aboutsummaryrefslogtreecommitdiffstats
path: root/Library/Formula
diff options
context:
space:
mode:
Diffstat (limited to 'Library/Formula')
-rw-r--r--Library/Formula/libyaml.rb8
1 files changed, 8 insertions, 0 deletions
diff --git a/Library/Formula/libyaml.rb b/Library/Formula/libyaml.rb
index a89e278ce..3efefd813 100644
--- a/Library/Formula/libyaml.rb
+++ b/Library/Formula/libyaml.rb
@@ -3,6 +3,7 @@ class Libyaml < Formula
url "http://pyyaml.org/download/libyaml/yaml-0.1.6.tar.gz"
mirror "https://mirrors.kernel.org/debian/pool/main/liby/libyaml/libyaml_0.1.6.orig.tar.gz"
sha1 "f3d404e11bec3c4efcddfd14c42d46f1aabe0b5d"
+ revision 1
bottle do
cellar :any
@@ -14,6 +15,13 @@ class Libyaml < Formula
option :universal
+ # address CVE-2014-9130
+ # https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2014-9130
+ patch do
+ url "https://bitbucket.org/xi/libyaml/commits/2b9156756423e967cfd09a61d125d883fca6f4f2/raw/"
+ sha1 "174dbe1f5161853cdb1c6ba94df6a826cf25870c"
+ end
+
def install
ENV.universal_binary if build.universal?