diff --git a/.gitignore b/.gitignore index d640b52..c5c5145 100644 --- a/.gitignore +++ b/.gitignore @@ -12,3 +12,4 @@ /unordered-containers-0.2.10.0.tar.gz /unordered-containers-0.2.13.0.tar.gz /unordered-containers-0.2.14.0.tar.gz +/unordered-containers-0.2.16.0.tar.gz diff --git a/ghc-unordered-containers.spec b/ghc-unordered-containers.spec index 604a28b..df049c9 100644 --- a/ghc-unordered-containers.spec +++ b/ghc-unordered-containers.spec @@ -7,8 +7,8 @@ # testsuite missing deps: test-framework test-framework-quickcheck2 test-framework-hunit ChasingBottoms Name: ghc-%{pkg_name} -Version: 0.2.14.0 -Release: 2%{?dist} +Version: 0.2.16.0 +Release: 1%{?dist} Summary: Efficient hashing-based container types License: BSD @@ -33,6 +33,12 @@ speed. The declared cost of each operation is either worst-case or amortized, but remains valid even if structures are shared. +/Security/ + +This package currently provides no defenses against hash collision attacks such +as HashDoS. Users who need to store input from untrusted sources are advised to +use 'Data.Map' or 'Data.Set' from the 'containers' package instead. + %package devel Summary: Haskell %{pkg_name} library development files @@ -111,6 +117,9 @@ This package provides the Haskell %{pkg_name} profiling library. %changelog +* Tue Jun 07 2022 Jens Petersen - 0.2.16.0-1 +- https://hackage.haskell.org/package/unordered-containers-0.2.16.0/changelog + * Thu Jan 20 2022 Fedora Release Engineering - 0.2.14.0-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild diff --git a/sources b/sources index 0ad6545..a8875e2 100644 --- a/sources +++ b/sources @@ -1 +1 @@ -SHA512 (unordered-containers-0.2.14.0.tar.gz) = e6ce8d37478db96dedfed2a06b8b7e25dbda275e4ca8523827e8bd8ca2816b3a96f26ea22f2d291bb89b87cf675c706f6b15759dc4e17a63ad94ad63704bc2bf +SHA512 (unordered-containers-0.2.16.0.tar.gz) = 12b3c3d42498e9fba0545196f57dfa851fe141045aafff26701f6e116ba94d7dbc6e2bba1e5ffe47b2532e468c6f41651dfc058ebd3c76e2a16ebef2689d6652