bug#47563: [PATCH v2] gnu: curl: Update to 7.76.0 [security fixes].

2021-04-02 Thread Léo Le Bouter via Bug reports for GNU Guix
Fixes CVE-2021-22876 and CVE-2021-22890. * gnu/packages/patches/curl-7.76-use-ssl-cert-env.patch: New patch. * gnu/local.mk (dist_patch_DATA): Register it. * gnu/packages/curl.scm (curl/fixed): New variable. Apply patch. (curl)[replacement]: Graft. --- gnu/local.mk

bug#47563: [PATCH v2] gnu: curl: Update to 7.76.0 [security fixes].

2021-04-02 Thread Léo Le Bouter via Bug reports for GNU Guix
To me, that last patch is ready to merge. Please push if you feel that's OK too, don't wait for me! Thanks! signature.asc Description: This is a digitally signed message part

bug#47563: [PATCH v2] gnu: curl: Update to 7.76.0 [security fixes].

2021-04-02 Thread Leo Famulari
On Fri, Apr 02, 2021 at 09:34:31PM +0200, Léo Le Bouter via Bug reports for GNU Guix wrote: > To me, that last patch is ready to merge. > > Please push if you feel that's OK too, don't wait for me! Building now to test... signature.asc Description: PGP signature

bug#47563: [PATCH v2] gnu: curl: Update to 7.76.0 [security fixes].

2021-04-02 Thread Leo Famulari
On Fri, Apr 02, 2021 at 09:33:02PM +0200, Léo Le Bouter via Bug reports for GNU Guix wrote: > Fixes CVE-2021-22876 and CVE-2021-22890. > > * gnu/packages/patches/curl-7.76-use-ssl-cert-env.patch: New patch. > * gnu/local.mk (dist_patch_DATA): Register it. > * gnu/packages/curl.scm (curl/fixed): N