8f08600c950b26e7a3a68ec2e62ce61867a55ef (patch)
tree62a03f8b3924b0f9320e35010da6684789f4975b
parent3364c67f3cf62fc369c4b876f7123f153063ac9d (diff)
downloadaur-a8f08600c950b26e7a3a68ec2e62ce61867a55ef.tar.gz
add warning about security issues to .install file
-rw-r--r--.SRCINFO3
-rw-r--r--PKGBUILD5
-rw-r--r--jasper.install9
3 files changed, 14 insertions, 3 deletions
diff --git a/.SRCINFO b/.SRCINFO
index 6cae51808f0a..0fbbc6437fa0 100644
--- a/.SRCINFO
+++ b/.SRCINFO
@@ -1,8 +1,9 @@
pkgbase = lib32-jasper
pkgdesc = A software-based implementation of the codec specified in the emerging JPEG-2000 Part-1 standard (32-bit)
pkgver = 2.0.16
- pkgrel = 2
+ pkgrel = 3
url = http://www.ece.uvic.ca/~mdadams/jasper/
+ install = jasper.install
arch = x86_64
license = custom:JasPer2.0
makedepends = lib32-freeglut
diff --git a/PKGBUILD b/PKGBUILD
index be2c9ac4b917..5612beba0a9f 100644
--- a/PKGBUILD
+++ b/PKGBUILD
@@ -5,7 +5,7 @@
_pkgname=jasper
pkgname=lib32-${_pkgname}
pkgver=2.0.16
-pkgrel=2
+pkgrel=3
pkgdesc="A software-based implementation of the codec specified in the emerging JPEG-2000 Part-1 standard (32-bit)"
arch=('x86_64')
url="http://www.ece.uvic.ca/~mdadams/jasper/"
@@ -19,7 +19,8 @@ options=('staticlibs')
source=(${_pkgname}-${pkgver}.tar.gz::https://github.com/mdadams/jasper/archive/version-${pkgver}.tar.gz
jasper-1.900.1-fix-filename-buffer-overflow.patch)
sha512sums=('b3bca227f833567c9061c4a29c0599784ed6a131b5cceddfd1696542d19add821eda445ce6d83782b454b266723b24d0f028cbc644a25c0e3a75304e615b34ee'
- 'b8d798bf75523c5db263783e42c653dd0cb03deee90be32eddf878bb6893cca02abadd94de6a8c737a5b7fe76f7fb245979f010765e6a95fc520b215e3a2a7f0')
+ 'b8d798bf75523c5db263783e42c653dd0cb03deee90be32eddf878bb6893cca02abadd94de6a8c737a5b7fe76f7fb245979f010765e6a95fc520b215e3a2a7f0')
+install=$_pkgname.install
prepare() {
cd ${_pkgname}-version-${pkgver}
diff --git a/jasper.install b/jasper.install
new file mode 100644
index 000000000000..a568eddced4c
--- /dev/null
+++ b/jasper.install
@@ -0,0 +1,9 @@
+pre_install() {
+ echo '-----------------------------------------------------------------------------'
+ echo ' WARNING! '
+ echo ' jasper is unmaintened software that has open CVEs unlikely to ever be fixed!'
+ echo ' only use this software if you really, really know what you are doing! '
+ echo ' YOU HAVE BEEN WARNED! '
+ echo '-----------------------------------------------------------------------------'
+}
+