# HG changeset patch # User Pascal Bellard # Date 1412268833 -7200 # Node ID 4acc6a6b8f4fddd3fa4a3bfe181667bdef2d6424 # Parent 853a028198ee8ab62b24c9d49981ed1f50e06ff8 bash: CVE-2014-7169 fix diff -r 853a028198ee -r 4acc6a6b8f4f bash/receipt --- a/bash/receipt Thu Sep 25 12:58:21 2014 +0200 +++ b/bash/receipt Thu Oct 02 18:53:53 2014 +0200 @@ -18,6 +18,8 @@ cd $src # CVE-2014-6271 patch -p0 < $stuff/funcdef-import-4.2.patch + # CVE-2014-7169 + patch -p0 < $stuff/CVE-2014-7169.patch ./configure --without-bash-malloc && make && make install } diff -r 853a028198ee -r 4acc6a6b8f4f bash/stuff/CVE-2014-7169.patch --- /dev/null Thu Jan 01 00:00:00 1970 +0000 +++ b/bash/stuff/CVE-2014-7169.patch Thu Oct 02 18:53:53 2014 +0200 @@ -0,0 +1,12 @@ +*** parse.y 2014-08-26 15:09:42.000000000 -0400 +--- parse.y 2014-09-24 22:47:28.000000000 -0400 +*************** +*** 2849,2852 **** +--- 2849,2854 ---- + word_desc_to_read = (WORD_DESC *)NULL; + ++ eol_ungetc_lookahead = 0; ++ + current_token = '\n'; /* XXX */ + last_read_token = '\n'; +