From 66f2affcc684bf0a654dad6cbe61385b07ca6876 Mon Sep 17 00:00:00 2001 From: Thomas Gerbet Date: Sun, 17 Mar 2024 13:00:32 +0100 Subject: [PATCH] pgadmin4: apply patch for CVE-2024-2044 https://github.com/pgadmin-org/pgadmin4/issues/7258 --- pkgs/tools/admin/pgadmin/default.nix | 6 ++++++ 1 file changed, 6 insertions(+) diff --git a/pkgs/tools/admin/pgadmin/default.nix b/pkgs/tools/admin/pgadmin/default.nix index 117f02a593bac..787736d7f46ed 100644 --- a/pkgs/tools/admin/pgadmin/default.nix +++ b/pkgs/tools/admin/pgadmin/default.nix @@ -103,6 +103,12 @@ pythonPackages.buildPythonApplication rec { ./expose-setup.py.patch # check for permission of /etc/pgadmin/config_system and don't fail ./check-system-config-dir.patch + (fetchpatch { + name = "CVE-2024-2044.patch"; + url = "https://github.com/pgadmin-org/pgadmin4/commit/4e49d752fba72953acceeb7f4aa2e6e32d25853d.patch"; + hash = "sha256-uIOWefMjbequVfS6haJeSbXv/I6ZdA7uCEwCZSnCtRM="; + excludes = [ "docs/en_US/release_notes_8_4.rst" ]; + }) ]; postPatch = ''