[packages/ImageMagick] policy todo

glen glen at pld-linux.org
Wed May 4 22:55:08 CEST 2016


commit fc0ae2178f2c2be87c42d7ef9a17e4252e48b89c
Author: Elan Ruusamäe <glen at delfi.ee>
Date:   Wed May 4 23:53:19 2016 +0300

    policy todo
    
    especially considering latest ImageTragick exploit in wild
    https://imagetragick.com/

 ImageMagick.spec | 5 ++++-
 1 file changed, 4 insertions(+), 1 deletion(-)
---
diff --git a/ImageMagick.spec b/ImageMagick.spec
index ea1d2c6..f06a789 100644
--- a/ImageMagick.spec
+++ b/ImageMagick.spec
@@ -1,3 +1,6 @@
+# TODO
+# - create sane default policy file:
+#   https://www.imagemagick.org/discourse-server/viewtopic.php?f=4&t=26801
 #
 # Conditional build:
 # - features:
@@ -14,7 +17,7 @@
 %bcond_without	graphviz	# dot module (which uses GraphViz libraries)
 %bcond_without	openjpeg	# JPEG2000 module (which uses openjpeg 2 library)
 %bcond_without	wmf		# WMF module (which uses libwmf library)
-# - module feautres:
+# - module features:
 %bcond_without	autotrace	# Autotrace support in SVG module
 
 %define		ver	6.9.3
================================================================

---- gitweb:

http://git.pld-linux.org/gitweb.cgi/packages/ImageMagick.git/commitdiff/fc0ae2178f2c2be87c42d7ef9a17e4252e48b89c



More information about the pld-cvs-commit mailing list