gnu: mupdf: Fix CVE-2021-3407.
[jackhill/guix/guix.git] / gnu / local.mk
index 49a5925..25afb99 100644 (file)
@@ -7,7 +7,7 @@
 # Copyright © 2016, 2017, 2018 Kei Kebreau <kkebreau@posteo.net>
 # Copyright © 2016, 2017 Rene Saavedra <rennes@openmailbox.org>
 # Copyright © 2016 Adonay "adfeno" Felipe Nogueira <https://libreplanet.org/wiki/User:Adfeno> <adfeno@openmailbox.org>
-# Copyright © 2016, 2017, 2018, 2019, 2020 Ricardo Wurmus <rekado@elephly.net>
+# Copyright © 2016, 2017, 2018, 2019, 2020, 2021 Ricardo Wurmus <rekado@elephly.net>
 # Copyright © 2016 Ben Woodcroft <donttrustben@gmail.com>
 # Copyright © 2016, 2017, 2018, 2019 Alex Vong <alexvong1995@gmail.com>
 # Copyright © 2016, 2017, 2018, 2019, 2020, 2021 Efraim Flashner <efraim@flashner.co.il>
@@ -436,6 +436,7 @@ GNU_SYSTEM_MODULES =                                \
   %D%/packages/perl.scm                                \
   %D%/packages/perl-check.scm                  \
   %D%/packages/perl-compression.scm            \
+  %D%/packages/perl-maths.scm                  \
   %D%/packages/perl-web.scm                    \
   %D%/packages/perl6.scm                       \
   %D%/packages/photo.scm                       \
@@ -533,6 +534,7 @@ GNU_SYSTEM_MODULES =                                \
   %D%/packages/synergy.scm                     \
   %D%/packages/syndication.scm                 \
   %D%/packages/task-management.scm             \
+  %D%/packages/task-runners.scm                        \
   %D%/packages/tbb.scm                         \
   %D%/packages/tcl.scm                         \
   %D%/packages/telegram.scm                 \
@@ -605,6 +607,7 @@ GNU_SYSTEM_MODULES =                                \
   %D%/services/dns.scm                         \
   %D%/services/docker.scm                      \
   %D%/services/authentication.scm              \
+  %D%/services/file-sharing.scm                        \
   %D%/services/games.scm                       \
   %D%/services/ganeti.scm                      \
   %D%/services/getmail.scm                             \
@@ -661,6 +664,7 @@ GNU_SYSTEM_MODULES =                                \
   %D%/system/images/novena.scm                 \
   %D%/system/images/pine64.scm                 \
   %D%/system/images/pinebook-pro.scm           \
+  %D%/system/images/rock64.scm                 \
                                                \
   %D%/machine.scm                              \
                                                \
@@ -894,9 +898,6 @@ dist_patch_DATA =                                           \
   %D%/packages/patches/clang-runtime-3.9-libsanitizer-mode-field.patch \
   %D%/packages/patches/clang-runtime-3.8-libsanitizer-mode-field.patch \
   %D%/packages/patches/classpath-aarch64-support.patch         \
-  %D%/packages/patches/clementine-fix-sqlite.patch             \
-  %D%/packages/patches/clementine-remove-crypto++-dependency.patch     \
-  %D%/packages/patches/clementine-use-openssl.patch            \
   %D%/packages/patches/clucene-pkgconfig.patch                 \
   %D%/packages/patches/cmake-curl-certificates.patch           \
   %D%/packages/patches/coda-use-system-libs.patch              \
@@ -963,7 +964,6 @@ dist_patch_DATA =                                           \
   %D%/packages/patches/emacs-source-date-epoch.patch           \
   %D%/packages/patches/emacs-telega-patch-server-functions.patch       \
   %D%/packages/patches/emacs-telega-test-env.patch             \
-  %D%/packages/patches/emacs-undohist-ignored.patch    \
   %D%/packages/patches/emacs-wordnut-require-adaptive-wrap.patch       \
   %D%/packages/patches/enjarify-setup-py.patch                 \
   %D%/packages/patches/enlightenment-fix-setuid-path.patch     \
@@ -973,8 +973,6 @@ dist_patch_DATA =                                           \
   %D%/packages/patches/evolution-data-server-locales.patch     \
   %D%/packages/patches/evolution-data-server-libical-compat.patch      \
   %D%/packages/patches/exercism-disable-self-update.patch      \
-  %D%/packages/patches/exiv2-CVE-2017-14860.patch              \
-  %D%/packages/patches/exiv2-CVE-2017-14859-14862-14864.patch  \
   %D%/packages/patches/extempore-unbundle-external-dependencies.patch  \
   %D%/packages/patches/extundelete-e2fsprogs-1.44.patch                \
   %D%/packages/patches/farstream-make.patch                          \
@@ -1159,7 +1157,6 @@ dist_patch_DATA =                                         \
   %D%/packages/patches/hdf4-shared-fortran.patch               \
   %D%/packages/patches/hdf4-tirpc.patch                        \
   %D%/packages/patches/hdf5-config-date.patch                  \
-  %D%/packages/patches/hdf5-1.8-mpi-deprecations.patch         \
   %D%/packages/patches/hdf-eos2-build-shared.patch             \
   %D%/packages/patches/hdf-eos2-remove-gctp.patch              \
   %D%/packages/patches/hdf-eos2-fortrantests.patch             \
@@ -1167,7 +1164,7 @@ dist_patch_DATA =                                         \
   %D%/packages/patches/hdf-eos5-remove-gctp.patch              \
   %D%/packages/patches/hdf-eos5-fix-szip.patch                 \
   %D%/packages/patches/hdf-eos5-fortrantests.patch             \
-  %D%/packages/patches/http-parser-fix-assertion-on-armhf.patch        \
+  %D%/packages/patches/http-parser-CVE-2020-8287.patch         \
   %D%/packages/patches/hubbub-sort-entities.patch              \
   %D%/packages/patches/hurd-cross.patch                                \
   %D%/packages/patches/hurd-xattr.patch                                \
@@ -1330,7 +1327,6 @@ dist_patch_DATA =                                         \
   %D%/packages/patches/llvm-9-fix-scev-miscompilation.patch    \
   %D%/packages/patches/lm-sensors-hwmon-attrs.patch            \
   %D%/packages/patches/lrcalc-includes.patch                   \
-  %D%/packages/patches/lrzip-CVE-2017-8842.patch               \
   %D%/packages/patches/lsh-fix-x11-forwarding.patch            \
   %D%/packages/patches/lsof-fatal-test-failures.patch          \
   %D%/packages/patches/lua-CVE-2014-5461.patch                      \
@@ -1386,6 +1382,7 @@ dist_patch_DATA =                                         \
   %D%/packages/patches/mumps-shared-mumps.patch                        \
   %D%/packages/patches/mumps-shared-pord.patch                 \
   %D%/packages/patches/mupdf-fix-linkage.patch                 \
+  %D%/packages/patches/mupdf-CVE-2021-3407.patch               \
   %D%/packages/patches/mupen64plus-ui-console-notice.patch     \
   %D%/packages/patches/mupen64plus-video-z64-glew-correct-path.patch    \
   %D%/packages/patches/musl-cross-locale.patch                 \
@@ -1430,10 +1427,8 @@ dist_patch_DATA =                                                \
   %D%/packages/patches/openfoam-4.1-cleanup.patch                      \
   %D%/packages/patches/openjdk-10-idlj-reproducibility.patch   \
   %D%/packages/patches/openmpi-mtl-priorities.patch            \
-  %D%/packages/patches/openssh-fix-ssh-copy-id.patch           \
   %D%/packages/patches/openssh-hurd.patch                      \
   %D%/packages/patches/openresolv-restartcmd-guix.patch        \
-  %D%/packages/patches/openscad-parser-boost-1.72.patch        \
   %D%/packages/patches/opensles-add-license-file.patch                 \
   %D%/packages/patches/openssl-runpath.patch                   \
   %D%/packages/patches/openssl-1.1-c-rehash-in.patch           \
@@ -1523,11 +1518,13 @@ dist_patch_DATA =                                               \
   %D%/packages/patches/python-2.7-search-paths.patch           \
   %D%/packages/patches/python-2.7-site-prefixes.patch          \
   %D%/packages/patches/python-2.7-source-date-epoch.patch      \
+  %D%/packages/patches/python-2.7-CVE-2021-3177.patch          \
   %D%/packages/patches/python-3-arm-alignment.patch            \
   %D%/packages/patches/python-3-deterministic-build-info.patch \
   %D%/packages/patches/python-3-search-paths.patch             \
   %D%/packages/patches/python-3-fix-tests.patch                        \
   %D%/packages/patches/python-3.8-fix-tests.patch              \
+  %D%/packages/patches/python-3.8-CVE-2021-3177.patch          \
   %D%/packages/patches/python-3.9-fix-tests.patch              \
   %D%/packages/patches/python-CVE-2018-14647.patch             \
   %D%/packages/patches/python-CVE-2020-26116.patch             \
@@ -1543,6 +1540,8 @@ dist_patch_DATA =                                         \
   %D%/packages/patches/python-pyfakefs-remove-bad-test.patch   \
   %D%/packages/patches/python-flint-includes.patch             \
   %D%/packages/patches/python-libxml2-utf8.patch               \
+  %D%/packages/patches/python-matplotlib-run-under-wayland-gtk3.patch  \
+  %D%/packages/patches/python-mediafile-wavpack.patch          \
   %D%/packages/patches/python-memcached-syntax-warnings.patch  \
   %D%/packages/patches/python-mox3-python3.6-compat.patch      \
   %D%/packages/patches/python-testtools.patch                  \
@@ -1563,7 +1562,9 @@ dist_patch_DATA =                                         \
   %D%/packages/patches/python-waitress-fix-tests.patch         \
   %D%/packages/patches/pypy3-7.3.1-fix-tests.patch             \
   %D%/packages/patches/qemu-build-info-manual.patch            \
+  %D%/packages/patches/qemu-CVE-2021-20203.patch               \
   %D%/packages/patches/qemu-glibc-2.27.patch                   \
+  %D%/packages/patches/qpdfview-qt515-compat.patch             \
   %D%/packages/patches/qrcodegen-cpp-make-install.patch                \
   %D%/packages/patches/qt4-ldflags.patch                       \
   %D%/packages/patches/qtbase-absolute-runpath.patch           \
@@ -1593,14 +1594,11 @@ dist_patch_DATA =                                               \
   %D%/packages/patches/rtags-separate-rct.patch                        \
   %D%/packages/patches/racket-store-checksum-override.patch    \
   %D%/packages/patches/remake-impure-dirs.patch                        \
-  %D%/packages/patches/retroarch-disable-online-updater.patch  \
+  %D%/packages/patches/retroarch-LIBRETRO_DIRECTORY.patch      \
   %D%/packages/patches/rnp-add-version.cmake.patch             \
   %D%/packages/patches/rnp-disable-ruby-rnp-tests.patch                \
   %D%/packages/patches/rnp-unbundle-googletest.patch           \
-  %D%/packages/patches/ruby-rack-ignore-failing-test.patch     \
-  %D%/packages/patches/ruby-rubocop-break-dependency-cycle.patch\
   %D%/packages/patches/ruby-sanitize-system-libxml.patch       \
-  %D%/packages/patches/ruby-tzinfo-data-ignore-broken-test.patch\
   %D%/packages/patches/runc-CVE-2019-5736.patch                        \
   %D%/packages/patches/rust-1.19-mrustc.patch                  \
   %D%/packages/patches/rust-1.25-accept-more-detailed-gdb-lines.patch \
@@ -1620,6 +1618,7 @@ dist_patch_DATA =                                         \
   %D%/packages/patches/scheme48-tests.patch                    \
   %D%/packages/patches/scotch-build-parallelism.patch          \
   %D%/packages/patches/scotch-integer-declarations.patch       \
+  %D%/packages/patches/screen-CVE-2021-26937.patch             \
   %D%/packages/patches/screen-hurd-path-max.patch              \
   %D%/packages/patches/sdl-libx11-1.6.patch                    \
   %D%/packages/patches/seed-webkit.patch                       \
@@ -1715,9 +1714,6 @@ dist_patch_DATA =                                         \
   %D%/packages/patches/vinagre-newer-freerdp.patch             \
   %D%/packages/patches/vinagre-newer-rdp-parameters.patch      \
   %D%/packages/patches/virglrenderer-CVE-2017-6386.patch       \
-  %D%/packages/patches/vorbis-tools-CVE-2014-9638+CVE-2014-9639.patch          \
-  %D%/packages/patches/vorbis-tools-CVE-2014-9640.patch                \
-  %D%/packages/patches/vorbis-tools-CVE-2015-6749.patch                \
   %D%/packages/patches/vsearch-unbundle-cityhash.patch         \
   %D%/packages/patches/vte-CVE-2012-2738-pt1.patch                     \
   %D%/packages/patches/vte-CVE-2012-2738-pt2.patch                     \
@@ -1736,6 +1732,7 @@ dist_patch_DATA =                                         \
   %D%/packages/patches/wordnet-CVE-2008-2149.patch                     \
   %D%/packages/patches/wordnet-CVE-2008-3908-pt1.patch                 \
   %D%/packages/patches/wordnet-CVE-2008-3908-pt2.patch                 \
+  %D%/packages/patches/wpa-supplicant-CVE-2021-27803.patch     \
   %D%/packages/patches/x265-arm-flags.patch                    \
   %D%/packages/patches/xf86-video-ark-remove-mibstore.patch    \
   %D%/packages/patches/xf86-video-mach64-glibc-2.20.patch      \