about summary refs log tree commit diff
path: root/pkgs/build-support
diff options
context:
space:
mode:
authorPol Dellaiera <pol.dellaiera@protonmail.com>2023-09-29 11:23:30 +0200
committerPol Dellaiera <pol.dellaiera@protonmail.com>2023-09-29 12:25:04 +0200
commita39417a6732cc5d2db0579d4d01a7f1a4f48a408 (patch)
tree2f31b2d2fc89d55314f2ac8fb614a3740fdee246 /pkgs/build-support
parent47a9fc3fb32613507467fba603d0390c9f06d32b (diff)
phpPackages.composer: 2.6.3 -> 2.6.4
Security release: To be mitigated since we are not using a publicly accessible composer.phar (GHSA-jm6m-4632-36hf / CVE-2023-43655).

Changelog: https://github.com/composer/composer/releases/tag/2.6.4
Diffstat (limited to 'pkgs/build-support')
-rw-r--r--pkgs/build-support/php/pkgs/composer-phar.nix4
1 files changed, 2 insertions, 2 deletions
diff --git a/pkgs/build-support/php/pkgs/composer-phar.nix b/pkgs/build-support/php/pkgs/composer-phar.nix
index 3efd9098d6df5..7269d3029b6b6 100644
--- a/pkgs/build-support/php/pkgs/composer-phar.nix
+++ b/pkgs/build-support/php/pkgs/composer-phar.nix
@@ -14,11 +14,11 @@
 
 stdenvNoCC.mkDerivation (finalAttrs: {
   pname = "composer-phar";
-  version = "2.6.3";
+  version = "2.6.4";
 
   src = fetchurl {
     url = "https://github.com/composer/composer/releases/download/${finalAttrs.version}/composer.phar";
-    hash = "sha256-5Yo5DKwN9FzPWj2VrpT6I57e2LeQf6LI91LwIDBPybE=";
+    hash = "sha256-Wjnz4s5bo5HuP+yyJ/ryE5D1t+1cVvFMq54cMEi8+Lg=";
   };
 
   dontUnpack = true;