Change log for ffmpeg-debian package in Debian

114 of 14 results
Published in lenny-release
ffmpeg-debian (0.svn20080206-18+lenny3) oldstable-security; urgency=high


  * Fixes: CVE-2010-3429, update provided by upstream (r25223).
  * Fixes: CVE-2010-4704, integer overflow in the 
    vorbis_residue_decode_internal (r25591).
  * Fixes: CVE-2010-4705, integer overflow. Port from r24675.
  * Fixes: TEMP-0570713-FED4BB, input sanitization with backport from the 
    upstream:
    - r19322, fixes huffyuv avi file parsing.
    - r19355, makes decode_init fail if the huffman tables are invalid.
    - r19374, adds extra validation checks to ff_vorbis_len2vlc.
    - r19333, checks for failed extradata malloca.

 -- Luciano Bello <email address hidden>  Wed, 09 Feb 2011 16:08:20 -0300
Superseded in lenny-release
ffmpeg-debian (0.svn20080206-18+lenny1) stable-security; urgency=high


  * Fix multiple security issues, update provided by Reinhard Tartler

 -- Moritz Mühlenhoff <email address hidden>  Mon, 25 Jan 2010 18:10:51 +0100
Superseded in lenny-release
ffmpeg-debian (0.svn20080206-18) stable; urgency=low


  * Support reading large metadata in flac decoder (Closes: #534142)

 -- Reinhard Tartler <email address hidden>  Wed, 24 Jun 2009 09:02:44 +0200
Deleted in squeeze-release (Reason: None provided.)
Deleted in sid-release (Reason: None provided.)
ffmpeg-debian (4:0.5+svn20090609-2) unstable; urgency=low


  [ Fabian Greffrath ]
  * Remove .install files for unstripped packages that we do not build
    from this branch anyway.
  * Remove debian/fixup-config.sh which was only a hack needed to repair
    the crippled config.h
  * Finally remove strip.sh.

  [ Andres Mejia ]
  * Add vdpau support by including vdpau headers in deb packaging.
    (Closes: #511544)
  * Don't disable encoders if internalencoders is set in
    DEB_BUILD_OPTIONS.
  * Enable yasm for i386 and amd64.

  [ Reinhard Tartler ]
  * clarifications suggested by upstream in README.Source
  * refresh patches

  [ Fabian Greffrath ]
  * Document the copyright notice and license for the VDPAU headers in
    debian/copyright.
  * Remove parallel make support from debian/confflags, it's overridden
    in debian/rules anyway.
  * Quote opts in debian/watch.
  * Bump debhelper compat to 7.
  * Clean up clean target in debian/rules in favour of debian/clean.
  * Replace "dh_clean -k" by dh_prep.

  [ Reinhard Tartler ]
  * remove duplicated libxvmc-dev build dependency
  * sort build dependencies alphabetically
  * remove section numbering from README.Debian
  * add note about the lintian override

 -- Andres Mejia <email address hidden>  Mon, 06 Jul 2009 13:04:17 -0400
Superseded in squeeze-release
Superseded in sid-release
ffmpeg-debian (4:0.5+svn20090609-1) unstable; urgency=low


  [ Andres Mejia ]
  * Add myself to Uploaders list.
  * Reorder when dh_strip is done so qt-faststart is also
    stripped.
  * Update to control files.
  * Add new confflags for new build dependencies.
  * Use <package>.docs files to add ffmpeg and ffmpeg-doc documentation.
  * Use <package>.docs files for installing documentation.
  * Add comment to 900_doxyfile patch.
  * Add man page for qt-faststart.
  * Bump version in changelog to prepare new release
  * Fix FTBFS for ffmpeg source package with -dev packages (Closes: #527761)
  * Use dh_lintian to install lintian overrides
  * Update comment on fpic-* patches
  * Build-Depend on debhelper (>= 6.0.7~) for dh_lintian.
  * Add lintian overrides for remaining fpic lintian errors.
  * Shorten comment on lintian-overrides.
  * Allow passing in extra confflags, removes the need for fix-fpic
    DEB_BUILD_OPTIONS.
  * Fix FTBFS on kfreebsd. (Closes: #528591)
  * Include patches to allow us to use opencore-amr libraries.

  [ Reinhard Tartler ]
  * remove debian/control.* mechanism
  * improve patch description for debian/patches/100_kfreebsd

  [ Andres Mejia ]
  * Add lintian overrides for ffmpeg-debian source warnings.
  * Only use .svnrevision if it's readable.
  * Update source lintian-overrides for modifications to debian/rules.
  * Add fix for FTBFS for GNU Hurd OS. Thanks Marc Dequènes.
    (Closes: #530436)

  [ Felipe Sateler ]
  * Don't add -unstripped to the unstripped variant version number
    in debian/README.upstream-upgrade.
  * In the same file, pass explicit version to git-import-orig

  [ Fabian Greffrath ]
  * Cleaned up debian/watch file.
  * Add notes why we no longer strip the orig.tar.gz.

  [ Andres Mejia ]
  * Fix watch file to ignore daily snapshots.
  * Make get-orig-source.sh executable.

  [ Reinhard Tartler ]
  * add patch for qtrle encoding (Closes: #530016)
  * Enable xvmc support by adding libxvmc-dev to build dependencies
  * really add libopenjpeg-dev to build depends, actually enabling
    the openjpeg decoder.
  * reorganise README.Debian for the new plan [tm]
  * no longer strip the source on upstream upgrades
  * Imported Upstream version 0.5+svn20090609
  * adjust notes in README.upstream-upgrade for the now unstripped
    debian source package
  * remove hack to build with stripped sources
  * bump standards version, no changes needed

 -- Reinhard Tartler <email address hidden>  Sun, 05 Jul 2009 22:52:43 +0200
Superseded in lenny-release
ffmpeg-debian (0.svn20080206-17+lenny1) stable-security; urgency=high


  * Non-maintainer upload by the security team
  * Correct glitch in integer signedness issue, which might lead to a
    regression
    Fixes: CVE-2009-0385

 -- Steffen Joeris <email address hidden>  Tue, 28 Apr 2009 01:45:46 +0000
Superseded in squeeze-release
Superseded in sid-release
ffmpeg-debian (4:0.5+svn20090420-2) unstable; urgency=low


  * debian/control: fix dependencies for libavutil-dev and libavfilter-dev
    so that they can be used with the unstripped variants properly.
  * debian/rules: set nooptflags only for relevant architectures.
  * explicitly disable 'dangerous' encoders on the --configure line.
  * fix SHLIBS_VERSION in debian/rules (Closes: #527350).

 -- Reinhard Tartler <email address hidden>  Mon, 04 May 2009 07:41:19 +0200
Superseded in sid-release
ffmpeg-debian (4:0.5+svn20090420-1) unstable; urgency=low


  [ Fabian Greffrath ]
  * Merge the contents of patents.txt into README.Debian and change some
    paragraphs to (hopefully) add some more clarity on the removed encoders
    and the package naming scheme. Based on suggestions by Xavier Douville
    <email address hidden>, thank you very much for the review. (Closes: #519025)
  * Reorder some confflags to account for GPL licensed libraries.
  * Remove patents.txt
  * Explicitely mention that no decoders are disabled in our packages.
  
  [ Loïc Minier ]
  * Disable more autodetecter ARM arch features
  * Add neon and vfp flavors to armel disabled for now
  * vfp CFLAGS: add "-mfpu=vfp -mfloat-abi=softfp"

  [ Reinhard Tartler ]
  * New Upstream Version (svn revision 18630)
  * bump epoch as 0.5 was released. Future version will use '+' to indicate 
    that the package is based on a release branch and '~' to indicate that
    the package is based on the 'trunk' branch.
  * update from the upstream release branch to generate a new upstream
    tarball.
  * add a git-buildpackage config file at debian/gbp.conf
  * beautify identification string
  * debian/rules: bump epoch to '4'
  * update section names in control file
  * update upstream svn server url
  * fixup get-orig-source rules in debian/rules
  * create right filenames for the orig.tar.gz files
  * update README.upstream-upgrate for new versioning scheme
  * remove debian/005_release_branch_changes.diff
  * remove reference to 020_visibility_patch
  * install the upstream license file and release notes
  * allow -dev packages be installed with the unstripped variants
    Closes: #526007, LP: #312898
  * be more careful with svn:externals in debian/get-orig-source.sh.
    (Closes: #525348)
  
 -- Reinhard Tartler <email address hidden>  Sat, 02 May 2009 09:09:54 +0200
Superseded in squeeze-release
Superseded in sid-release
Superseded in sid-release
ffmpeg-debian (3:0.svn20090303-1) unstable; urgency=low


  * New Upstream Version (svn revision 17737 libswscale revision 28799)
    - Electronic Arts TQI decoder
    - OpenJPEG based JPEG 2000 decoder
    - NC (NC4600) camera file demuxer
    - Gopher client support
    - MXF D-10 muxer
    - generic metadata API
  * debian/get-orig-source.sh: Track the version 0.5 release branch. The
    version number does not really reflect this, but this package is
    actually very close to the 0.5 release branch.
  * various cleanups to improve get-orig-source.sh
  * Remove liba52 from the suggests field in debian/control.ffmpeg, as
    ffmpeg does no longer use it since upload 0.svn20080206-10.
  * Fix the Vcs-Git urls to the correct locations.
  * The libavformat52 now links against libavcodec52, which breaks
    applications that *ALSO* link against libavcodec51. Adding a
    Breaks: libavcodec51 should prevent this and (hopefully) Closes: #516885.
  * improve parallel builds on SMP/multicores by supporting the parallel
    flag in DEB_BUILD_OPTIONS, and default to the number of available CPUs
    on i386 and amd64.
  * Drop unapplied patches from debian/patches.
  * bump shlibs version.

 -- Reinhard Tartler <email address hidden>  Tue, 03 Mar 2009 21:01:25 +0100
Superseded in sid-release
ffmpeg-debian (3:0.svn20090204-3) unstable; urgency=low


  [ Fabian Greffrath ]
  * remove libasound2-dev from build-depends on non-Linux archs

  [ Reinhard Tartler ]
  * fix postinst generation by calling dh_installdeb after dh_makeshlibs
  * upload to unstable

 -- Reinhard Tartler <email address hidden>  Sun, 22 Feb 2009 09:32:49 +0100
Superseded in squeeze-release
Superseded in squeeze-release
Superseded in lenny-release
Superseded in sid-release
ffmpeg-debian (0.svn20080206-17) unstable; urgency=medium


  * bug fix: possible null ptr derefence in vp3.c (CVE-2008-4610) 
    Closes: #509616

 -- Reinhard Tartler <email address hidden>  Tue, 10 Feb 2009 07:55:39 +0100
Superseded in lenny-release
Superseded in sid-release
ffmpeg-debian (0.svn20080206-16) unstable; urgency=low


  * bug fix: denial-of-service attack (CVE-2008-3230) Closes: #498764
  * fix remotely exploitable security issue in libavformat/4xm.c.
    Sorry, no CVE for this yet

 -- Reinhard Tartler <email address hidden>  Tue, 20 Jan 2009 00:51:19 +0100
Superseded in lenny-release
Superseded in sid-release
ffmpeg-debian (0.svn20080206-15) unstable; urgency=low


  * Security fix: Multiple buffer overflows in libavformat/utils.c. 
    CVE-2008-4866, Closes: #504977.
  
  * Fetch fixes for the DCA Decoder from upstream. Closes: #496612.  These
    changes fix a crash on a crafted dca file, which are believed to be
    exploitable in some way. Alongside with that, some correction fixed
    from upstream have been included.
  
    Thanks to Alexander E. Patrakov for reporting these, and to
    Ben Hutchings for reminding me to actually apply them.

 -- Reinhard Tartler <email address hidden>  Mon, 10 Nov 2008 17:13:25 +0100
Superseded in sid-release
Superseded in lenny-release
ffmpeg-debian (0.svn20080206-14) unstable; urgency=low


  [ Loic Minier ]
  * Fix Vcs-* control fields; thanks Gerfried Fuchs.
  * Mention upstream SVN in debian/copyright; thanks Gerfried Fuchs;
    closes: #499914.

  [ Reinhard Tartler ]
  * don't disable ffserver in cmov, altivec and vis build. (Closes: #501002)

 -- Reinhard Tartler <email address hidden>  Fri, 03 Oct 2008 14:13:54 +0200
114 of 14 results