From 04ca7026250b634729bec87a2fb80af68063b40a Mon Sep 17 00:00:00 2001 From: Robert Scott Date: Wed, 31 Aug 2022 22:42:05 +0100 Subject: [PATCH] poppler: add patch for CVE-2022-38784 Close #189196 (original PR) --- pkgs/development/libraries/poppler/default.nix | 8 ++++++++ 1 file changed, 8 insertions(+) diff --git a/pkgs/development/libraries/poppler/default.nix b/pkgs/development/libraries/poppler/default.nix index 59b4258420cb3f6..b9098789908581e 100644 --- a/pkgs/development/libraries/poppler/default.nix +++ b/pkgs/development/libraries/poppler/default.nix @@ -44,6 +44,14 @@ stdenv.mkDerivation rec { sha256 = "sha256-tJMyhyFALyXLdSP5zcL318WfRa2Zm951xjyQYE2w8gs="; }; + patches = [ + (fetchpatch { + name = "CVE-2022-38784.patch"; + url = "https://gitlab.freedesktop.org/poppler/poppler/-/commit/27354e9d9696ee2bc063910a6c9a6b27c5184a52.patch"; + sha256 = "sha256-M12zaHxcgQB/37tHffllqzd+Juq9BH5gpKVGaRY00vI="; + }) + ]; + nativeBuildInputs = [ cmake ninja