From feaf2e7bb61b6e731f4ac39ddff2c42444ba2af2 Mon Sep 17 00:00:00 2001 From: omni Date: Tue, 30 Nov 2021 21:01:27 +0000 Subject: [PATCH] community/qt5-qtwebengine: chromium security upgrade --- community/qt5-qtwebengine/APKBUILD | 32 +++++++++++++++++++++++++++--- 1 file changed, 29 insertions(+), 3 deletions(-) diff --git a/community/qt5-qtwebengine/APKBUILD b/community/qt5-qtwebengine/APKBUILD index 83c4abd6301..a36199fcb9f 100644 --- a/community/qt5-qtwebengine/APKBUILD +++ b/community/qt5-qtwebengine/APKBUILD @@ -3,11 +3,11 @@ # Maintainer: Bart Ribbers pkgname=qt5-qtwebengine pkgver=5.15.3_git20211112 -pkgrel=0 +pkgrel=1 # latest commit of 5.15 branch at pkgver date _commit="8cbd59dd304688401525bfd96d558e6e8b53da8d" # latest commit of 87-based branch of qtwebengine-chromium -_chromium_commit="d63517a0ebc38b298bd7e83f105e3c41ae455737" +_chromium_commit="b77d64307a47f35975082e662cc7786ba3d591d8" pkgdesc="Qt5 - QtWebEngine components" url="https://doc.qt.io/QT-5/qtwebengine-index.html" # ppc64le and s390x are not supported @@ -96,6 +96,32 @@ source="$pkgname-$pkgver.tar.gz::https://invent.kde.org/qt/qt/qtwebengine/-/arch builddir="$srcdir/qtwebengine-$_commit" # secfixes: +# 5.15.3_git20211112-r1: +# - CVE-2021-4079 +# - CVE-2021-4078 +# - CVE-2021-4062 +# - CVE-2021-4059 +# - CVE-2021-4058 +# - CVE-2021-4057 +# - CVE-2021-38022 +# - CVE-2021-38021 +# - CVE-2021-38019 +# - CVE-2021-38018 +# - CVE-2021-38017 +# - CVE-2021-38015 +# - CVE-2021-38012 +# - CVE-2021-38010 +# - CVE-2021-38009 +# - CVE-2021-38007 +# - CVE-2021-38005 +# - CVE-2021-38003 +# - CVE-2021-38001 +# - CVE-2021-37996 +# - CVE-2021-37993 +# - CVE-2021-37992 +# - CVE-2021-37989 +# - CVE-2021-37987 +# - CVE-2021-37984 # 5.15.3_git20211112-r0: # - CVE-2021-3541 # - CVE-2021-3517 @@ -255,7 +281,7 @@ package() { sha512sums=" 7650b5e62585ed6b59534868ad8dc4fff33cb91ff590848e3f2636ee5ba9b0b43e64cf59c4610cae70e54fcfd1a4c640f855e34d2ec7b55867f2aa3934db0783 qt5-qtwebengine-5.15.3_git20211112.tar.gz -23d29d14ad618be03932212675ebcb1e888bfdb3381e1afe79be071d330aa2e203a266a1d36d4237342f6d91ee62f6933c73c7ba441b97a89bbd7ff1440821e5 qtwebengine-chromium-d63517a0ebc38b298bd7e83f105e3c41ae455737.tar.gz +bb49f08e19a1a492630571aae2e4a4bfafee9f83191ae124b45db47db04d8d660e5e923007fa2454d58745dfebcea846783b43d02e7f42ecde091fc24822e8bc qtwebengine-chromium-b77d64307a47f35975082e662cc7786ba3d591d8.tar.gz 20da988bc9549df55c17ce2968fa2231176c43d5c7da39dbc8bb45184a60e6db6e00d4d33d5268ea50a58d7e845d012e0e26487ff8dd0317b1b767be6dd1b7b9 0001-pretend-to-stay-at-5.15.3.patch 2438ac56b1c819d1f6634814b148919e15d7d4e41a64fedab38358d794e8286a1eebaaa8579661e8e75fbc321f4d16c47b1838219cb0aadc307c4c8dd97e91b1 0010-chromium-musl-Match-syscalls-to-match-musl.patch 555ad1df44f2317e335d23c47626b788ec91b43b05ff694f4281331bc9cc7dd5255aeddd7d7bb277c51d69b9ff6668362ec3ea5d5ff873ee64a9af32fe665a4a musl-hacks.patch