Skip to content

expat: 2.2.0 -> 2.2.1 #26703

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Merged
merged 1 commit into from
Jun 18, 2017
Merged

expat: 2.2.0 -> 2.2.1 #26703

merged 1 commit into from
Jun 18, 2017

Conversation

rycee
Copy link
Member

@rycee rycee commented Jun 18, 2017

Motivation for this change

To bump to latest version. Also includes fixes for CVE-2017-9233 and CVE-2016-9063.

I did not do a nox-review wip since it wanted to rebuild 7000+ packages, should be perfectly backwards compatible, though.

CC @grahamc for security expertise

Things done
  • Tested using sandboxing
    (nix.useSandbox on NixOS,
    or option build-use-sandbox in nix.conf
    on non-NixOS)
  • Built on platform(s)
    • NixOS
    • macOS
    • Linux
  • Tested compilation of all pkgs that depend on this change using nix-shell -p nox --run "nox-review wip"
  • Tested execution of all binary files (usually in ./result/bin/)
  • Fits CONTRIBUTING.md.

Sorry, something went wrong.

@rycee rycee added 1.severity: security Issues which raise a security issue, or PRs that fix one 8.has: package (update) This PR updates a package to a newer version labels Jun 18, 2017
@mention-bot
Copy link

@rycee, thanks for your PR! By analyzing the history of the files in this pull request, we identified @groxxda, @edolstra and @vcunat to be potential reviewers.

@grahamc
Copy link
Member

grahamc commented Jun 18, 2017

LGTM, thank you!

@grahamc grahamc merged commit 9f16b5b into NixOS:master Jun 18, 2017
@grahamc
Copy link
Member

grahamc commented Jun 18, 2017

Backported in c28e6ee thank you!

@rycee rycee deleted the bump/expat branch June 20, 2017 21:34
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
1.severity: security Issues which raise a security issue, or PRs that fix one 8.has: package (update) This PR updates a package to a newer version
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

3 participants