Merge #199742: upx: apply patch for CVE-2021-20285

+9 -1
+9 -1
pkgs/tools/compression/upx/default.nix
··· 1 - { lib, stdenv, fetchurl, ucl, zlib, perl }: 1 + { lib, stdenv, fetchurl, ucl, zlib, perl, fetchpatch }: 2 2 3 3 stdenv.mkDerivation rec { 4 4 pname = "upx"; ··· 9 9 }; 10 10 11 11 buildInputs = [ ucl zlib perl ]; 12 + 13 + patches = [ 14 + (fetchpatch { 15 + url = "https://github.com/upx/upx/commit/13bc031163863cb3866aa6cdc018dff0697aa5d4.patch"; 16 + sha256 = "sha256-7uazgx1lOgHh2J7yn3yb1q9lTJsv4BbexdGlWRiAG/M="; 17 + name = "CVE-2021-20285.patch"; 18 + }) 19 + ]; 12 20 13 21 preConfigure = '' 14 22 export UPX_UCLDIR=${ucl}