diff --git a/guile-2.0.12.tar.xz b/guile-2.0.12.tar.xz deleted file mode 100644 index 25a1f50..0000000 --- a/guile-2.0.12.tar.xz +++ /dev/null @@ -1,3 +0,0 @@ -version https://git-lfs.github.com/spec/v1 -oid sha256:de8187736f9b260f2fa776ed39b52cb74dd389ccf7039c042f0606270196b7e9 -size 4493576 diff --git a/guile-2.0.12.tar.xz.sig b/guile-2.0.12.tar.xz.sig deleted file mode 100644 index 4db5576..0000000 --- a/guile-2.0.12.tar.xz.sig +++ /dev/null @@ -1,17 +0,0 @@ ------BEGIN PGP SIGNATURE----- -Version: GnuPG v1 - -iQIcBAABAgAGBQJXh7gOAAoJEN3A9TWIEvjyfRYP/2m6K8HDGZCT12sOsVcwvpGC -RCVwGr/7mzYwrQD2h3etSpcuubK2YUb+X97OQqnsrYrKxJqXxtfQ3jBuA49mvdbc -7oP2Ynul5iJ1D6O8GIFE350wOgP37XpqNWpF6PuuUlImjoc2AnCz7yx4X6gjYCDF -HXNuwc5SjEWnFuz/iX0QRW9Xb4+RbGQUc64XWjLNlIkNAoh3iZfr2+Fnpr6sLA0b -7GfGIE7K905tCyIqa8RvH7JLU3iNSdSJCDKScvNOIp0lYyZGQtqhneYdLUe8UlI7 -Qrkpa2NRnyINIzAzl+AJ/cyk8PY0SA/9jZhcnOfRCWF33vbbg8QeY14IJQlF+4pV -B+FVW2ro1EnOcq+TAhpJ03g9wnzaQSI6kThk9nUC/9vSs6LFmIWNQclK7hF04Z3O -s9ikvMkPb6TjGrSaLVcfY7FBGGMw8ybty2E6H2hKGAoiaDrSp5zvxhwwN8bz3iRT -92mn2avpnQpmH+/P4uzRL0imOBQ7covvp4rwTYK1NQaIFdylX6V9HY7rVsjCD0Ig -ExMj2OPyvnQQmZDT80jZifuGIj+RyLkhY/WcvcPVCEQLuISj3cV7Qc/oOnIPJDTX -EGtoaxL0c8l5UcjVcRowU84qkBhLdJYHaK0j6gRRqoblOYeJy9gxS41HqHrwFIvB -lA8TKtUSJrl/DMQTST8k -=wltf ------END PGP SIGNATURE----- diff --git a/guile-2.0.13.tar.xz b/guile-2.0.13.tar.xz new file mode 100644 index 0000000..f45197f --- /dev/null +++ b/guile-2.0.13.tar.xz @@ -0,0 +1,3 @@ +version https://git-lfs.github.com/spec/v1 +oid sha256:3744f2addc282a0de627aaef048f062982b44564d54ac31ff5217972529ed88b +size 4715940 diff --git a/guile-2.0.13.tar.xz.sig b/guile-2.0.13.tar.xz.sig new file mode 100644 index 0000000..dcba2b9 --- /dev/null +++ b/guile-2.0.13.tar.xz.sig @@ -0,0 +1,17 @@ +-----BEGIN PGP SIGNATURE----- +Version: GnuPG v2 + +iQIqBAABCAAUBQJX/iLRDRxsdWRvQGdudS5vcmcACgkQCQsRmT2a67Vkow/+JX3y +bbRkmRoSdctiI1jCUJhiCFFhzVErx6JhpraZJQxE614beqFw9KzldyH88SVZ7kR+ +AwdRVuO06wO3thZIXfBJ0tMUHCSfa8Q6VerYcOmxmx+L4STVNfDpFNsQVPVQS5Gw +/go6Irhyw4N8tZ5+SpnGHpBN25Kxxxb0dE9vVbyiSFXYHQfY6TCNaJjiOw4EB9no +J4PL3zZW9g3AnyTAruWtEuuMNIOTqkJkgwI6mJeR49owdBJYhejXConh+vQ73kea +0nMdsNc7BnsWUufo1c/kU5j6zPHo+olQ/kD5COeSBK3g3aaZTWstnM5ViFn8habl +FVKIn9UtCNPD+nGehIkNZ47Z7Akh18y4AMxgIHVUPQ5d1KVAxRVF4Szp/5BBZLi0 +AZ21EyvcBoiFL4XaUDk4Lcjpj/ne4/WeFaj/BSlIr7oOAu/MBAot4noFox3clN7G +R4LURpvTf4et+Zj9Aecga41MyDH7mCFZ698Nu0nF5fS+TA9daByjQ3tzwFVJ2pCd +EwwEm9VX+AMac6YbEwaaGTOXn+ZaPrmGzm11/axtLfwe300NWy+tiOW9mD4vZWW6 +Ksh5LPnu9dlL2PJkVW2j2/sq9BZwFdUe8U35Q/+9VSFHdT7NnWlpHvW0ty0uCOrO ++wbQKicQA8D8/HodYduLS2QYsMXxlaNpwtEUkaY= +=4kuU +-----END PGP SIGNATURE----- diff --git a/guile.changes b/guile.changes index e9af576..f1835d7 100644 --- a/guile.changes +++ b/guile.changes @@ -1,3 +1,15 @@ +------------------------------------------------------------------- +Sat Oct 15 14:55:17 UTC 2016 - mpluskal@suse.com + +- Update to version 2.0.13 + * Security fixes + + CVE-2016-8606: REPL server now protects against HTTP + inter-protocol attacks + + CVE-2016-8605: 'mkdir' procedure no longer calls umask(2) + * Several bugfixes and improvements (for details see NEWS file) +- Fetch keyring from savannah +- Use https for all urls + ------------------------------------------------------------------- Thu Jul 21 12:25:52 UTC 2016 - sleep_walker@opensuse.org diff --git a/guile.keyring b/guile.keyring index 10b427d..a85619b 100644 Binary files a/guile.keyring and b/guile.keyring differ diff --git a/guile.spec b/guile.spec index d5a725d..61f55f6 100644 --- a/guile.spec +++ b/guile.spec @@ -25,15 +25,15 @@ %define libgreadver 18 %define greadsuff v-%{libgreadver}-%{libgreadver} Name: guile -Version: %{guilevers}.12 +Version: %{guilevers}.13 Release: 0 Summary: GNU's Ubiquitous Intelligent Language for Extension License: GFDL-1.3 and GPL-3.0+ and LGPL-3.0+ Group: Development/Languages/Scheme -Url: http://www.gnu.org/software/guile/ -Source0: ftp://ftp.gnu.org/gnu/guile/%{name}-%{version}.tar.xz -Source1: ftp://ftp.gnu.org/gnu/guile/%{name}-%{version}.tar.xz.sig -Source2: %{name}.keyring +Url: https://www.gnu.org/software/guile/ +Source0: https://ftp.gnu.org/gnu/guile/%{name}-%{version}.tar.xz +Source1: https://ftp.gnu.org/gnu/guile/%{name}-%{version}.tar.xz.sig +Source2: https://savannah.gnu.org/project/memberlist-gpgkeys.php?group=guile&download=1#/%{name}.keyring Source3: guile-rpmlintrc # suse specific Patch0: %{name}-fake-buildstamp.patch