From 0d93799dfa3490bd4a7872841616740da70abc19 Mon Sep 17 00:00:00 2001 From: Kamil Dudka Date: Fri, 13 Apr 2018 10:36:46 +0200 Subject: [PATCH] Resolves: CVE-2018-1000168 - update to the latest upstream release (1.32.0) --- nghttp2.spec | 7 +++++-- sources | 2 +- 2 files changed, 6 insertions(+), 3 deletions(-) diff --git a/nghttp2.spec b/nghttp2.spec index 0722338..9977649 100644 --- a/nghttp2.spec +++ b/nghttp2.spec @@ -1,7 +1,7 @@ Summary: Experimental HTTP/2 client, server and proxy Name: nghttp2 -Version: 1.31.0 -Release: 2%{?dist} +Version: 1.31.1 +Release: 1%{?dist} License: MIT Group: Applications/Internet URL: https://nghttp2.org/ @@ -114,6 +114,9 @@ make %{?_smp_mflags} check %changelog +* Fri Apr 13 2018 Kamil Dudka 1.31.1-1 +- update to the latest upstream release (fixes CVE-2018-1000168) + * Thu Mar 15 2018 Kamil Dudka 1.31.0-2 - make fetch-ocsp-response use Python 3 diff --git a/sources b/sources index 8f941a0..5f11bcd 100644 --- a/sources +++ b/sources @@ -1 +1 @@ -SHA512 (nghttp2-1.31.0.tar.xz) = 00342b0517eb9e1044eced4649488d7ad35694e0a1303c4cba2d2be897fb86c5c70f1a5a157799d5c0cf448a6b983f2a2a57ee2bdb5ec762876647f9303446ca +SHA512 (nghttp2-1.31.1.tar.xz) = e0f5b345b6d794b21fa04bc0c7125f24a877074538ad746451d4a293eb22f1afb9e0e619c69b84f0fc2142a925044a19976af4cffb8426358e95e7d9715d5a4f