[arch-commits] Commit in fail2ban/trunk (PKGBUILD)

Jonas Witschel diabonas at gemini.archlinux.org
Mon Aug 9 16:19:39 UTC 2021


    Date: Monday, August 9, 2021 @ 16:19:38
  Author: diabonas
Revision: 997260

upgpkg: fail2ban 0.11.2-2: fix CVE-2021-32749 (FS#71524)

Apart from the actual fix (upstream commit
410a6ce5c80dd981c22752da034f2529b5eee844), another patch (upstream commit
747d4683221b5584f9663695fb48145689b42ceb) needs to be backported as well to
make the test suite pass.

Modified:
  fail2ban/trunk/PKGBUILD

----------+
 PKGBUILD |   13 ++++++++++---
 1 file changed, 10 insertions(+), 3 deletions(-)

Modified: PKGBUILD
===================================================================
--- PKGBUILD	2021-08-09 12:15:17 UTC (rev 997259)
+++ PKGBUILD	2021-08-09 16:19:38 UTC (rev 997260)
@@ -6,7 +6,7 @@
 
 pkgname=fail2ban
 pkgver=0.11.2
-pkgrel=1
+pkgrel=2
 pkgdesc='Bans IPs after too many failed authentication attempts'
 url='https://www.fail2ban.org/'
 license=('GPL')
@@ -17,13 +17,20 @@
 backup=(etc/fail2ban/fail2ban.conf
         etc/fail2ban/jail.conf
         etc/logrotate.d/fail2ban)
-source=("$pkgname-$pkgver.tar.gz::https://github.com/fail2ban/$pkgname/archive/$pkgver.tar.gz")
-sha512sums=('46b27abd947b00ea64106dbac563ef8afef38eec86684024d47d9a0e8c1969ff864ad6df7f4f8de2aa3eb1af6d769fb6796592d9f0e35521d5f95f17b8cade97')
+source=("$pkgname-$pkgver.tar.gz::https://github.com/fail2ban/$pkgname/archive/$pkgver.tar.gz"
+        "$pkgname-$pkgver_fix-test-suite.patch::https://github.com/fail2ban/fail2ban/commit/747d4683221b5584f9663695fb48145689b42ceb.patch"
+        "$pkgname-$pkgver_CVE-2021-32749.patch::https://github.com/fail2ban/fail2ban/commit/410a6ce5c80dd981c22752da034f2529b5eee844.patch")
+sha512sums=('46b27abd947b00ea64106dbac563ef8afef38eec86684024d47d9a0e8c1969ff864ad6df7f4f8de2aa3eb1af6d769fb6796592d9f0e35521d5f95f17b8cade97'
+            '5c0748c048031d88bc8fd2519bf99a35437b78a08fa942dbccdd2c0e4e9125560a847a8f1dc4414691c922dff558acff988492250be6a1f443a139b0e3762898'
+            '994de8a4fdd4535607cd1b21553266de015b57bdb7f84f931973cb4b3cadd93fb2fda2d402a4ecccf505dffabf146cd9eae2cd0b635c3cb3dfa2d312539d41be')
 
 prepare() {
   cd $pkgname-$pkgver
   sed -i 's|self.install_dir|"/usr/bin"|' setup.py
   sed -i 's/^before = paths-debian.conf/before = paths-arch.conf/' config/jail.conf
+
+  patch -Np1 -i "$srcdir/$pkgname-$pkgver_fix-test-suite.patch"
+  patch -Np1 -i "$srcdir/$pkgname-$pkgver_CVE-2021-32749.patch"
 }
 
 build() {



More information about the arch-commits mailing list