cifs-utils: fix for CVE-2020-14342

Did not backport 033208fd46 because of
some behavior changes in the CLIs.

The patch comes from the issue in the Samba bugtracker [0].

[0] https://bugzilla.samba.org/show_bug.cgi?id=14442
This commit is contained in:
Thomas Gerbet
2021-01-20 21:17:39 +01:00
parent e9251a6db8
commit 88fd0ec345

View File

@@ -1,5 +1,5 @@
{ stdenv, fetchurl, autoreconfHook, docutils, pkgconfig
, kerberos, keyutils, pam, talloc }:
, kerberos, keyutils, pam, talloc, fetchpatch }:
stdenv.mkDerivation rec {
pname = "cifs-utils";
@@ -14,6 +14,14 @@ stdenv.mkDerivation rec {
buildInputs = [ kerberos keyutils pam talloc ];
patches = [
(fetchpatch {
name = "CVE-2020-14342.patch";
url = "https://attachments.samba.org/attachment.cgi?id=16148";
sha256 = "1xw3d11wb1l8a89jhdp6hhy987nq0gafxfhx5jdhcc5nazahc7s4";
})
];
makeFlags = [ "root_sbindir=$(out)/sbin" ];
meta = with stdenv.lib; {