libxml2: update to 2.9.13
authorMichael Heimpold <mhei@heimpold.de>
Tue, 15 Mar 2022 20:24:32 +0000 (21:24 +0100)
committerŠimon Bořek <simon.borek@nic.cz>
Thu, 2 Jun 2022 13:27:22 +0000 (15:27 +0200)
This fixes CVE-2022-23308.

Also switch to GNOME as download source and xz tarball.

Signed-off-by: Michael Heimpold <mhei@heimpold.de>
(cherry picked from commit 81fd836f97aee93c8cfcb4ebbf901c2a99c3525c)
Signed-off-by: Šimon Bořek <simon.borek@nic.cz>
libs/libxml2/Makefile

index 15fc84f431dbbb32687af06bbc3ede297e93c60a..bb6bee19b94069032b709cf062759f9dd7f7f3ab 100644 (file)
@@ -8,12 +8,12 @@
 include $(TOPDIR)/rules.mk
 
 PKG_NAME:=libxml2
-PKG_VERSION:=2.9.12
+PKG_VERSION:=2.9.13
 PKG_RELEASE:=1
 
-PKG_SOURCE:=$(PKG_NAME)-$(PKG_VERSION).tar.gz
-PKG_SOURCE_URL:=http://xmlsoft.org/sources/
-PKG_HASH:=c8d6681e38c56f172892c85ddc0852e1fd4b53b4209e7f4ebf17f7e2eae71d92
+PKG_SOURCE:=$(PKG_NAME)-$(PKG_VERSION).tar.xz
+PKG_SOURCE_URL:=@GNOME/libxml2/$(basename $(PKG_VERSION))
+PKG_HASH:=276130602d12fe484ecc03447ee5e759d0465558fbc9d6bd144e3745306ebf0e
 
 PKG_LICENSE:=MIT
 PKG_LICENSE_FILES:=COPYING