pcre: patch CVE-2016-1283

This fixes CVE-2016-1283, which allows remote attackers to cause
a denial of service (heap-based buffer overflow) or possibly
have unspecified other impact via a crafted regular expression.

https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-1283
This commit is contained in:
Micxjo Funkcio
2016-04-09 02:43:41 +03:00
committed by Nikolay Amiantov
parent c55cfe0cb3
commit 1e2fe7e07d
2 changed files with 21 additions and 2 deletions
+3 -2
View File
@@ -22,8 +22,9 @@ in stdenv.mkDerivation rec {
sha256 = "1pvra19ljkr5ky35y2iywjnsckrs9ch2anrf5b0dc91hw8v2vq5r";
};
patches =
[ ];
patches = [
./CVE-2016-1283.patch
];
outputs = [ "out" "doc" "man" ];