diff options
author | Bermond | 2016-05-07 20:24:09 -0300 |
---|---|---|
committer | Bermond | 2016-05-07 20:24:09 -0300 |
commit | 10830c25f3e76770df7d0f50f7ffdaded9c30ac5 (patch) | |
tree | e128a0f7a0e89f93b120f4a83d97ecc377ace74d /PKGBUILD | |
parent | 5173f7396fa6a5cb80ac957b9d1430ed4527da36 (diff) | |
download | aur-10830c25f3e76770df7d0f50f7ffdaded9c30ac5.tar.gz |
Security fix for discovered upstream vulnerability
More details in:
https://www.imagemagick.org/discourse-server/viewtopic.php?f=4&t=29588
https://imagetragick.com/
Diffstat (limited to 'PKGBUILD')
-rwxr-xr-x | PKGBUILD | 15 |
1 files changed, 14 insertions, 1 deletions
@@ -18,7 +18,7 @@ _srcname="ImageMagick" _srcver="7.0.1-1" pkgname=imagemagick-full pkgver="$(echo ${_srcver} | tr '-' '.')" -pkgrel=1 +pkgrel=2 pkgdesc="An image viewing/manipulation program (Q32 HDRI with all libs and features)" arch=('i686' 'x86_64') url="http://www.imagemagick.org/" @@ -117,4 +117,17 @@ package() { install -D -m644 LICENSE "${pkgdir}/usr/share/licenses/${pkgname}/LICENSE" install -D -m644 NOTICE "${pkgdir}/usr/share/licenses/${pkgname}/NOTICE" + + # Security fix + # https://www.imagemagick.org/discourse-server/viewtopic.php?f=4&t=29588 + # https://www.imagetragick.com/ + sed -i '65i\ \<policy domain="coder" rights="none" pattern="EPHEMERAL" />' "${pkgdir}/etc/ImageMagick-${pkgver%%.*}/policy.xml" + sed -i '66i\ \<policy domain="coder" rights="none" pattern="URL" />' "${pkgdir}/etc/ImageMagick-${pkgver%%.*}/policy.xml" + sed -i '67i\ \<policy domain="coder" rights="none" pattern="HTTPS" />' "${pkgdir}/etc/ImageMagick-${pkgver%%.*}/policy.xml" + sed -i '68i\ \<policy domain="coder" rights="none" pattern="MVG" />' "${pkgdir}/etc/ImageMagick-${pkgver%%.*}/policy.xml" + sed -i '69i\ \<policy domain="coder" rights="none" pattern="MSL" />' "${pkgdir}/etc/ImageMagick-${pkgver%%.*}/policy.xml" + sed -i '70i\ \<policy domain="coder" rights="none" pattern="TEXT" />' "${pkgdir}/etc/ImageMagick-${pkgver%%.*}/policy.xml" + sed -i '71i\ \<policy domain="coder" rights="none" pattern="SHOW" />' "${pkgdir}/etc/ImageMagick-${pkgver%%.*}/policy.xml" + sed -i '72i\ \<policy domain="coder" rights="none" pattern="WIN" />' "${pkgdir}/etc/ImageMagick-${pkgver%%.*}/policy.xml" + sed -i '73i\ \<policy domain="coder" rights="none" pattern="PLT" />' "${pkgdir}/etc/ImageMagick-${pkgver%%.*}/policy.xml" } |