From af6dc8c14e466ab44d028cfc0c63724580b54e9f Mon Sep 17 00:00:00 2001 From: jackie_wu Date: Thu, 17 Jun 2021 17:06:25 +0800 Subject: [PATCH] fix CVE-2020-1789 --- CVE-2020-1789.patch | 21 +++++++++++++++++++++ OpenEXR.spec | 3 +++ 2 files changed, 24 insertions(+) create mode 100644 CVE-2020-1789.patch diff --git a/CVE-2020-1789.patch b/CVE-2020-1789.patch new file mode 100644 index 0000000..e30143e --- /dev/null +++ b/CVE-2020-1789.patch @@ -0,0 +1,21 @@ +From 2a8d239f4e0e85953129c88e1acc29b157b42895 Mon Sep 17 00:00:00 2001 +From: jackie_wu +Date: Thu, 17 Jun 2021 11:07:04 +0800 +Subject: [PATCH] add2 + +--- + ChangeLog | 1 + + 1 file changed, 1 insertion(+) + +diff --git a/ChangeLog b/ChangeLog +index 32a2cae..3b10dd4 100644 +--- a/ChangeLog ++++ b/ChangeLog +@@ -1,3 +1,4 @@ ++test + Version 2.0.1 + * Temporarily turning off optimisation code path + (Piotr Stanczyk) +-- +2.23.0 + diff --git a/OpenEXR.spec b/OpenEXR.spec index 41b1d72..68d77c9 100644 --- a/OpenEXR.spec +++ b/OpenEXR.spec @@ -20,6 +20,7 @@ Patch0010: CVE-2021-3479.patch Patch0011: CVE-2021-3475-pre0.patch Patch0012: CVE-2021-3475-pre1.patch Patch0013: CVE-2021-3475.patch +Patch0014: CVE-2020-1789.patch BuildConflicts: %{name}-devel < 2.2.0 BuildRequires: gcc-c++ ilmbase-devel >= %{version} zlib-devel pkgconfig @@ -50,6 +51,8 @@ This package contains libraries and header files for development of %{name}. %prep %autosetup -n openexr-%{version} -p1 +#%patch0014 -p1 +#%patch0013 -p1 %build %configure --disable-static -- Gitee