forked from products/PackageHub
Compare commits
1 Commits
add_doomsd
...
maintenanc
| Author | SHA256 | Date | |
|---|---|---|---|
| 190d66cdae |
2
minisign
2
minisign
Submodule minisign updated: 0120e9a39f...e3f15b140a
28
patchinfo.20260121084629327942.93181000773252/_patchinfo
Normal file
28
patchinfo.20260121084629327942.93181000773252/_patchinfo
Normal file
@@ -0,0 +1,28 @@
|
||||
<patchinfo>
|
||||
<packager>AndreasStieger</packager>
|
||||
<rating>moderate</rating>
|
||||
<category>recommended</category>
|
||||
<summary>Recommended update for minisign</summary>
|
||||
<description>This update for minisign fixes the following issues:
|
||||
|
||||
Changes in minisign:
|
||||
|
||||
- Bugfix:
|
||||
* bugfix: duplicate command-line arguments [7dfdb3c]
|
||||
|
||||
- Security fix: [gpg.fail/trustcomment]
|
||||
* Trusted comment injection (minisign) [6c59875]
|
||||
* trim(): only trim trailing \r\n, reject straight \r characters
|
||||
|
||||
- Security fix: [gpg.fail/minisign]
|
||||
* Trusted comment injection (minisign) [a10dc92]
|
||||
* Bail out if the signature file contains unprintable characters
|
||||
|
||||
- Update to version 0.12
|
||||
* Libsodium is now an optional dependency. When using the Zig
|
||||
toolchain to compile Minisign, you can specify the
|
||||
-Dwithout-libsodium flag to build and run without libsodium.
|
||||
* Key identifiers are now zero-padded when printed.
|
||||
</description>
|
||||
<package>minisign</package>
|
||||
</patchinfo>
|
||||
Reference in New Issue
Block a user