Nam Nguyen writes:

> tj@ had a diff to backport CVE fixes for audio/sox. Here, I tweaked it
> so the patches apply cleanly.

ping

>
> This diff:
> - adds devel/quirks entry (so, apply the diff in /usr/ports)
> - bumps minor to 4.1 due to addition of symbols
>   check_sym output: https://namtsui.com/public/sox.txt
> - moves to CONFIGURE_STYLE autoreconf because Makefile.am is patched
> - backports fixes for CVEs since 2017
> - backported fixes can be viewed online:
>   https://namtsui.com/public/sox_cve.txt  
> - tweaks from sthen@: BUILD_DEPENDS MODGNU_AUTO{CONF,MAKE}_DEPENDS and
>   libtool not needed because autoreconf already adds them.

Two fresh diffs are attached incorporating sthen@'s advice (since
-stable is problematic when bumping SHARED_LIBS and consumers don't use
any of the new symbols):
- sox.diff: REVISION=7; bump to sox 4.1; quirks <14.4.2p7
- sox_stable.diff: REVISION=6; keep sox 4.0; quirks <14.4.2p6

sox.diff applies against -current
sox_stable.diff applies against -rOPENBSD6_9

Attachment: sox.diff
Description: sox.diff

Attachment: sox_stable.diff
Description: sox_stable

Reply via email to