Merge pull request #200696 from mayflower/redis-patch-cve-2022-3647

redis: patch for CVE-2022-3647

Changed files
+10 -1
pkgs
servers
nosql
redis
+10 -1
pkgs/servers/nosql/redis/default.nix
···
{ lib, stdenv, fetchurl, lua, pkg-config, nixosTests
-
, tcl, which, ps
+
, tcl, which, ps, fetchpatch
, withSystemd ? stdenv.isLinux && !stdenv.hostPlatform.isStatic, systemd
# dependency ordering is broken at the moment when building with openssl
, tlsSupport ? !stdenv.hostPlatform.isStatic, openssl
···
url = "https://download.redis.io/releases/${pname}-${version}.tar.gz";
hash = "sha256-ZwVMw3tYwSXfk714AAJh7A70Q2omtA84Jix4DlYxXMM=";
};
+
+
patches = [
+
# https://nvd.nist.gov/vuln/detail/CVE-2022-3647
+
(fetchpatch {
+
name = "CVE-2022-3647.patch";
+
url = "https://github.com/redis/redis/commit/0bf90d944313919eb8e63d3588bf63a367f020a3.patch";
+
sha256 = "sha256-R5Tj/bHFTRnvWXiOYvRulqePzU5zvKbGfpO87TLfLWk=";
+
})
+
];
nativeBuildInputs = [ pkg-config ];