From nobody Wed Oct 02 09:10:31 2024 X-Original-To: dev-commits-ports-main@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4XJTYM6yQ3z5YDqW; Wed, 02 Oct 2024 09:10:31 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "R11" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4XJTYM6F9Jz4qB7; Wed, 2 Oct 2024 09:10:31 +0000 (UTC) (envelope-from git@FreeBSD.org) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1727860231; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=tnEMNmD23vUQ4i6ybER31K+xzhtFVH+iv6FCLP8Gu6I=; b=cxji2ZpUSNBBSPq0N7OJilxPQZeZDI2CwbJ0hgwFoCqcC/c64x2dhryKW6n+b8bGPGQXX4 Ac0rCtshuTm6aPkCQKd+ks20hOdVoNhtW6ZtXasM6TqRIgKiKbF2hTwsdPD+CU3qZ9b4tX 4HFtgqysekFlTGhwS2Ngbs/3cDFFLJDE8hll08XnypHvk8cejXJ2HRH3qs+QR1VALa6sp4 R8Nsj+Sr3f+sPke7lOxR3nrKxLfXP0Dcq+ggHFDiLLtkqftfzPOd2+V3arI2VgpeWyMhTy YHrV9eTnNRJfcDuhEtcu1WJ214QAAsNQhUqRM6kBEdmFV56zMJPlBbmIu4OKLw== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1727860231; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=tnEMNmD23vUQ4i6ybER31K+xzhtFVH+iv6FCLP8Gu6I=; b=oqETWP6s7NFg9CscuJ8auQqbYIz7qNQDdswVTcGk1LpRzUXza7OMCesIEJ1yTQWYzpzOIn Bs5aqMgRUWgqR3FCh9rMjcVRcbiL9qEplOVQpInmtdU+BfNhTG3GsqEqXDeDRxv0MT9UDB Utv17HfFpCkUy4jaC0cjuq7AgUp9VIu/tU8q2hOS8vsQeWrUAXBy09uec7ZVe/ln+5LuBa lVkYoGIX/SSP/VaLihmpDc6vfCknxggY2wURpFbDAzsmP5Qj5aJ8lv+47kmmfQz0R8a7bR ARVeXYzqKg++CL6B2iIxnvFINc9LGs65L+umJQBCHYCH9zbyVoc2xog/fz5aRw== ARC-Authentication-Results: i=1; mx1.freebsd.org; none ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1727860231; a=rsa-sha256; cv=none; b=JtT1ZZdE/hKInGuvCyzL7BIsYteW7tq5ntMjjK3oRF54Oyrb5+YOsqR5G1HWqzaZzCsTCt n07cO3hXi3pAe2tjowgu7w2ENY9RSgmIVvEtpPAff0vTDCp7cAwZ6vFoG3seBg/hBhOZcO 7aDItFWFoFZkaz1ZFOVeXfyRF0X+z7Og/Y9R05p2qZ5KXTv3vLH/8SKOiFy5HiOFL8R5Qt XhJ3rhtdXmNljNijc4CjFultBz/pQYDmQuACOOyaVbksj6WkQji3Tv2ag6gfs0uaIyjuuF D3P/sjCAmajJ0M6GkJGZ8T3uUWcPCNQ/zM6lG1w05K5eEmf/yJHKzi+4ftff3g== Received: from gitrepo.freebsd.org (gitrepo.freebsd.org [IPv6:2610:1c1:1:6068::e6a:5]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 4XJTYM5NYkz1DGK; Wed, 2 Oct 2024 09:10:31 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from gitrepo.freebsd.org ([127.0.1.44]) by gitrepo.freebsd.org (8.18.1/8.18.1) with ESMTP id 4929AVCJ064529; Wed, 2 Oct 2024 09:10:31 GMT (envelope-from git@gitrepo.freebsd.org) Received: (from git@localhost) by gitrepo.freebsd.org (8.18.1/8.18.1/Submit) id 4929AViA064526; Wed, 2 Oct 2024 09:10:31 GMT (envelope-from git) Date: Wed, 2 Oct 2024 09:10:31 GMT Message-Id: <202410020910.4929AViA064526@gitrepo.freebsd.org> To: ports-committers@FreeBSD.org, dev-commits-ports-all@FreeBSD.org, dev-commits-ports-main@FreeBSD.org From: Tijl Coosemans Subject: git: 7e9c3e23fdb5 - main - print/cups-filters: Fix cups-browsed RCE List-Id: Commits to the main branch of the FreeBSD ports repository List-Archive: https://lists.freebsd.org/archives/dev-commits-ports-main List-Help: List-Post: List-Subscribe: List-Unsubscribe: X-BeenThere: dev-commits-ports-main@freebsd.org Sender: owner-dev-commits-ports-main@FreeBSD.org MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 8bit X-Git-Committer: tijl X-Git-Repository: ports X-Git-Refname: refs/heads/main X-Git-Reftype: branch X-Git-Commit: 7e9c3e23fdb5cea9085aca3f235701278ffbe9fe Auto-Submitted: auto-generated The branch main has been updated by tijl: URL: https://cgit.FreeBSD.org/ports/commit/?id=7e9c3e23fdb5cea9085aca3f235701278ffbe9fe commit 7e9c3e23fdb5cea9085aca3f235701278ffbe9fe Author: Tijl Coosemans AuthorDate: 2024-10-02 08:39:04 +0000 Commit: Tijl Coosemans CommitDate: 2024-10-02 09:09:28 +0000 print/cups-filters: Fix cups-browsed RCE Add upstream patches to fix recent vulnerabilities. Security: CVE-2024-47076 Security: CVE-2024-47176 --- print/cups-filters/Makefile | 19 ++++++++++++++++--- print/cups-filters/distinfo | 24 +++++++++++++++++++++++- 2 files changed, 39 insertions(+), 4 deletions(-) diff --git a/print/cups-filters/Makefile b/print/cups-filters/Makefile index 994fa200b6d5..dae388d7b188 100644 --- a/print/cups-filters/Makefile +++ b/print/cups-filters/Makefile @@ -1,9 +1,22 @@ PORTNAME= cups-filters PORTVERSION= 1.28.17 -PORTREVISION= 5 +PORTREVISION= 6 CATEGORIES= print MASTER_SITES= https://github.com/OpenPrinting/cups-filters/releases/download/${DISTVERSION}/ +PATCH_SITES= https://github.com/OpenPrinting/cups-filters/commit/ +PATCHFILES= 9799398713b941557642d0b2bdbef360837ece0c.diff:-p1 \ + 93e60d3df358c0ae6f3dba79e1c9684657683d89.diff:-p1 \ + d72184e725591f10e2b404b36fe3bf5bc304a299.diff:-p1 \ + e25fd59a7daed00b6a9f235bd5818116fca28e30.diff:-p1 \ + 0cce0968980e8fdd9053cba436a66246b2303a84.diff:-p1 \ + 7b191cb1d4d0fc97ccbbd0fe43eec2544fe0c11e.diff:-p1 \ + 7992eb7c6e4abeffd766f54c98cbb2cbb45c5c04.diff:-p1 \ + 770ec883e68e505c1d1856a42b78f9323dc326a6.diff:-p1 \ + 2076627d33477212f21352ad39e9d305adb63af3.diff:-p1 \ + 10fb02eaaee52e0be9b16917b38aa8ec5bddd87f.diff:-p1 \ + b7461ec2a8d1f2aa627b24e01e118ec4cca78ec0.diff:-p1 + MAINTAINER= tijl@FreeBSD.org COMMENT= Additional backends, filters and other software for CUPS WWW= https://wiki.linuxfoundation.org/openprinting/cups-filters @@ -18,8 +31,8 @@ LIB_DEPENDS= liblcms2.so:graphics/lcms2 \ libfreetype.so:print/freetype2 \ libfontconfig.so:x11-fonts/fontconfig -USES= compiler:c++11-lib cpe gmake gnome iconv libtool localbase \ - pkgconfig shebangfix tar:xz +USES= autoreconf compiler:c++11-lib cpe gettext-tools gmake gnome \ + iconv libtool localbase pkgconfig shebangfix tar:xz USE_GNOME= glib20 USE_LDCONFIG= yes USE_RC_SUBR= cups_browsed diff --git a/print/cups-filters/distinfo b/print/cups-filters/distinfo index 86a438c2295d..a22a9c9614d5 100644 --- a/print/cups-filters/distinfo +++ b/print/cups-filters/distinfo @@ -1,3 +1,25 @@ -TIMESTAMP = 1700233249 +TIMESTAMP = 1727810333 SHA256 (cups-filters-1.28.17.tar.xz) = 270a3752a960368aa99d431fb5d34f4039b2ac943c576d840612d1d8185c9bb9 SIZE (cups-filters-1.28.17.tar.xz) = 1516052 +SHA256 (9799398713b941557642d0b2bdbef360837ece0c.diff) = c9a061b3c415ff547161360c4fc90e0584c65efbfea90564ec34eb0e2edddf77 +SIZE (9799398713b941557642d0b2bdbef360837ece0c.diff) = 552 +SHA256 (93e60d3df358c0ae6f3dba79e1c9684657683d89.diff) = 445ca6b24390711a2bf7c1056d93628930accbfd974d1533c9b915efd455ad89 +SIZE (93e60d3df358c0ae6f3dba79e1c9684657683d89.diff) = 5272 +SHA256 (d72184e725591f10e2b404b36fe3bf5bc304a299.diff) = 53b883e7b29428cb6dd405143df9abb888ef03573ea2e063cd92d55ca821c3ce +SIZE (d72184e725591f10e2b404b36fe3bf5bc304a299.diff) = 1321 +SHA256 (e25fd59a7daed00b6a9f235bd5818116fca28e30.diff) = 38a08df9c764cac3cdaaf7de24d41663bb8f538c07fbd92412bc06627c20139e +SIZE (e25fd59a7daed00b6a9f235bd5818116fca28e30.diff) = 1902 +SHA256 (0cce0968980e8fdd9053cba436a66246b2303a84.diff) = 0d3a162dfa47c3fcde2524edaabf082f713eba16c48c8ed8b6bba69a80d5b7cd +SIZE (0cce0968980e8fdd9053cba436a66246b2303a84.diff) = 697 +SHA256 (7b191cb1d4d0fc97ccbbd0fe43eec2544fe0c11e.diff) = 662629140a354fc2613be9e8cc72cfb2010fc063a72c0262c62625a281db5a68 +SIZE (7b191cb1d4d0fc97ccbbd0fe43eec2544fe0c11e.diff) = 2551 +SHA256 (7992eb7c6e4abeffd766f54c98cbb2cbb45c5c04.diff) = 983767662fe249e0968ab647e2c59ced4de9f8d96572484e6957656d000e85e9 +SIZE (7992eb7c6e4abeffd766f54c98cbb2cbb45c5c04.diff) = 559 +SHA256 (770ec883e68e505c1d1856a42b78f9323dc326a6.diff) = ffbe02cdb2c4c148a6bb3684c1b08c5c5dcf3372201e0c01729d667e1958a211 +SIZE (770ec883e68e505c1d1856a42b78f9323dc326a6.diff) = 1424 +SHA256 (2076627d33477212f21352ad39e9d305adb63af3.diff) = bfef9f5571da6a05ca0588b42ce634156595badcba66c3eba9de5c4b0cce7ead +SIZE (2076627d33477212f21352ad39e9d305adb63af3.diff) = 561 +SHA256 (10fb02eaaee52e0be9b16917b38aa8ec5bddd87f.diff) = 6e16e9f046a8bfcbd1552d90e5ef1573f25ec3d39d0ef8330da89d32e9e4bc13 +SIZE (10fb02eaaee52e0be9b16917b38aa8ec5bddd87f.diff) = 460 +SHA256 (b7461ec2a8d1f2aa627b24e01e118ec4cca78ec0.diff) = 9d6d64a20ee0859767ce48df665b429a22a42e213c1aeb2480adeb68bcd4b334 +SIZE (b7461ec2a8d1f2aa627b24e01e118ec4cca78ec0.diff) = 700