main/nghttp2: security upgrade to 1.57.0

CVE-2023-44487
This commit is contained in:
Celeste 2023-10-10 14:41:02 +00:00 committed by J0WI
parent fdfc0002bb
commit 01447bc453

View File

@ -1,7 +1,7 @@
# Contributor: Natanael Copa <ncopa@alpinelinux.org>
# Maintainer: Francesco Colista <fcolista@alpinelinux.org>
pkgname=nghttp2
pkgver=1.56.0
pkgver=1.57.0
pkgrel=0
pkgdesc="HTTP/2 C client, server and proxy"
url="https://nghttp2.org"
@ -13,6 +13,8 @@ subpackages="$pkgname-static $pkgname-doc $pkgname-dev $pkgname-libs"
source="https://github.com/nghttp2/nghttp2/releases/download/v$pkgver/nghttp2-$pkgver.tar.xz"
# secfixes:
# 1.57.0-r0:
# - CVE-2023-44487
# 1.41.0-r0:
# - CVE-2020-11080
# 1.39.2-r0:
@ -71,5 +73,5 @@ package() {
}
sha512sums="
9754bd637705400cc4c3488d6dd1fc217c765a0925d2a5edfd83d380db0ad9e9a05974afa4fcda40b07287e8e8261b9d8009892cb1c2cc417ce4232a01b0011d nghttp2-1.56.0.tar.xz
d914eb48afd1ea182c1b2a454bf5e7963a7e28165f1d6d29bb83dd61a1b611c8c469e72a7a22daf23b8037f6e5ae9d4e791150b7d135746c1a5ec71ceb777f92 nghttp2-1.57.0.tar.xz
"