pkgsrc/print/atril
maya 61659018e3 atril: don't enable dvi support by default. bump pkgrevision.
This option is pulling in t1lib. t1lib is an enormous security risk.
It hasn't seen maintenance since 2011 and we have local patches for
security issues from 2011.

Given the lack of attention, it's likely there are more security
issues lurking.

Documents are usually obtained from untrusted sources, and thus are
considered a remote attack vector
Documents may embed their own fonts. If one embeds a T1 font, it might
be parsed by this unmaintained library.

To avoid this risk, rip out the t1lib dependency.
2019-10-28 21:49:22 +00:00
..
DESCR
distinfo atril: update to 1.22.1 2019-05-08 01:59:53 +00:00
Makefile atril: don't enable dvi support by default. bump pkgrevision. 2019-10-28 21:49:22 +00:00
options.mk atril: don't enable dvi support by default. bump pkgrevision. 2019-10-28 21:49:22 +00:00
PLIST atril: update to version 1.22 2019-03-06 05:48:55 +00:00