update to version 2.3.0
This commit is contained in:
parent
6bf22ec138
commit
590e6b1310
@ -1,27 +0,0 @@
|
|||||||
From fdf72c8bded8d24cfa0608b8e97f2eed210a920e Mon Sep 17 00:00:00 2001
|
|
||||||
From: Kevin Backhouse <kevinbackhouse@github.com>
|
|
||||||
Date: Wed, 27 Sep 2023 20:22:43 +0100
|
|
||||||
Subject: [PATCH] Check that the array index isn't negative. This fixes
|
|
||||||
CVE-2023-43641.
|
|
||||||
|
|
||||||
Signed-off-by: Kevin Backhouse <kevinbackhouse@github.com>
|
|
||||||
---
|
|
||||||
cd.c | 2 +-
|
|
||||||
1 file changed, 1 insertion(+), 1 deletion(-)
|
|
||||||
|
|
||||||
diff --git a/cd.c b/cd.c
|
|
||||||
index cf77a18..4bbea19 100644
|
|
||||||
--- a/cd.c
|
|
||||||
+++ b/cd.c
|
|
||||||
@@ -339,7 +339,7 @@ track_get_rem(const Track* track)
|
|
||||||
|
|
||||||
void track_set_index(Track *track, int i, long ind)
|
|
||||||
{
|
|
||||||
- if (i > MAXINDEX) {
|
|
||||||
+ if (i < 0 || i > MAXINDEX) {
|
|
||||||
fprintf(stderr, "too many indexes\n");
|
|
||||||
return;
|
|
||||||
}
|
|
||||||
--
|
|
||||||
2.41.0.windows.3
|
|
||||||
|
|
||||||
Binary file not shown.
10
libcue.spec
10
libcue.spec
@ -1,13 +1,12 @@
|
|||||||
Name: libcue
|
Name: libcue
|
||||||
Version: 2.2.1
|
Version: 2.3.0
|
||||||
Release: 2
|
Release: 1
|
||||||
Summary: Cue sheet parser library
|
Summary: Cue sheet parser library
|
||||||
|
|
||||||
License: GPLv2 and BSD
|
License: GPLv2 and BSD
|
||||||
URL: https://github.com/lipnitsk/%{name}
|
URL: https://github.com/lipnitsk/%{name}
|
||||||
Source0: https://github.com/lipnitsk/%{name}/archive/v%{version}/%{name}-%{version}.tar.gz
|
Source0: %{url}/archive/refs/tags/v%{version}.tar.gz
|
||||||
|
|
||||||
Patch0: backport-CVE-2023-43641.patch
|
|
||||||
|
|
||||||
BuildRequires: bison
|
BuildRequires: bison
|
||||||
BuildRequires: cmake
|
BuildRequires: cmake
|
||||||
@ -63,6 +62,9 @@ make test
|
|||||||
%{_libdir}/pkgconfig/%{name}.pc
|
%{_libdir}/pkgconfig/%{name}.pc
|
||||||
|
|
||||||
%changelog
|
%changelog
|
||||||
|
* Thu Dec 28 2023 Paul Thomas <paulthomas100199@gmail.com> - 2.3.0-1
|
||||||
|
- update to version 2.3.0
|
||||||
|
|
||||||
* Tue Oct 10 2023 liningjie <liningjie@xfusion.com> - 2.2.1-2
|
* Tue Oct 10 2023 liningjie <liningjie@xfusion.com> - 2.2.1-2
|
||||||
- Fix CVE-2023-43641
|
- Fix CVE-2023-43641
|
||||||
|
|
||||||
|
|||||||
BIN
v2.3.0.tar.gz
Normal file
BIN
v2.3.0.tar.gz
Normal file
Binary file not shown.
Loading…
x
Reference in New Issue
Block a user