From 0d1b14161acc0c79b0712ea4f4c476684bfa41a3 Mon Sep 17 00:00:00 2001 From: Thomas Gerbet Date: Sun, 23 May 2021 12:00:44 +0200 Subject: [PATCH] redis: 6.2.1 -> 6.2.3 Fixes CVE-2021-29477 and CVE-2021-29478. https://github.com/redis/redis/blob/6.2.3/00-RELEASENOTES --- pkgs/servers/nosql/redis/default.nix | 6 ++++-- 1 file changed, 4 insertions(+), 2 deletions(-) diff --git a/pkgs/servers/nosql/redis/default.nix b/pkgs/servers/nosql/redis/default.nix index 48dcbb8f8138..5856d0d17b53 100644 --- a/pkgs/servers/nosql/redis/default.nix +++ b/pkgs/servers/nosql/redis/default.nix @@ -5,20 +5,22 @@ stdenv.mkDerivation rec { pname = "redis"; - version = "6.2.1"; + version = "6.2.3"; src = fetchurl { url = "https://download.redis.io/releases/${pname}-${version}.tar.gz"; - sha256 = "sha256-zSIlBQEsziCyVoL8qTHsk70hrpLLSr/nQs97dqqQdSA="; + sha256 = "sha256-mO19UytelnH13wglu3Hw83SDoWVGNkBJOExj24dkUSs="; }; # Cross-compiling fixes configurePhase = '' + runHook preConfigure ${lib.optionalString (stdenv.buildPlatform != stdenv.hostPlatform) '' # This fixes hiredis, which has the AR awkwardly coded. # Probably a good candidate for a patch upstream. makeFlagsArray+=('STLIB_MAKE_CMD=${stdenv.cc.targetPrefix}ar rcs $(STLIBNAME)') ''} + runHook postConfigure ''; nativeBuildInputs = [ pkg-config ];