commit:     f8f71416f769ad7882a078c9cd417f1d26eee78b
Author:     Sergey Torokhov <torokhov-s-a <AT> yandex <DOT> ru>
AuthorDate: Wed Nov 12 20:09:15 2025 +0000
Commit:     Sergey Torokhov <torokhov-s-a <AT> yandex <DOT> ru>
CommitDate: Wed Nov 12 20:09:15 2025 +0000
URL:        https://gitweb.gentoo.org/repo/proj/guru.git/commit/?id=f8f71416

app-office/openoffice-bin: 4.1.16 version bump (drop 4.1.16_rc3)

Manifest files checksums for 4.1.16 are the same as for 4.1.16_rc3.

Release notes is available on [1].

Fixed in Apache OpenOffice 4.1.16 [2]:
CVE-2025-64401: Remote documents loaded without prompt via IFrame.
CVE-2025-64402: Remote documents loaded without prompt via OLE objects.
CVE-2025-64403: Remote documents loaded without prompt via "external data 
sources" in Calc.
CVE-2025-64404: Remote documents loaded without prompt via background and 
bullet images.
CVE-2025-64405: Remote documents loaded without prompt via DDE function.
CVE-2025-64406: Possible memory corruption during CSV import.
CVE-2025-64407: URL fetching can be used to exfiltrate arbitrary INI file 
values and environment variables.

[1] 
https://cwiki.apache.org/confluence/display/OOOUSERS/AOO+4.1.16+Release+Notes
[2] https://www.openoffice.org/security/bulletin.html

Signed-off-by: Sergey Torokhov <torokhov-s-a <AT> yandex.ru>

 ...fice-bin-4.1.16_rc3.ebuild => openoffice-bin-4.1.16.ebuild} | 10 +++++-----
 1 file changed, 5 insertions(+), 5 deletions(-)

diff --git a/app-office/openoffice-bin/openoffice-bin-4.1.16_rc3.ebuild 
b/app-office/openoffice-bin/openoffice-bin-4.1.16.ebuild
similarity index 92%
rename from app-office/openoffice-bin/openoffice-bin-4.1.16_rc3.ebuild
rename to app-office/openoffice-bin/openoffice-bin-4.1.16.ebuild
index 5a51a7acc1..1b9c19a8d9 100644
--- a/app-office/openoffice-bin/openoffice-bin-4.1.16_rc3.ebuild
+++ b/app-office/openoffice-bin/openoffice-bin-4.1.16.ebuild
@@ -14,7 +14,7 @@ NM="openoffice"
 NM1="${NM}-brand"
 NM2="${NM}4"
 NM3="${NM2}.$(ver_cut 2-3)"
-FILEPATH="https://dist.apache.org/repos/dist/dev/openoffice/4.1.16-RC3/binaries";
+FILEPATH="https://downloads.sourceforge.net/openofficeorg.mirror";
 if [ "${ARCH}" = "amd64" ] ; then
        XARCH="x86_64"
 else
@@ -25,8 +25,8 @@ UP="en-US/RPMS"
 DESCRIPTION="Apache OpenOffice productivity suite"
 HOMEPAGE="https://www.openoffice.org/";
 SRC_URI="
-       amd64? ( 
"${FILEPATH}"/en-US/Apache_OpenOffice_${PV/_rc*/}_Linux_x86-64_install-rpm_en-US.tar.gz
 )
-       x86? ( 
"${FILEPATH}"/en-US/Apache_OpenOffice_${PV/_rc*/}_Linux_x86_install-rpm_en-US.tar.gz
 )
+       amd64? ( 
"${FILEPATH}"/Apache_OpenOffice_${PV}_Linux_x86-64_install-rpm_en-US.tar.gz )
+       x86? ( 
"${FILEPATH}"/Apache_OpenOffice_${PV}_Linux_x86_install-rpm_en-US.tar.gz )
 "
 
 S="${WORKDIR}"
@@ -43,8 +43,8 @@ LANGS="ast eu bg ca ca-valencia zh-CN zh-TW cs da nl en-GB fi 
fr gd gl de el he
 for X in ${LANGS} ; do
        IUSE="${IUSE} l10n_${X}"
        SRC_URI+=" l10n_${X}? (
-               amd64? ( 
"${FILEPATH}/${X/ca-valencia/ca-XV}"/Apache_OpenOffice_${PV/_rc*/}_Linux_x86-64_langpack-rpm_${X/ca-valencia/ca-XV}.tar.gz
 )
-               x86? ( 
"${FILEPATH}/${X/ca-valencia/ca-XV}"/Apache_OpenOffice_${PV/_rc*/}_Linux_x86_langpack-rpm_${X/ca-valencia/ca-XV}.tar.gz
 ) )"
+               amd64? ( 
"${FILEPATH}"/Apache_OpenOffice_${PV}_Linux_x86-64_langpack-rpm_${X/ca-valencia/ca-XV}.tar.gz
 )
+               x86? ( 
"${FILEPATH}"/Apache_OpenOffice_${PV}_Linux_x86_langpack-rpm_${X/ca-valencia/ca-XV}.tar.gz
 ) )"
 done
 
 RDEPEND="

Reply via email to