Nam Nguyen writes: > tj@ had a diff to backport CVE fixes for audio/sox. Here, I tweaked it > so the patches apply cleanly.
ping > > This diff: > - adds devel/quirks entry (so, apply the diff in /usr/ports) > - bumps minor to 4.1 due to addition of symbols > check_sym output: https://namtsui.com/public/sox.txt > - moves to CONFIGURE_STYLE autoreconf because Makefile.am is patched > - backports fixes for CVEs since 2017 > - backported fixes can be viewed online: > https://namtsui.com/public/sox_cve.txt > - tweaks from sthen@: BUILD_DEPENDS MODGNU_AUTO{CONF,MAKE}_DEPENDS and > libtool not needed because autoreconf already adds them. Two fresh diffs are attached incorporating sthen@'s advice (since -stable is problematic when bumping SHARED_LIBS and consumers don't use any of the new symbols): - sox.diff: REVISION=7; bump to sox 4.1; quirks <14.4.2p7 - sox_stable.diff: REVISION=6; keep sox 4.0; quirks <14.4.2p6 sox.diff applies against -current sox_stable.diff applies against -rOPENBSD6_9
sox.diff
Description: sox.diff
sox_stable.diff
Description: sox_stable