kumquat-buildroot/package/zchunk/zchunk.mk
Fabrice Fontaine 8716942ca6 package/zchunk: security bump to version 1.3.2
- Drop patches (already in version)
- tests can be disabled since version 1.2.3 and
  e2e3d6b14e
- docs can be disabled since version 1.2.3 and
  af6c10e8be
- Fix CVE-2023-46228: zchunk before 1.3.2 has multiple integer overflows
  via malformed zchunk files to lib/comp/comp.c, lib/comp/zstd/zstd.c,
  lib/dl/multipart.c, or lib/header.c.

https://github.com/zchunk/zchunk/compare/1.2.2...1.3.2

Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com>
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr>
2023-10-28 22:49:02 +02:00

42 lines
1.1 KiB
Makefile

################################################################################
#
# zchunk
#
################################################################################
ZCHUNK_VERSION = 1.3.2
ZCHUNK_SITE = $(call github,zchunk,zchunk,$(ZCHUNK_VERSION))
ZCHUNK_LICENSE = BSD-2-Clause
ZCHUNK_LICENSE_FILES = LICENSE
ZCHUNK_CPE_ID_VENDOR = zchunk
ZCHUNK_INSTALL_STAGING = YES
ZCHUNK_CONF_OPTS = -Ddocs=false -Dtests=false
ifeq ($(BR2_PACKAGE_ARGP_STANDALONE),y)
ZCHUNK_DEPENDENCIES += argp-standalone $(TARGET_NLS_DEPENDENCIES)
ZCHUNK_LDFLAGS += $(TARGET_LDFLAGS) $(TARGET_NLS_LIBS)
endif
ifeq ($(BR2_PACKAGE_LIBCURL),y)
ZCHUNK_DEPENDENCIES += libcurl
ZCHUNK_CONF_OPTS += -Dwith-curl=enabled
else
ZCHUNK_CONF_OPTS += -Dwith-curl=disabled
endif
ifeq ($(BR2_PACKAGE_OPENSSL),y)
ZCHUNK_DEPENDENCIES += openssl
ZCHUNK_CONF_OPTS += -Dwith-openssl=enabled
else
ZCHUNK_CONF_OPTS += -Dwith-openssl=disabled
endif
ifeq ($(BR2_PACKAGE_ZSTD),y)
ZCHUNK_DEPENDENCIES += zstd
ZCHUNK_CONF_OPTS += -Dwith-zstd=enabled
else
ZCHUNK_CONF_OPTS += -Dwith-zstd=disabled
endif
$(eval $(meson-package))