diff --git a/gnupg/trunk/PKGBUILD b/gnupg/trunk/PKGBUILD index 7f62a27b..12da713f 100644 --- a/gnupg/trunk/PKGBUILD +++ b/gnupg/trunk/PKGBUILD @@ -7,7 +7,7 @@ pkgname=gnupg pkgver=2.2.35 -pkgrel=2 +pkgrel=3 pkgdesc='Complete and free implementation of the OpenPGP standard' url='https://www.gnupg.org/' license=(BSD custom CC0 GPL2 GPL3 LGPL3 LGPL2.1 MIT) @@ -36,13 +36,15 @@ source=( 'gnupg-2.2.35-revert_14de7b1e5904e78fcbe413a82d0f19b750bd8830.patch::https://git.gnupg.org/cgi-bin/gitweb.cgi?p=gnupg.git;a=patch;h=3192939a10df17cb9666773ed8888627f6d16b8d' 'drop-import-clean.patch' 'avoid-beta-warning.patch' + 'CVE-2022-34903.patch' ) sha256sums=('340bc255938971e6e729b3d9956fa2ef4db8215d77693bf300df2bb302498690' 'SKIP' '1b7611a24e813429e56a7d0855c59d33109cb1b59b3586a3dd35935909a493e5' '00aa4897f11900f67e161f538c5322f2f9e65dc5675a760fd298d43d33a259d7' '02d375f0045f56f7dd82bacdb5ce559afd52ded8b75f6b2673c39ec666e81abc' - '22fdf9490fad477f225e731c417867d9e7571ac654944e8be63a1fbaccd5c62d') + '22fdf9490fad477f225e731c417867d9e7571ac654944e8be63a1fbaccd5c62d' + '7b9995ee580a6b5c475a55ea161bbffbdced579533e468d3412a8fa7160731f9') install=$pkgname.install @@ -58,6 +60,8 @@ prepare() { # https://dev.gnupg.org/T5953 patch -Np1 -i ../gnupg-2.2.35-revert_14de7b1e5904e78fcbe413a82d0f19b750bd8830.patch + patch -Np1 -i ../CVE-2022-34903.patch + # improve reproducibility rm doc/gnupg.info*