Skip to content

Commit c202a55

Browse files
CBL-Mariner-BotKanishk-Bansalsameluchjslobodzian
authored
[AUTOPATCHER-CORE] Upgrade glib to 2.78.6 for CVE-2024-34397 [Medium] (#12828)
Co-authored-by: Kanishk Bansal <[email protected]> Co-authored-by: Sam Meluch <[email protected]> Co-authored-by: jslobodzian <[email protected]>
1 parent 50d9f48 commit c202a55

File tree

7 files changed

+22
-19
lines changed

7 files changed

+22
-19
lines changed

SPECS/glib/glib.signatures.json

+3-3
Original file line numberDiff line numberDiff line change
@@ -1,5 +1,5 @@
11
{
2-
"Signatures": {
3-
"glib-2.78.1.tar.xz": "915bc3d0f8507d650ead3832e2f8fb670fce59aac4d7754a7dab6f1e6fed78b2"
4-
}
2+
"Signatures": {
3+
"glib-2.78.6.tar.xz": "244854654dd82c7ebcb2f8e246156d2a05eb9cd1ad07ed7a779659b4602c9fae"
4+
}
55
}

SPECS/glib/glib.spec

+5-2
Original file line numberDiff line numberDiff line change
@@ -1,8 +1,8 @@
11
%define majorver %(echo %{version} | cut -d. -f1-2)
22
Summary: Low-level libraries useful for providing data structure handling for C.
33
Name: glib
4-
Version: 2.78.1
5-
Release: 5%{?dist}
4+
Version: 2.78.6
5+
Release: 1%{?dist}
66
License: LGPLv2+
77
Vendor: Microsoft Corporation
88
Distribution: Azure Linux
@@ -122,6 +122,9 @@ touch %{buildroot}%{_libdir}/gio/modules/giomodule.cache
122122
%doc %{_datadir}/gtk-doc/html/*
123123

124124
%changelog
125+
* Wed Mar 05 2025 CBL-Mariner Servicing Account <[email protected]> - 2.78.6-1
126+
- Auto-upgrade to 2.78.6 - for CVE-2024-34397
127+
125128
* Thu Nov 14 2024 Sharath Srikanth Chellappa <[email protected]> - 2.78.1-5
126129
- Patch CVE-2024-52533
127130

cgmanifest.json

+2-2
Original file line numberDiff line numberDiff line change
@@ -4380,8 +4380,8 @@
43804380
"type": "other",
43814381
"other": {
43824382
"name": "glib",
4383-
"version": "2.78.1",
4384-
"downloadUrl": "https://ftp.gnome.org/pub/gnome/sources/glib/2.78/glib-2.78.1.tar.xz"
4383+
"version": "2.78.6",
4384+
"downloadUrl": "https://ftp.gnome.org/pub/gnome/sources/glib/2.78/glib-2.78.6.tar.xz"
43854385
}
43864386
}
43874387
},

toolkit/resources/manifests/package/pkggen_core_aarch64.txt

+1-1
Original file line numberDiff line numberDiff line change
@@ -208,7 +208,7 @@ libxml2-devel-2.11.5-4.azl3.aarch64.rpm
208208
docbook-dtd-xml-4.5-11.azl3.noarch.rpm
209209
docbook-style-xsl-1.79.1-14.azl3.noarch.rpm
210210
libsepol-3.6-1.azl3.aarch64.rpm
211-
glib-2.78.1-5.azl3.aarch64.rpm
211+
glib-2.78.6-1.azl3.aarch64.rpm
212212
libltdl-2.4.7-1.azl3.aarch64.rpm
213213
libltdl-devel-2.4.7-1.azl3.aarch64.rpm
214214
lua-5.4.6-1.azl3.aarch64.rpm

toolkit/resources/manifests/package/pkggen_core_x86_64.txt

+1-1
Original file line numberDiff line numberDiff line change
@@ -208,7 +208,7 @@ libxml2-devel-2.11.5-4.azl3.x86_64.rpm
208208
docbook-dtd-xml-4.5-11.azl3.noarch.rpm
209209
docbook-style-xsl-1.79.1-14.azl3.noarch.rpm
210210
libsepol-3.6-1.azl3.x86_64.rpm
211-
glib-2.78.1-5.azl3.x86_64.rpm
211+
glib-2.78.6-1.azl3.x86_64.rpm
212212
libltdl-2.4.7-1.azl3.x86_64.rpm
213213
libltdl-devel-2.4.7-1.azl3.x86_64.rpm
214214
lua-5.4.6-1.azl3.x86_64.rpm

toolkit/resources/manifests/package/toolchain_aarch64.txt

+5-5
Original file line numberDiff line numberDiff line change
@@ -120,11 +120,11 @@ gdbm-lang-1.23-1.azl3.aarch64.rpm
120120
gettext-0.22-1.azl3.aarch64.rpm
121121
gettext-debuginfo-0.22-1.azl3.aarch64.rpm
122122
gfortran-13.2.0-7.azl3.aarch64.rpm
123-
glib-2.78.1-5.azl3.aarch64.rpm
124-
glib-debuginfo-2.78.1-5.azl3.aarch64.rpm
125-
glib-devel-2.78.1-5.azl3.aarch64.rpm
126-
glib-doc-2.78.1-5.azl3.noarch.rpm
127-
glib-schemas-2.78.1-5.azl3.aarch64.rpm
123+
glib-2.78.6-1.azl3.aarch64.rpm
124+
glib-debuginfo-2.78.6-1.azl3.aarch64.rpm
125+
glib-devel-2.78.6-1.azl3.aarch64.rpm
126+
glib-doc-2.78.6-1.azl3.noarch.rpm
127+
glib-schemas-2.78.6-1.azl3.aarch64.rpm
128128
glibc-2.38-9.azl3.aarch64.rpm
129129
glibc-debuginfo-2.38-9.azl3.aarch64.rpm
130130
glibc-devel-2.38-9.azl3.aarch64.rpm

toolkit/resources/manifests/package/toolchain_x86_64.txt

+5-5
Original file line numberDiff line numberDiff line change
@@ -127,11 +127,11 @@ gdbm-lang-1.23-1.azl3.x86_64.rpm
127127
gettext-0.22-1.azl3.x86_64.rpm
128128
gettext-debuginfo-0.22-1.azl3.x86_64.rpm
129129
gfortran-13.2.0-7.azl3.x86_64.rpm
130-
glib-2.78.1-5.azl3.x86_64.rpm
131-
glib-debuginfo-2.78.1-5.azl3.x86_64.rpm
132-
glib-devel-2.78.1-5.azl3.x86_64.rpm
133-
glib-doc-2.78.1-5.azl3.noarch.rpm
134-
glib-schemas-2.78.1-5.azl3.x86_64.rpm
130+
glib-2.78.6-1.azl3.x86_64.rpm
131+
glib-debuginfo-2.78.6-1.azl3.x86_64.rpm
132+
glib-devel-2.78.6-1.azl3.x86_64.rpm
133+
glib-doc-2.78.6-1.azl3.noarch.rpm
134+
glib-schemas-2.78.6-1.azl3.x86_64.rpm
135135
glibc-2.38-9.azl3.x86_64.rpm
136136
glibc-debuginfo-2.38-9.azl3.x86_64.rpm
137137
glibc-devel-2.38-9.azl3.x86_64.rpm

0 commit comments

Comments
 (0)