diff options
author | 2011-01-20 18:36:23 +0000 | |
---|---|---|
committer | 2011-01-20 18:36:23 +0000 | |
commit | ba8d6330c9cadd9a570b0b91e01b877408c6673b (patch) | |
tree | b341e93ab394d0742df20cb0650ee01163de7ad2 /net-print | |
parent | ppc64 stable wrt #340799 (diff) | |
download | historical-ba8d6330c9cadd9a570b0b91e01b877408c6673b.tar.gz historical-ba8d6330c9cadd9a570b0b91e01b877408c6673b.tar.bz2 historical-ba8d6330c9cadd9a570b0b91e01b877408c6673b.zip |
Revision bump to fix security bug #352085.
Package-Manager: portage-2.1.9.25/cvs/Linux i686
Diffstat (limited to 'net-print')
-rw-r--r-- | net-print/hplip/ChangeLog | 8 | ||||
-rw-r--r-- | net-print/hplip/Manifest | 4 | ||||
-rw-r--r-- | net-print/hplip/files/hplip-3.10.9-cve-2010-4267.patch | 11 | ||||
-rw-r--r-- | net-print/hplip/hplip-3.10.9-r1.ebuild | 269 |
4 files changed, 290 insertions, 2 deletions
diff --git a/net-print/hplip/ChangeLog b/net-print/hplip/ChangeLog index 8928f3198ee1..c335b90f493b 100644 --- a/net-print/hplip/ChangeLog +++ b/net-print/hplip/ChangeLog @@ -1,6 +1,12 @@ # ChangeLog for net-print/hplip # Copyright 1999-2011 Gentoo Foundation; Distributed under the GPL v2 -# $Header: /var/cvsroot/gentoo-x86/net-print/hplip/ChangeLog,v 1.173 2011/01/10 20:43:58 ranger Exp $ +# $Header: /var/cvsroot/gentoo-x86/net-print/hplip/ChangeLog,v 1.174 2011/01/20 18:36:23 billie Exp $ + +*hplip-3.10.9-r1 (20 Jan 2011) + + 20 Jan 2011; Daniel Pielmeier <billie@gentoo.org> +hplip-3.10.9-r1.ebuild, + +files/hplip-3.10.9-cve-2010-4267.patch: + Revision bump to fix security bug #352085. 10 Jan 2011; Brent Baude <ranger@gentoo.org> hplip-3.10.9.ebuild: stable ppc, bug 345457 diff --git a/net-print/hplip/Manifest b/net-print/hplip/Manifest index 55c04cfb7f48..0e27d3bea640 100644 --- a/net-print/hplip/Manifest +++ b/net-print/hplip/Manifest @@ -1,4 +1,5 @@ AUX hplip-3.10.5-udev-attrs.patch 13716 RMD160 93cfabc5471f56c540f0fafb144ebd3217491802 SHA1 470d632bb2b68e91f96805587e18314d0963fd0c SHA256 7a3958988250d818a35715e3f091e0547599957a9ea34358ee7238b1edddfeb9 +AUX hplip-3.10.9-cve-2010-4267.patch 405 RMD160 0be8b7d90180d38420dc9991ada4c3b0b19b72d2 SHA1 449062383eb96dcf971a25f37565aadeebc7f451 SHA256 2280fb55a03d61edbd8ff928ae016c2e58e77bede83226f3d8e627e95fa6103f AUX hplip-3.9.10-browser.patch 1447 RMD160 0276eacae608821b6b900c9fb27dbd20fb207d04 SHA1 67eec05d9b29445a98a16d496e671cd0f29e1471 SHA256 0e3b3b251ff4cf73032f4c78b6c0495b2d95fefd53d9fd8897faf6528ddd2875 AUX hplip-3.9.10-desktop.patch 492 RMD160 52a8bcf1544d0073920e00a383aeb22a9caf5487 SHA1 9394a73448b7b1b3ab1a014ab63b9edc731def66 SHA256 04bb5ef5ee4145eadc5f9e6498ca8a2d3d2277569b179263cb86f0f56231e462 AUX hplip-3.9.10-htmldir.patch 4444 RMD160 7c960a3049f0b27b761c0f05c4fa9b1484dcd323 SHA1 a9e4af023f23a8990c769158eca08eabd62a5566 SHA256 2ef20d6d8636e22789f48705d9ca219b88cf111d12c54ff0354b18f3b5e20476 @@ -8,7 +9,8 @@ DIST hplip-3.10.6.tar.gz 21577342 RMD160 a5194123a584bad62b1a04fbd05aca7f22ddc03 DIST hplip-3.10.9.tar.gz 21818298 RMD160 37f512c73768e7a02bdf2814bb7528804cfada32 SHA1 5e145eafefbc5122bbe98345f2984fc0a55e5787 SHA256 1d34630084eccfcc80c08065becdf9313fd8f5a09a4cf523dbd9d3ec724206b9 DIST hplip-3.9.12.tar.gz 21371447 RMD160 f1717e8bad043b54497489fa1a2764b3ac548094 SHA1 d4d659ae52f01055bfc7060e0d4e3c7354c1dee3 SHA256 1c53febe3101b3718d43c9176c08826a1a46c49a79c9f6445cd16981fbf2a12a EBUILD hplip-3.10.6.ebuild 7520 RMD160 185389d88a8ce96ca74fea139e60a49ebb450543 SHA1 eb2a766dc4f6f2b2175bff246dc4fe3deccbd984 SHA256 f13de0f0a212b03dc95e4d469b6ea6c54eaed44a70d844e7afd0e1e25039ba56 +EBUILD hplip-3.10.9-r1.ebuild 8041 RMD160 7a355ed5d43dfc58f218ebf07fecc3aa712997fa SHA1 3487a929037f83ad4d1f12abb1c37a8ece272009 SHA256 fada0a2b9c93efcdbd0db0fb9fb01b96021c553ab104df336662dbf4fe198e46 EBUILD hplip-3.10.9.ebuild 7630 RMD160 bd8dddc50bc447fe710efa27c8887fba13c2bcc7 SHA1 cc165c7226e6c0b4a3c3306e1ca7e89f592f0415 SHA256 8b3b7791af88d22e02d82364f0b4c123b71f8e535788d803b2443b85a1f0a008 EBUILD hplip-3.9.12-r1.ebuild 8203 RMD160 f504e15edd902b7288ca16e97f96993f77d8ffc6 SHA1 bb829f5442b6373d4867e17090a2978235d72bd0 SHA256 3c73535a88125416930d16d1c789629b4e75209a1997b2a0412f09bb19fa26ac -MISC ChangeLog 29972 RMD160 f58cf43ae13ae9137a62f59749f07abbde50171d SHA1 e28b0cea78e220b45d9476149c87f4620ef3cfb8 SHA256 42156efa3283fb461bfeca577c6e43d12665c96dfc27dc62afa5f657bdd9aa15 +MISC ChangeLog 30170 RMD160 b12e94c602af005ffce5b190192fef0e0ee396c0 SHA1 8cbcbc458f2c35b8521c225d70093794590c869b SHA256 8bcc382dd5880142905c972c51859ba8cc61c66b5e344b63d4ada41721bb41b9 MISC metadata.xml 1913 RMD160 595b2f423da3f8715119c41473f9a07cf805533d SHA1 dd63aa217fda9022029cdb44521f1fe3c61f4e71 SHA256 27810cc7dc8a61b067b7714e0d7d935b27b2cc4e09c33c6c72ed0e9025023489 diff --git a/net-print/hplip/files/hplip-3.10.9-cve-2010-4267.patch b/net-print/hplip/files/hplip-3.10.9-cve-2010-4267.patch new file mode 100644 index 000000000000..3bf6b84fae84 --- /dev/null +++ b/net-print/hplip/files/hplip-3.10.9-cve-2010-4267.patch @@ -0,0 +1,11 @@ +--- hplip-3.10.2.orig/io/hpmud/pml.c 2010-12-06 13:35:12.046894255 -0500 ++++ hplip-3.10.2.orig/io/hpmud/pml.c 2010-12-06 13:34:35.018894207 -0500 +@@ -504,6 +504,8 @@ enum HPMUD_RESULT hpmud_get_pml(HPMUD_DE + p += 2; /* eat type and length */ + } + ++ if (dLen > buf_size) ++ dLen = buf_size; + memcpy(buf, p, dLen); + *bytes_read = dLen; + *type = dt; diff --git a/net-print/hplip/hplip-3.10.9-r1.ebuild b/net-print/hplip/hplip-3.10.9-r1.ebuild new file mode 100644 index 000000000000..df7c216f0e8a --- /dev/null +++ b/net-print/hplip/hplip-3.10.9-r1.ebuild @@ -0,0 +1,269 @@ +# Copyright 1999-2011 Gentoo Foundation +# Distributed under the terms of the GNU General Public License v2 +# $Header: /var/cvsroot/gentoo-x86/net-print/hplip/hplip-3.10.9-r1.ebuild,v 1.1 2011/01/20 18:36:23 billie Exp $ + +EAPI=2 + +PYTHON_DEPEND="!minimal? 2" +PYTHON_USE_WITH="threads xml" +PYTHON_USE_WITH_OPT="!minimal" + +inherit fdo-mime linux-info python autotools + +DESCRIPTION="HP Linux Imaging and Printing System. Includes printer, scanner, fax drivers and service tools." +HOMEPAGE="http://hplipopensource.com/hplip-web/index.html" +SRC_URI="mirror://sourceforge/hplip/${P}.tar.gz" + +LICENSE="GPL-2" +SLOT="0" +KEYWORDS="~amd64 ~arm ~ppc ~ppc64 ~x86" + +# zeroconf does not work properly with >=cups-1.4. thus support for it is also disabled in hplip. +IUSE="doc fax +hpcups hpijs kde libnotify minimal parport policykit qt4 scanner snmp static-ppds -udev-acl X" + +COMMON_DEPEND=" + virtual/jpeg + hpijs? ( >=net-print/foomatic-filters-3.0.20080507[cups] ) + udev-acl? ( >=sys-fs/udev-145[extras] ) + snmp? ( + net-analyzer/net-snmp + dev-libs/openssl + ) + !minimal? ( + net-print/cups + virtual/libusb:0 + scanner? ( >=media-gfx/sane-backends-1.0.19-r1 ) + fax? ( sys-apps/dbus ) + )" + +DEPEND="${COMMON_DEPEND} + dev-util/pkgconfig" + +RDEPEND="${COMMON_DEPEND} + >=app-text/ghostscript-gpl-8.71-r3 + !static-ppds? ( || ( >=net-print/cups-1.4.0 net-print/cupsddk ) ) + !minimal? ( + dev-python/pygobject + kernel_linux? ( >=sys-fs/udev-114 ) + scanner? ( + dev-python/imaging + X? ( || ( + kde? ( kde-misc/skanlite ) + media-gfx/xsane + media-gfx/sane-frontends + ) ) + ) + fax? ( + dev-python/reportlab + dev-python/dbus-python + ) + qt4? ( + dev-python/PyQt4[dbus,X] + libnotify? ( + dev-python/notify-python + ) + policykit? ( + sys-auth/polkit + ) + ) + )" + +CONFIG_CHECK="~PARPORT ~PPDEV" +ERROR_PARPORT="Please make sure parallel port support is enabled in your kernel (PARPORT and PPDEV)." + +pkg_setup() { + if ! use minimal; then + python_set_active_version 2 + python_pkg_setup + fi + + ! use qt4 && ewarn "You need USE=qt4 for the hplip GUI." + + use scanner && ! use X && ewarn "You need USE=X for the scanner GUI." + + if ! use hpcups && ! use hpijs ; then + ewarn "Installing neither hpcups (USE=-hpcups) nor hpijs (USE=-hpijs) driver," + ewarn "which is probably not what you want." + ewarn "You will almost certainly not be able to print." + ewarn "Recommended USE flags: USE=\"hpcups -hpijs\")." + fi + + if use minimal ; then + ewarn "Installing driver portions only, make sure you know what you are doing." + ewarn "Depending on the USE flags set for hpcups and/or hpijs the appropiate" + ewarn "drivers are installed." + else + use parport && linux-info_pkg_setup + fi +} + +src_prepare() { + python_convert_shebangs -q -r 2 . + + # Test for Gentoo bug #345725 + #sed -i -e "s|/etc/udev/rules.d|/$(get_libdir)/udev/rules.d|" \ + # $(find ./ -type f -exec grep -l '/etc/udev/rules.d' '{}' '+') \ + # || die "sed udev rules" + + # Do not install desktop files if there is no gui + # Upstream bug: https://bugs.launchpad.net/hplip/+bug/452113 + epatch "${FILESDIR}"/${PN}-3.9.10-desktop.patch + + # Browser detection through xdg-open + # Upstream bug: https://bugs.launchpad.net/hplip/+bug/482674 + epatch "${FILESDIR}"/${PN}-3.9.10-browser.patch + + # Use cups-config when checking for cupsddk + # Upstream bug: https://bugs.launchpad.net/hplip/+bug/483136 + epatch "${FILESDIR}"/${PN}-3.9.12-cupsddk.patch + + # Htmldocs are not installed under docdir/html so enable htmldir configure switch + # Upstream bug: https://bugs.launchpad.net/hplip/+bug/483217 + epatch "${FILESDIR}"/${PN}-3.9.10-htmldir.patch + + # Increase systray check timeout for slower machines + # Upstream bug: https://bugs.launchpad.net/hplip/+bug/335662 + epatch "${FILESDIR}"/${PN}-3.9.12-systray.patch + + # SYSFS deprecated but kept upstream for compatibility reasons + # Upstream bug: https://bugs.launchpad.net/hplip/+bug/346390 + epatch "${FILESDIR}"/${PN}-3.10.5-udev-attrs.patch + + # CVE-2010-4267 SNMP Response Processing Buffer Overflow Vulnerability + # http://secunia.com/advisories/42956/ + # https://bugzilla.redhat.com/show_bug.cgi?id=662740 + epatch "${FILESDIR}"/${P}-cve-2010-4267.patch + + # Force recognition of Gentoo distro by hp-check + sed -i \ + -e "s:file('/etc/issue', 'r').read():'Gentoo':" \ + installer/core_install.py || die + + # Use system foomatic-rip for hpijs driver instead of foomatic-rip-hplip + # The hpcups driver does not use foomatic-rip + local i + for i in ppd/hpijs/*.ppd.gz + do + rm -f ${i}.temp + gunzip -c ${i} | sed 's/foomatic-rip-hplip/foomatic-rip/g' | gzip > ${i}.temp || die + mv ${i}.temp ${i} + done + + eautoreconf +} + +src_configure() { + local gui_build myconf drv_build minimal_build + + if use qt4 ; then + gui_build="--enable-gui-build --enable-qt4 --disable-qt3" + if use policykit ; then + myconf="--enable-policykit" + else + myconf="--disable-policykit" + fi + else + gui_build="--disable-gui-build --disable-qt3 --disable-qt4" + fi + + if use fax || use qt4 ; then + myconf="${myconf} --enable-dbus-build" + else + myconf="${myconf} --disable-dbus-build" + fi + + if use hpcups ; then + drv_build="$(use_enable hpcups hpcups-install)" + if use static-ppds ; then + drv_build="${drv_build} --enable-cups-ppd-install" + drv_build="${drv_build} --disable-cups-drv-install" + else + drv_build="${drv_build} --enable-cups-drv-install" + drv_build="${drv_build} --disable-cups-ppd-install" + fi + else + drv_build="--disable-hpcups-install --disable-cups-drv-install" + drv_build="${drv_build} --disable-cups-ppd-install" + fi + + if use hpijs ; then + drv_build="${drv_build} $(use_enable hpijs hpijs-install)" + if use static-ppds ; then + drv_build="${drv_build} --enable-foomatic-ppd-install" + drv_build="${drv_build} --disable-foomatic-drv-install" + else + drv_build="${drv_build} --enable-foomatic-drv-install" + drv_build="${drv_build} --disable-foomatic-ppd-install" + fi + else + drv_build="${drv_build} --disable-hpijs-install" + drv_build="${drv_build} --disable-foomatic-drv-install" + drv_build="${drv_build} --disable-foomatic-ppd-install" + fi + + if use minimal ; then + if use hpijs ; then + minimal_build="--enable-hpijs-only-build" + else + minimal_build="--disable-hpijs-only-build" + fi + if use hpcups ; then + minimal_build="${minimal_build} --enable-hpcups-only-build" + else + minimal_build="${minimal_build} --disable-hpcups-only-build" + fi + fi + + econf \ + --disable-dependency-tracking \ + --disable-cups11-build \ + --disable-lite-build \ + --disable-foomatic-rip-hplip-install \ + --disable-shadow-build \ + --with-cupsbackenddir=$(cups-config --serverbin)/backend \ + --with-cupsfilterdir=$(cups-config --serverbin)/filter \ + --with-docdir=/usr/share/doc/${PF} \ + --with-htmldir=/usr/share/doc/${PF}/html \ + ${gui_build} \ + ${myconf} \ + ${drv_build} \ + ${minimal_build} \ + $(use_enable doc doc-build) \ + $(use_enable fax fax-build) \ + $(use_enable parport pp-build) \ + $(use_enable scanner scan-build) \ + $(use_enable snmp network-build) \ + $(use_enable udev-acl udev-acl-rules) +} + +src_install() { + emake DESTDIR="${D}" install || die + + # Installed by sane-backends + # Gentoo Bug: #201023 + rm -f "${D}"/etc/sane.d/dll.conf || die +} + +pkg_postinst() { + use !minimal && python_mod_optimize /usr/share/${PN} + fdo-mime_desktop_database_update + + elog "You should run hp-setup as root if you are installing hplip for the first time," + elog "and may also need to run it if you are upgrading from an earlier version." + elog + elog "If your device is connected using USB, users will need to be in the lp group to" + elog "access it." + elog + elog "Starting with versions of hplip >=3.9.8 mDNS is the default network search" + elog "mechanism. To make use of it you need to activate the zeroconf flag on cups." + elog "If you prefer the SLP method you have to choose this when configuring the" + elog "device." + elog "Note: For cups-1.4.x SLP is the only supported method as mDNS (zeroconf) is not" + elog "available here." + +} + +pkg_postrm() { + use !minimal && python_mod_cleanup /usr/share/${PN} + fdo-mime_desktop_database_update +} |