forked from wolfi-dev/os
-
Notifications
You must be signed in to change notification settings - Fork 0
Expand file tree
/
Copy pathbinutils.yaml
More file actions
82 lines (82 loc) · 2.15 KB
/
Copy pathbinutils.yaml
File metadata and controls
82 lines (82 loc) · 2.15 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
package:
name: binutils
version: 2.40
epoch: 2
description: "GNU binutils"
copyright:
- license: GPL-3.0-or-later
dependencies:
runtime:
secfixes:
2.39-r1:
- CVE-2022-38126
2.39-r2:
- CVE-2022-38533
2.39-r3:
- CVE-2022-38128
environment:
contents:
repositories:
- https://packages.wolfi.dev/bootstrap/stage3
keyring:
- https://packages.wolfi.dev/bootstrap/stage3/wolfi-signing.rsa.pub
packages:
- wolfi-baselayout
- busybox
- ca-certificates-bundle
- build-base
- isl
- texinfo
pipeline:
- uses: fetch
with:
uri: https://ftp.gnu.org/gnu/binutils/binutils-${{package.version}}.tar.gz
expected-sha256: d7f82c4047decf43a6f769ac32456a92ddb6932409a585c633cdd4e9df23d956
- name: 'Configure binutils'
runs: |
./configure \
--prefix=/usr \
--build=$(./config.guess) \
--host=${{host.triplet.gnu}} \
--target=${{host.triplet.gnu}} \
--disable-nls \
--disable-werror \
--disable-multilib \
--disable-gprofng \
--enable-deterministic-archives \
--enable-ld=default \
--enable-gold \
--enable-plugins \
--enable-default-execstack=no \
--enable-default-hash-style=gnu \
--enable-textrel-check=error
- uses: autoconf/make
- uses: autoconf/make-install
- name: 'Clean up documentation'
runs: |
rm -rf ${{targets.destdir}}/usr/share/info
- uses: strip
subpackages:
- name: "binutils-dev"
description: "binutils development headers"
pipeline:
- uses: split/dev
- name: "binutils-gold"
description: "binutils (gold linker)"
pipeline:
- runs: |
mkdir -p "${{targets.subpkgdir}}"/usr/bin
mv "${{targets.destdir}}"/usr/bin/ld.gold "${{targets.subpkgdir}}"/usr/bin/
advisories:
CVE-2022-38126:
- timestamp: 2022-09-16T16:42:40+00:00
status: fixed
fixed-version: 2.39-r1
CVE-2022-38128:
- timestamp: 2022-10-11T20:03:51+00:00
status: fixed
fixed-version: 2.39-r3
CVE-2022-38533:
- timestamp: 2022-09-16T16:42:40+00:00
status: fixed
fixed-version: 2.39-r2