mirror of
https://github.com/NixOS/nixpkgs.git
synced 2026-10-03 13:30:36 +00:00
vim*: apply upstream patch to fix CVE-2016-1248
/cc #20814. Our version in master was past the last vulnerable one.
This commit is contained in:
@@ -1,4 +1,4 @@
|
||||
{ lib, fetchFromGitHub }:
|
||||
{ lib, fetchFromGitHub, fetchpatch }:
|
||||
rec {
|
||||
version = "7.4.2367";
|
||||
|
||||
@@ -18,6 +18,14 @@ rec {
|
||||
''
|
||||
substituteInPlace runtime/ftplugin/man.vim \
|
||||
--replace "/usr/bin/man " "man "
|
||||
|
||||
patch -p1 < '${
|
||||
fetchpatch {
|
||||
name = "cve-2016-1248.diff";
|
||||
url = "https://github.com/vim/vim/commit/d0b5138b.diff";
|
||||
sha256 = "057kg95ipjdirbkr082wbwrbz5l79mwxir8ymkxhma6l6wbxidif";
|
||||
}
|
||||
}'
|
||||
'';
|
||||
|
||||
meta = with lib; {
|
||||
|
||||
Reference in New Issue
Block a user