summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorJaka Kranjc2007-01-16 19:24:37 +0100
committerJaka Kranjc2007-01-16 19:25:55 +0100
commitac44133300a8e38b85b40ae82b48e3f20bb64236 (patch)
tree043b5202bdf3ff64c5c88d6c8280751679d3d4b3
parent96b276fea5523367f040a990a21192b0df0916d9 (diff)
security update 0.64 of mpg123 (DOS possibility), switch to proper upstream sig handling
Conflicts: audio-players/mpg123/DETAILS audio-players/mpg123/HISTORY
-rwxr-xr-xaudio-players/mpg123/DETAILS11
-rw-r--r--audio-players/mpg123/HISTORY5
2 files changed, 12 insertions, 4 deletions
diff --git a/audio-players/mpg123/DETAILS b/audio-players/mpg123/DETAILS
index 09fc929ef2..9cad8454f7 100755
--- a/audio-players/mpg123/DETAILS
+++ b/audio-players/mpg123/DETAILS
@@ -1,12 +1,15 @@
SPELL=mpg123
- VERSION=0.60
+ VERSION=0.64
SOURCE=$SPELL-$VERSION.tar.bz2
SOURCE_URL[0]=${SOURCEFORGE_URL}/${SPELL}/${SOURCE}
+ SOURCE2=$SOURCE.sig
+ SOURCE2_URL=$SOURCE_URL.sig
SOURCE_DIRECTORY=$BUILD_DIRECTORY/$SPELL-$VERSION
- SOURCE_GPG=thomas.orgis.gpg:${SOURCE}.sig
- WEB_SITE=http://www.mpg123.org/
+ SOURCE_GPG=thomas.orgis.gpg:${SOURCE}.sig:UPSTREAM_KEY
+ WEB_SITE=http://mpg123.org/
ENTERED=20011104
- PATCHLEVEL=1
+ PATCHLEVEL=0
+ SECURITY_PATCH=1
LICENSE[0]=LGPL
SHORT="the fast console MPEG audio player"
cat << EOF
diff --git a/audio-players/mpg123/HISTORY b/audio-players/mpg123/HISTORY
index 746638d232..60dd188b6f 100644
--- a/audio-players/mpg123/HISTORY
+++ b/audio-players/mpg123/HISTORY
@@ -1,3 +1,8 @@
+2007-01-16 Thomas Orgis <sobukus@sourcemage.org>
+ * *.sig: removed
+ * DETAILS: version bump to security update 0.64, use upstream sig
+ (objective verification of upstream key is a bit tricky... it's _me_)
+
2006-09-21 Juuso Alasuutari <iuso@sourcemage.org>
* PROVIDES: [automated] Fixed invalid entries.