diff --git a/CVE-2021-4048-1.patch b/CVE-2021-4048-1.patch deleted file mode 100644 index 2543cc1f8cd4fe832dbaf891898211f13b3a0009..0000000000000000000000000000000000000000 --- a/CVE-2021-4048-1.patch +++ /dev/null @@ -1,22 +0,0 @@ -From 2be5ee3cca97a597f2ee2118808a2d5eacea050c Mon Sep 17 00:00:00 2001 -From: Martin Kroeker -Date: Fri, 1 Oct 2021 11:17:21 +0200 -Subject: [PATCH] Fix out of bounds read in ?llarv (Reference-LAPACK PR 625) - ---- - lapack-netlib/SRC/clarrv.f | 2 +- - 1 file changed, 1 insertion(+), 1 deletion(-) - -diff --git a/lapack-netlib/SRC/clarrv.f b/lapack-netlib/SRC/clarrv.f -index a45f55ac3..26a9febc8 100644 ---- a/lapack-netlib/SRC/clarrv.f -+++ b/lapack-netlib/SRC/clarrv.f -@@ -351,7 +351,7 @@ SUBROUTINE CLARRV( N, VL, VU, D, L, PIVMIN, - * - * Quick return if possible - * -- IF( N.LE.0 ) THEN -+ IF( (N.LE.0) .OR. (M.LE.0) ) THEN - RETURN - END IF - * diff --git a/CVE-2021-4048-2.patch b/CVE-2021-4048-2.patch deleted file mode 100644 index 17a5875260cf90315714f22fac09d9af6a9eb058..0000000000000000000000000000000000000000 --- a/CVE-2021-4048-2.patch +++ /dev/null @@ -1,22 +0,0 @@ -From 337b65133df174796794871b3988cd03426e6d41 Mon Sep 17 00:00:00 2001 -From: Martin Kroeker -Date: Fri, 1 Oct 2021 11:19:53 +0200 -Subject: [PATCH] Fix out of bounds read in ?llarv (Reference-LAPACK PR 625) - ---- - lapack-netlib/SRC/zlarrv.f | 2 +- - 1 file changed, 1 insertion(+), 1 deletion(-) - -diff --git a/lapack-netlib/SRC/zlarrv.f b/lapack-netlib/SRC/zlarrv.f -index 23976dbef..8d10e3c2e 100644 ---- a/lapack-netlib/SRC/zlarrv.f -+++ b/lapack-netlib/SRC/zlarrv.f -@@ -351,7 +351,7 @@ SUBROUTINE ZLARRV( N, VL, VU, D, L, PIVMIN, - * - * Quick return if possible - * -- IF( N.LE.0 ) THEN -+ IF( (N.LE.0).OR.(M.LE.0) ) THEN - RETURN - END IF - * diff --git a/CVE-2021-4048-3.patch b/CVE-2021-4048-3.patch deleted file mode 100644 index cf55886a2bebe735f3a349f67958b11395c0b031..0000000000000000000000000000000000000000 --- a/CVE-2021-4048-3.patch +++ /dev/null @@ -1,22 +0,0 @@ -From ddb0ff5353637bb5f5ad060c9620e334c143e3d7 Mon Sep 17 00:00:00 2001 -From: Martin Kroeker -Date: Fri, 1 Oct 2021 11:19:07 +0200 -Subject: [PATCH] Fix out of bounds read in ?llarv (Reference-LAPACK PR 625) - ---- - lapack-netlib/SRC/slarrv.f | 2 +- - 1 file changed, 1 insertion(+), 1 deletion(-) - -diff --git a/lapack-netlib/SRC/slarrv.f b/lapack-netlib/SRC/slarrv.f -index 04519fde8..9448b2fd9 100644 ---- a/lapack-netlib/SRC/slarrv.f -+++ b/lapack-netlib/SRC/slarrv.f -@@ -353,7 +353,7 @@ SUBROUTINE SLARRV( N, VL, VU, D, L, PIVMIN, - * - * Quick return if possible - * -- IF( N.LE.0 ) THEN -+ IF( (N.LE.0).OR.(M.LE.0) ) THEN - RETURN - END IF - * diff --git a/CVE-2021-4048-4.patch b/CVE-2021-4048-4.patch deleted file mode 100644 index a6f6f4276e8ec01d3758c05d7219a59a9aa5b785..0000000000000000000000000000000000000000 --- a/CVE-2021-4048-4.patch +++ /dev/null @@ -1,22 +0,0 @@ -From fe497efa0510466fd93578aaf9da1ad8ed4edbe7 Mon Sep 17 00:00:00 2001 -From: Martin Kroeker -Date: Fri, 1 Oct 2021 11:18:20 +0200 -Subject: [PATCH] Fix out of bounds read in ?llarv (Reference-LAPACK PR 625) - ---- - lapack-netlib/SRC/dlarrv.f | 2 +- - 1 file changed, 1 insertion(+), 1 deletion(-) - -diff --git a/lapack-netlib/SRC/dlarrv.f b/lapack-netlib/SRC/dlarrv.f -index 4a59a2bbf..a1c6e9c9d 100644 ---- a/lapack-netlib/SRC/dlarrv.f -+++ b/lapack-netlib/SRC/dlarrv.f -@@ -353,7 +353,7 @@ SUBROUTINE DLARRV( N, VL, VU, D, L, PIVMIN, - * - * Quick return if possible - * -- IF( N.LE.0 ) THEN -+ IF( (N.LE.0).OR.(M.LE.0) ) THEN - RETURN - END IF - * diff --git a/openblas-0.3.13.tar.gz b/openblas-0.3.18.tar.gz similarity index 59% rename from openblas-0.3.13.tar.gz rename to openblas-0.3.18.tar.gz index 6e41110ce5a38b736b3aaabb49736943af620d06..86d37040a10275b0a654a83139010e6e15faa16e 100644 Binary files a/openblas-0.3.13.tar.gz and b/openblas-0.3.18.tar.gz differ diff --git a/openblas.spec b/openblas.spec index a055112314f8c8c5aab0439781cdb2dc3b8c2b42..9d14b0384e15651ea1b2a570c74f82e3c0890ba1 100644 --- a/openblas.spec +++ b/openblas.spec @@ -1,8 +1,8 @@ %bcond_with system_lapack Name: openblas -Version: 0.3.13 -Release: 3 +Version: 0.3.18 +Release: 1 Summary: An optimized BLAS library based on GotoBLAS2 1.13 BSD version License: BSD URL: https://github.com/xianyi/OpenBLAS/ @@ -10,10 +10,6 @@ Source0: https://github.com/xianyi/OpenBLAS/archive/v%{version}/openblas- Patch0000: openblas-0.2.15-system_lapack.patch Patch0001: openblas-0.2.5-libname.patch Patch0002: openblas-0.3.7-tests.patch -Patch0003: CVE-2021-4048-1.patch -Patch0004: CVE-2021-4048-2.patch -Patch0005: CVE-2021-4048-3.patch -Patch0006: CVE-2021-4048-4.patch Requires: %{name}-devel = %{version}-%{release} BuildRequires: gcc gcc-gfortran perl-devel gcc-c++ @@ -62,10 +58,6 @@ cd OpenBLAS-%{version} %endif %patch0001 -p1 -b .libname %patch0002 -p1 -b .tests -%patch0003 -p1 -%patch0004 -p1 -%patch0005 -p1 -%patch0006 -p1 # Set source permissions find -name \*.f -exec chmod 644 {} \; @@ -359,6 +351,9 @@ rm -rf %{buildroot}%{_libdir}/pkgconfig %{_libdir}/lib%{name}*64_.so %changelog +* Mon Dec 27 2021 zhouwenpei - 0.3.18-1 +- Upgrade to 0.3.18 + * Mon Dec 20 2021 houyingchao - 0.3.13-3 - Fix CVE-2021-4048