gnu: tar: Fix CVE-2016-6321.
[jackhill/guix/guix.git] / gnu / local.mk
index 4ac824e..00f47e3 100644 (file)
@@ -295,6 +295,7 @@ GNU_SYSTEM_MODULES =                                \
   %D%/packages/pem.scm                         \
   %D%/packages/perl.scm                                \
   %D%/packages/photo.scm                       \
+  %D%/packages/php.scm                         \
   %D%/packages/pkg-config.scm                  \
   %D%/packages/plotutils.scm                   \
   %D%/packages/polkit.scm                      \
@@ -304,7 +305,6 @@ GNU_SYSTEM_MODULES =                                \
   %D%/packages/pumpio.scm                      \
   %D%/packages/pretty-print.scm                        \
   %D%/packages/protobuf.scm                    \
-  %D%/packages/psyc.scm                         \
   %D%/packages/pv.scm                          \
   %D%/packages/python.scm                      \
   %D%/packages/qemu.scm                                \
@@ -399,6 +399,7 @@ GNU_SYSTEM_MODULES =                                \
   %D%/services/admin.scm                       \
   %D%/services/avahi.scm                       \
   %D%/services/base.scm                                \
+  %D%/services/configuration.scm               \
   %D%/services/cups.scm                                \
   %D%/services/databases.scm                   \
   %D%/services/dbus.scm                                \
@@ -415,6 +416,7 @@ GNU_SYSTEM_MODULES =                                \
   %D%/services/sddm.scm                                \
   %D%/services/spice.scm                               \
   %D%/services/ssh.scm                         \
+  %D%/services/version-control.scm              \
   %D%/services/web.scm                         \
   %D%/services/xorg.scm                                \
                                                \
@@ -504,6 +506,7 @@ dist_patch_DATA =                                           \
   %D%/packages/patches/cssc-missing-include.patch               \
   %D%/packages/patches/clucene-contribs-lib.patch               \
   %D%/packages/patches/cursynth-wave-rand.patch                        \
+  %D%/packages/patches/cyrus-sasl-CVE-2013-4122.patch          \
   %D%/packages/patches/dbus-helper-search-path.patch           \
   %D%/packages/patches/devil-CVE-2009-3994.patch               \
   %D%/packages/patches/devil-fix-libpng.patch                  \
@@ -533,7 +536,6 @@ dist_patch_DATA =                                           \
   %D%/packages/patches/fasthenry-spFactor.patch                        \
   %D%/packages/patches/findutils-localstatedir.patch           \
   %D%/packages/patches/findutils-test-xargs.patch              \
-  %D%/packages/patches/flex-CVE-2016-6354.patch                        \
   %D%/packages/patches/flint-ldconfig.patch                    \
   %D%/packages/patches/fltk-shared-lib-defines.patch           \
   %D%/packages/patches/fltk-xfont-on-demand.patch              \
@@ -544,6 +546,7 @@ dist_patch_DATA =                                           \
   %D%/packages/patches/gcc-arm-bug-71399.patch                 \
   %D%/packages/patches/gcc-arm-link-spec-fix.patch             \
   %D%/packages/patches/gcc-cross-environment-variables.patch   \
+  %D%/packages/patches/gcc-libiberty-printf-decl.patch         \
   %D%/packages/patches/gcc-libvtv-runpath.patch                        \
   %D%/packages/patches/gcc-strmov-store-file-names.patch       \
   %D%/packages/patches/gcc-5.0-libvtv-runpath.patch            \
@@ -551,8 +554,10 @@ dist_patch_DATA =                                          \
   %D%/packages/patches/gcc-6-cross-environment-variables.patch \
   %D%/packages/patches/gd-CVE-2016-7568.patch                  \
   %D%/packages/patches/gd-CVE-2016-8670.patch                  \
+  %D%/packages/patches/gd-fix-chunk-size-on-boundaries.patch   \
   %D%/packages/patches/gd-fix-gd2-read-test.patch              \
   %D%/packages/patches/gd-fix-tests-on-i686.patch              \
+  %D%/packages/patches/gd-fix-truecolor-format-correction.patch        \
   %D%/packages/patches/gegl-CVE-2012-4433.patch                        \
   %D%/packages/patches/geoclue-config.patch                    \
   %D%/packages/patches/ghostscript-CVE-2013-5653.patch         \
@@ -581,12 +586,17 @@ dist_patch_DATA =                                         \
   %D%/packages/patches/grub-gets-undeclared.patch              \
   %D%/packages/patches/grub-freetype.patch                     \
   %D%/packages/patches/gsl-test-i686.patch                     \
+  %D%/packages/patches/gst-plugins-good-fix-crashes.patch      \
+  %D%/packages/patches/gst-plugins-good-fix-invalid-read.patch \
+  %D%/packages/patches/gst-plugins-good-fix-signedness.patch   \
+  %D%/packages/patches/gst-plugins-good-flic-bounds-check.patch        \
   %D%/packages/patches/guile-1.8-cpp-4.5.patch                 \
   %D%/packages/patches/guile-arm-fixes.patch                   \
   %D%/packages/patches/guile-default-utf8.patch                        \
   %D%/packages/patches/guile-linux-syscalls.patch              \
   %D%/packages/patches/guile-present-coding.patch              \
   %D%/packages/patches/guile-relocatable.patch                 \
+  %D%/packages/patches/guile-repl-server-test.patch            \
   %D%/packages/patches/guile-rsvg-pkgconfig.patch              \
   %D%/packages/patches/gtk2-respect-GUIX_GTK2_PATH.patch       \
   %D%/packages/patches/gtk2-respect-GUIX_GTK2_IM_MODULE_FILE.patch \
@@ -594,6 +604,7 @@ dist_patch_DATA =                                           \
   %D%/packages/patches/gtk3-respect-GUIX_GTK3_PATH.patch       \
   %D%/packages/patches/gtk3-respect-GUIX_GTK3_IM_MODULE_FILE.patch \
   %D%/packages/patches/gtkglext-disable-disable-deprecated.patch \
+  %D%/packages/patches/handbrake-pkg-config-path.patch         \
   %D%/packages/patches/hdf4-architectures.patch                \
   %D%/packages/patches/hdf4-reproducibility.patch              \
   %D%/packages/patches/hdf4-shared-fortran.patch               \
@@ -612,6 +623,7 @@ dist_patch_DATA =                                           \
   %D%/packages/patches/hypre-ldflags.patch                     \
   %D%/packages/patches/icecat-avoid-bundled-libraries.patch    \
   %D%/packages/patches/icecat-binutils.patch                   \
+  %D%/packages/patches/icecat-CVE-2016-9064.patch              \
   %D%/packages/patches/icu4c-CVE-2014-6585.patch               \
   %D%/packages/patches/icu4c-CVE-2015-1270.patch               \
   %D%/packages/patches/icu4c-CVE-2015-4760.patch               \
@@ -635,10 +647,6 @@ dist_patch_DATA =                                          \
   %D%/packages/patches/liba52-link-with-libm.patch             \
   %D%/packages/patches/liba52-set-soname.patch                 \
   %D%/packages/patches/liba52-use-mtune-not-mcpu.patch         \
-  %D%/packages/patches/libarchive-7zip-heap-overflow.patch     \
-  %D%/packages/patches/libarchive-fix-symlink-check.patch      \
-  %D%/packages/patches/libarchive-fix-filesystem-attacks.patch \
-  %D%/packages/patches/libarchive-safe_fprintf-buffer-overflow.patch   \
   %D%/packages/patches/libbonobo-activation-test-race.patch    \
   %D%/packages/patches/libcanberra-sound-theme-freedesktop.patch \
   %D%/packages/patches/libcmis-fix-test-onedrive.patch         \
@@ -657,18 +665,6 @@ dist_patch_DATA =                                          \
   %D%/packages/patches/libssh-0.6.5-CVE-2016-0739.patch                \
   %D%/packages/patches/libtar-CVE-2013-4420.patch \
   %D%/packages/patches/libtheora-config-guess.patch            \
-  %D%/packages/patches/libtiff-CVE-2015-8665+CVE-2015-8683.patch \
-  %D%/packages/patches/libtiff-CVE-2016-3623.patch             \
-  %D%/packages/patches/libtiff-CVE-2016-3945.patch             \
-  %D%/packages/patches/libtiff-CVE-2016-3990.patch             \
-  %D%/packages/patches/libtiff-CVE-2016-3991.patch             \
-  %D%/packages/patches/libtiff-CVE-2016-5314.patch             \
-  %D%/packages/patches/libtiff-CVE-2016-5321.patch             \
-  %D%/packages/patches/libtiff-CVE-2016-5323.patch             \
-  %D%/packages/patches/libtiff-CVE-2016-5652.patch             \
-  %D%/packages/patches/libtiff-CVE-2016-9273.patch             \
-  %D%/packages/patches/libtiff-oob-accesses-in-decode.patch    \
-  %D%/packages/patches/libtiff-oob-write-in-nextdecode.patch   \
   %D%/packages/patches/libtool-skip-tests2.patch               \
   %D%/packages/patches/libunwind-CVE-2015-3239.patch           \
   %D%/packages/patches/libupnp-CVE-2016-6255.patch             \
@@ -700,6 +696,7 @@ dist_patch_DATA =                                           \
   %D%/packages/patches/luajit-no_ldconfig.patch                        \
   %D%/packages/patches/luajit-symlinks.patch                   \
   %D%/packages/patches/luit-posix.patch                                \
+  %D%/packages/patches/lvm2-static-link.patch                  \
   %D%/packages/patches/make-impure-dirs.patch                  \
   %D%/packages/patches/mars-install.patch                      \
   %D%/packages/patches/mars-sfml-2.3.patch                     \
@@ -785,6 +782,7 @@ dist_patch_DATA =                                           \
   %D%/packages/patches/pinball-src-deps.patch                  \
   %D%/packages/patches/pinball-system-ltdl.patch               \
   %D%/packages/patches/pingus-sdl-libs-config.patch            \
+  %D%/packages/patches/pixman-CVE-2016-5296.patch              \
   %D%/packages/patches/plink-1.07-unclobber-i.patch            \
   %D%/packages/patches/plink-endian-detection.patch            \
   %D%/packages/patches/plotutils-libpng-jmpbuf.patch           \
@@ -827,6 +825,7 @@ dist_patch_DATA =                                           \
   %D%/packages/patches/rapicorn-isnan.patch                    \
   %D%/packages/patches/ratpoison-shell.patch                   \
   %D%/packages/patches/readline-link-ncurses.patch             \
+  %D%/packages/patches/readline-6.2-CVE-2014-2524.patch                \
   %D%/packages/patches/ripperx-missing-file.patch              \
   %D%/packages/patches/rpm-CVE-2014-8118.patch                 \
   %D%/packages/patches/rsem-makefile.patch                     \
@@ -858,6 +857,7 @@ dist_patch_DATA =                                           \
   %D%/packages/patches/t1lib-CVE-2010-2642.patch               \
   %D%/packages/patches/t1lib-CVE-2011-0764.patch               \
   %D%/packages/patches/t1lib-CVE-2011-1552+CVE-2011-1553+CVE-2011-1554.patch           \
+  %D%/packages/patches/tar-CVE-2016-6321.patch                 \
   %D%/packages/patches/tar-skip-unreliable-tests.patch         \
   %D%/packages/patches/tcl-mkindex-deterministic.patch         \
   %D%/packages/patches/tclxml-3.2-install.patch                        \