gdk-pixbuf (0.17.0-2woody3) oldstable-security; urgency=high * Non-maintainer upload targetted at stable-security. * SECURITY UPDATE: Arbitrary code execution and DoS. (Closes: #339458) - Add check to XPM reader to prevent integer overflow for specially crafted number of colors. [gdk-pixbuf/io-xpm.c] [CVE-2005-3186] - Fix endless loop with specially crafted number of colors. [gdk-pixbuf/io-xpm.c] [CVE-2005-2975] - Fixes integer overflow by allocating GdkPixbuf via gdk_pixbuf_new() instead of using malloc() and gdk_pixbuf_new_from_data(). [gdk-pixbuf/io-xpm.c] [CVE-2005-2976] -- Loic Minier Sun, 20 Nov 2005 20:01:55 +0100 gdk-pixbuf (0.17.0-2woody2) stable-security; urgency=high * Non-maintainer upload by the Security Team * Applied patch by Matthias Clasen to fix integer overflow in the ico loader [gdk-pixbuf/io-ico.c, CAN-2004-0788] * Backported patch by Matthias Clasen to fix heap-based overflow in pixbuf_create_from_xpm [gdk-pixbuf/io-xpm.c, CAN-2004-0782] * Applied patch by Manish Singh to fix denial of service in the bmp loader [gdk-pixbuf/io-bmp.c, CAN-2004-0753, http://bugzilla.gnome.org/show_bug.cgi?id=150601] -- Martin Schulze Thu, 9 Sep 2004 07:05:31 +0200 gdk-pixbuf (0.17.0-2woody1) stable-security; urgency=high * Non-maintainer upload by the Security Team * Updated BMP handling code from 0.22 to prevent a crash when loading a malicious BMP file, as discovered by Thomas Kristensen [CAN-2004-0111, gdk-pixbuf/io-bmp.c] -- Martin Schulze Thu, 11 Mar 2004 12:12:27 +0100 gdk-pixbuf (0.17.0-2) unstable; urgency=high * Add a build-conflicts for the m68k buildd, which seems to keep a chroot full of crap on half the buildds. Come on guys, clean this up! (closes: #144777) * Last upload should have had high priority -- fixing the display bugs is a rather important fix. -- Ryan Murray Sun, 28 Apr 2002 09:33:08 -0700 gdk-pixbuf (0.17.0-1) unstable; urgency=low * New upstream release (closes: #137451, #138780) -- Ryan Murray Sat, 27 Apr 2002 01:17:37 -0700 gdk-pixbuf (0.16.0-1) unstable; urgency=low * New upstream release -- Ryan Murray Sat, 9 Feb 2002 21:01:12 -0800 gdk-pixbuf (0.15.0-2) unstable; urgency=low * -DLIBTOOL_IS_A_FOOL is still true...fixes build on systems without gdk-pixbuf already installed * gnome-dev package should be optional, and is now... -- Ryan Murray Sat, 19 Jan 2002 15:26:00 -0800 gdk-pixbuf (0.15.0-1) unstable; urgency=low * New upstream release (closes: #86401) * Mention the gnome lib name in the package (closes: #112710) -- Ryan Murray Sat, 19 Jan 2002 00:21:46 -0800 gdk-pixbuf (0.14.0-1) unstable; urgency=low * New upstream release (closes: #96015) * Remove empty gdk-pixbuf dir from /usr/include (closes: #126300) * s/gifs/GIFs/ (closes: #124953, #124954, #124955, #124956) -- Ryan Murray Sun, 23 Dec 2001 18:10:16 -0800 gdk-pixbuf (0.13.0-1) unstable; urgency=low * New upstream release * apply one line libtool patch for the hurd (closes: #110200) * Headers have moved to coexist with gnome 2.0 -- Ryan Murray Thu, 1 Nov 2001 20:44:16 -0800 gdk-pixbuf (0.11.0-2) unstable; urgency=low * Preliminary support for OS/2 1.x BMP's, similar to the 16bpp support. The BMPs display, but have incorrect colors. * Update config.guess/sub (closes: #97408) -- Ryan Murray Sun, 20 May 2001 00:41:08 -0700 gdk-pixbuf (0.11.0-1) unstable; urgency=low * New upstream release * Add knowledge of 16bpp BMP files. They currently display as blank black boxes, until someone writes the progressive line-by-line decoder, but will cause things to not exit that try to use them... -- Ryan Murray Sun, 29 Apr 2001 16:26:51 -0700 gdk-pixbuf (0.10.1-1) unstable; urgency=low * New upstream release -- Ryan Murray Wed, 14 Mar 2001 20:52:25 -0800 gdk-pixbuf (0.10.0-2) unstable; urgency=low * The -dev fix vanished while exploring the Makefile.in patches, so it is now fixed again (closes: #87594) -- Ryan Murray Sat, 10 Mar 2001 08:54:26 -0800 gdk-pixbuf (0.10.0-1) unstable; urgency=low * New upstream release (closes: #88965, #62412) * Make libgdk-pixbuf-gnome-dev depend on libgdk-pixbuf-dev (closes: #87594) * Fix other dependencies between packages. -- Ryan Murray Thu, 8 Mar 2001 19:31:00 -0800 gdk-pixbuf (0.9.0-3) unstable; urgency=low * Versioned build-dep on newer libgnome-dev * Bring xpm and xlib stuff fully up to date with CVS (closes: #83638) -- Ryan Murray Sat, 27 Jan 2001 14:49:18 -0800 gdk-pixbuf (0.9.0-2) unstable; urgency=low * Take xpm_color_parse from CVS, which allows libgdk-pixbuf-xlib to work correctly. * Apply patch directly in the diff, and remove the dpatch setup. -- Ryan Murray Thu, 25 Jan 2001 02:30:55 -0800 gdk-pixbuf (0.9.0-1) unstable; urgency=low * New Maintainer. * Upgrade to Standards-Version 3.1.1 * Move libgdk-pixbuf-gnome2 and libgdk-pixbuf-gnome-dev doc dirs to symlinks. -- Ryan Murray Thu, 11 Jan 2001 18:53:35 -0800 gdk-pixbuf (0.9.0-0.2) unstable; urgency=low * Add a patch from John Harper. -- Christian Marillat Wed, 20 Sep 2000 23:10:11 +0200 gdk-pixbuf (0.9.0-0.1) unstable; urgency=low * NMU. * Switch to debhelper V2. * New upstream release (Closes: #70969). * Split the package (libgdk-pixbuf-gnome2) (Closes: #66134) * gdk-pixbuf.m4 is already installed (Closes: #64121) * Move gdk-pixbuf.m4 to libgdk-pixbuf-dev. * Move -dev documentation in libgdk-pixbuf-dev (was gdk-pixbuf-dev). -- Christian Marillat Wed, 20 Sep 2000 14:38:52 +0200 gdk-pixbuf (0.8.0-1) unstable; urgency=low * New upstream version. -- Vincent Renardias Wed, 24 May 2000 10:29:14 +0200 gdk-pixbuf (0.7.0-1) unstable; urgency=low * New upstream version. -- Vincent Renardias Thu, 13 Apr 2000 12:25:28 +0200 gdk-pixbuf (0.6.0-1) unstable; urgency=low * New upstream version. * Move usr/lib/gnomecanvaspixbufConf.sh to -dev package closes: #59541: gnomecanvaspixbufConf.sh file in runtime package. -- Vincent Renardias Mon, 6 Mar 2000 14:34:41 +0100 gdk-pixbuf (0.5.0-1) unstable; urgency=low * Initial Debian packaging. -- Vincent Renardias Thu, 27 Jan 2000 18:02:00 +0100 gdk-pixbuf (0.5.0-0.0) unstable; urgency=low * New upstrem version. -- Christian Marillat Mon, 24 Jan 2000 23:51:25 +0100 gdk-pixbuf (0.3-0.0) unstable; urgency=low * Initial Release. -- Christian Marillat Sat, 23 Oct 1999 16:22:16 +0200 Local variables: mode: debian-changelog End: