]> rtime.felk.cvut.cz Git - coffee/buildroot.git/commitdiff
package/nodejs: security bump version to 6.9.1
authorPatrick Devlin <cloudyparts@icloud.com>
Mon, 14 Nov 2016 16:58:50 +0000 (11:58 -0500)
committerPeter Korsgaard <peter@korsgaard.com>
Mon, 19 Dec 2016 21:56:56 +0000 (22:56 +0100)
Fixes CVE-2016-5172 - V8 arbitrary memory read:
https://nodejs.org/en/blog/vulnerability/october-2016-security-releases/

https://nodejs.org/en/blog/release/v6.9.1/

The patches from 6.7.0 have been copied to 6.9.1.

[Peter: add CVE reference]
Signed-off-by: Patrick Devlin <cloudyparts@icloud.com>
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@free-electrons.com>
(cherry picked from commit 5f899d7f1cd807ff7a92b2facfd4718dad139724)

package/nodejs/6.9.1/0001-gyp-force-link-command-to-use-CXX.patch [moved from package/nodejs/6.7.0/0001-gyp-force-link-command-to-use-CXX.patch with 100% similarity]
package/nodejs/6.9.1/0002-inspector-don-t-build-when-ssl-support-is-disabled.patch [moved from package/nodejs/6.7.0/0002-inspector-don-t-build-when-ssl-support-is-disabled.patch with 100% similarity]
package/nodejs/Config.in
package/nodejs/nodejs.hash

index 976be50e4d4503fadd8102ffcf4a4f4930c49cef..a47ba37a4a1ba32ace18fefd19dcf7ac7f874dbb 100644 (file)
@@ -43,7 +43,7 @@ config BR2_PACKAGE_NODEJS_V8_ARCH_SUPPORTS
 
 config BR2_PACKAGE_NODEJS_VERSION_STRING
        string
-       default "6.7.0"         if BR2_PACKAGE_NODEJS_V8_ARCH_SUPPORTS
+       default "6.9.1"         if BR2_PACKAGE_NODEJS_V8_ARCH_SUPPORTS
        default "0.10.47"
 
 config BR2_PACKAGE_NODEJS_NPM
index f334a47e989f6705a5df4837b92ad9cdf6308026..5df79afee4e9f0cae18917c3f7b33a76537ea703 100644 (file)
@@ -1,5 +1,5 @@
 # From upstream URL: http://nodejs.org/dist/v0.10.47/SHASUMS256.txt
 sha256  335bdf4db702885a8acaf2c9f241c70cabd62497361da81aca65c8e8a8e7ff09  node-v0.10.47.tar.xz
 
-# From upstream URL: http://nodejs.org/dist/v6.7.0/SHASUMS256.txt
-sha256  ceb028324aab1ee8c7ea6a62026f036f3ea71f5ef5212593d0f833f999dd3be5  node-v6.7.0.tar.xz
+# From upstream URL: http://nodejs.org/dist/v6.9.1/SHASUMS256.txt
+sha256  0bdd8d1305777cc8cd206129ea494d6c6ce56001868dd80147aff531d6df0729  node-v6.9.1.tar.xz