From 420385f81a9b3d288e9ab975bd980643e12b5fec Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Vladim=C3=ADr=20=C4=8Cun=C3=A1t?= Date: Sat, 6 Sep 2014 21:26:03 +0200 Subject: [PATCH] lua-5.2: minor update to fix CVE-2014-5461 Note that almost all packages use lua-5.1 which does remain vulnerable, as they released no update on that branch. CC: @peti. --- pkgs/development/interpreters/lua-5/5.2.nix | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/pkgs/development/interpreters/lua-5/5.2.nix b/pkgs/development/interpreters/lua-5/5.2.nix index ea44adb462c..1839e7789a8 100644 --- a/pkgs/development/interpreters/lua-5/5.2.nix +++ b/pkgs/development/interpreters/lua-5/5.2.nix @@ -10,11 +10,11 @@ in stdenv.mkDerivation rec { name = "lua-${version}"; majorVersion = "5.2"; - version = "${majorVersion}.2"; + version = "${majorVersion}.3"; src = fetchurl { url = "http://www.lua.org/ftp/${name}.tar.gz"; - sha256 = "004zyh9p3lpvbwhyhlmrw6wwcia5abx84q4h2brkn4zdypipvmiz"; + sha1 = "926b7907bc8d274e063d42804666b40a3f3c124c"; }; nativeBuildInputs = [ readline ];