[Bug 267128] audio/sox: Update to latest commit (20210509)

From: <bugzilla-noreply_at_freebsd.org>
Date: Sun, 16 Oct 2022 16:41:30 UTC
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=267128

            Bug ID: 267128
           Summary: audio/sox: Update to latest commit (20210509)
           Product: Ports & Packages
           Version: Latest
          Hardware: Any
                OS: Any
            Status: New
          Severity: Affects Only Me
          Priority: ---
         Component: Individual Port(s)
          Assignee: ports-bugs@FreeBSD.org
          Reporter: diizzy@FreeBSD.org
                CC: dnelson@allantgroup.com
             Flags: maintainer-feedback?(dnelson@allantgroup.com)
                CC: dnelson@allantgroup.com

Created attachment 237380
  --> https://bugs.freebsd.org/bugzilla/attachment.cgi?id=237380&action=edit
Patch for sox

Since development seems to progress very slowly just follow other distros and
update to latest commit (using Gentoo's distfile)
Import fix for vorbis encoder:
https://github.com/doremir/sox/commit/d05aba55a86177f7a3d395c7a03c5c4e280b31fb

This also fixes following CVEs:
CVE-2019-13590
CVE-2019-8357
CVE-2019-8356
CVE-2019-8355
CVE-2019-8354
CVE-2017-18189
CVE-2017-15642
CVE-2017-15372
CVE-2017-15371
CVE-2017-15370
CVE-2017-11359
CVE-2017-11358
CVE-2017-11332

I'm not a user of SoX so it's very briefly tested but given that other
distributions have imported this version there shouldn't be any major issues.

Compile and runtime tested on FreeBSD 13.1-STABLE (amd64) (make, make
check-plist, make test)
Poudriere testport OK 12.3-RELEASE (amd64)
Poudriere testport OK 13.1-RELEASE (i386)

It would also be very nice if we could get mpg123 support imported as it's much
faster than mad(lib) and better maintained.
https://github.com/doremir/sox/commits/master

-- 
You are receiving this mail because:
You are the assignee for the bug.