Security fix for CVE-2014-8132.

This commit is contained in:
Andreas Schneider 2014-12-19 17:06:57 +01:00
parent 1a2c3b4236
commit 4a4b5b5ae5
3 changed files with 13 additions and 5 deletions

1
.gitignore vendored
View File

@ -17,3 +17,4 @@ libssh-0.4.4.tar.gz.asc
/libssh-0.6.0.tar.xz
/libssh-0.6.1.tar.xz
/libssh-0.6.3.tar.xz
/libssh-0.6.4.tar.gz

View File

@ -1,5 +1,5 @@
Name: libssh
Version: 0.6.3
Version: 0.6.4
Release: 1%{?dist}
Summary: A library implementing the SSH protocol
License: LGPLv2+
@ -7,11 +7,12 @@ URL: http://www.libssh.org
Group: System Environment/Libraries
BuildRoot: %{_tmppath}/%{name}-%{version}-%{release}-root-%(%{__id_u} -n)
Source0: https://red.libssh.org/attachments/download/87/libssh-0.6.3.tar.xz
Source0: https://red.libssh.org/attachments/download/107/libssh-0.6.4.tar.gz
BuildRequires: cmake
BuildRequires: doxygen
BuildRequires: openssl-devel
BuildRequires: pkgconfig
BuildRequires: zlib-devel
%description
@ -26,6 +27,8 @@ third-party programs others than libcrypto (from openssl).
Summary: Development files for %{name}
Group: Development/Libraries
Requires: %{name}%{?_isa} = %{version}-%{release}
Requires: pkgconfig
Requires: cmake
%description devel
The %{name}-devel package contains libraries and header files for developing
@ -75,14 +78,18 @@ rm -rf %{buildroot}
%{_includedir}/libssh/server.h
%{_includedir}/libssh/sftp.h
%{_includedir}/libssh/ssh2.h
%{_libdir}/cmake/libssh-config-version.cmake
%{_libdir}/cmake/libssh-config.cmake
%dir %{_libdir}/cmake/libssh
%{_libdir}/cmake/libssh/libssh-config-version.cmake
%{_libdir}/cmake/libssh/libssh-config.cmake
%{_libdir}/pkgconfig/libssh.pc
%{_libdir}/pkgconfig/libssh_threads.pc
%{_libdir}/libssh.so
%{_libdir}/libssh_threads.so
%changelog
* Fri Dec 19 2014 - Andreas Schneider <asn@redhat.com> - 0.6.4-1
- Security fix for CVE-2014-8132.
* Tue Mar 04 2014 - Andreas Schneider <asn@redhat.com> - 0.6.3-1
- Fix CVE-2014-0017.

View File

@ -1 +1 @@
66cf16e77f60913b4d54f18c92cdbf71 libssh-0.6.3.tar.xz
5d092f911492e3ee4cd7b473f09a0196 libssh-0.6.4.tar.gz