Change log for openoffice.org-amd64 package in Ubuntu
1 → 34 of 34 results | First • Previous • Next • Last |
openoffice.org-amd64 (2.0.2-2ubuntu12.7-2) dapper-security; urgency=low * SECURITY UPDATE: heap-based buffer overflows which may lead to arbitrary code execution when processing crafted WMF files - patches/src680/workspace.sjfixes06.diff: fix integer overflows in wmf/winwmf.cxx. - http://util.openoffice.org/source/browse/util/svtools/source/filter.vcl/wmf/winwmf.cxx?r1=1.36&r2=1.36.114.1&view=patch - CVE-2008-2237 * SECURITY UPDATE: heap-based buffer overflows which may lead to arbitrary code execution when processing crafted EMF files - patches/src680/workspace.sjfixes09-plus-nStart.diff: fix multiple parser flaws in wmf/enhwmf.cxx. - adapted from http://util.openoffice.org/source/browse/util/svtools/source/filter.vcl/wmf/enhwmf.cxx?r1=1.39&r2=1.39.114.1&view=patch - CVE-2008-2238 -- Jamie Strandboge <email address hidden> Thu, 20 Nov 2008 15:51:17 -0600
Available diffs
openoffice.org-amd64 (2.0.2-2ubuntu12.6-1) dapper-security; urgency=low [ Chris Cheney ] * ooo-build/patches/src680/workspace.fwk82.diff, ooo-build/patches/src680/workspace.sjfixes03.diff: fix CVE-2007-5745, CVE-2007-5746,CVE-2007-5747 and CVE-2008-0320 * ooo-build/patches/src680/cws-jl85.diff: fix XML signing problem where the document can be manipulated so that the signature dialog display a false issuer [ Kees Cook ] * ooo-build/patches/src680/workspace.hsql1808.diff: upstream fixes backported for HSQLDB Java method calling (CVE-2007-4575). -- Chris Cheney <email address hidden> Tue, 6 May 2008 10:32:12 -0500
openoffice.org-amd64 (2.0.2-2ubuntu12.5-1) dapper-security; urgency=low * Update to 2.0.2-2ubuntu12.5 sources and binaries. * Security updates: - ooo-build/patches/src680/itiff.diff: fix tiff heap overflow (CVE-2007-2834)
Superseded in dapper-security |
openoffice.org-amd64 (2.0.2-2ubuntu12.4-1) dapper-security; urgency=low * Update to 2.0.2-2ubuntu12.4 sources and binaries. * Security updates: - ooo-build/patches/src680/sw.rtf.prtdata.diff: fix RTF parser heap overflow (CVE-2007-0244). -- Matthias Klose <email address hidden> Fri, 29 Jun 2007 10:04:15 +0000
Superseded in dapper-security |
openoffice.org-amd64 (2.0.2-2ubuntu12.3-1) dapper-security; urgency=low * Update to 2.0.2-2ubuntu12.3 sources and binaries. * Security updates: - starcalc-file-format-parser-2.2.diff: fix StarCalc format file parser stack overflow (CVE-2007-0238). - cws-obr04-*.diff: fix escaping of hyperlinks (CVE-2007-0239). - libwpd-CVE-2007-0002.diff: patch OOos internal libwpd copy for CVE-2007-0002. -- Matthias Klose <email address hidden> Fri, 23 Mar 2007 16:08:06 +0000
Superseded in dapper-security |
openoffice.org-amd64 (2.0.2-2ubuntu12.2-1) dapper-security; urgency=low * Update to 2.0.2-2ubuntu12.2 sources and binaries. * Fix OpenOffice.org WMF heap overflow (CVE-2006-5870). -- Matthias Klose <email address hidden> Thu, 11 Jan 2007 18:38:22 +0000
Deleted in dapper-proposed (Reason: not a proper SRU) |
openoffice.org-amd64 (2.0.3-6dapper1-1) dapper-proposed; urgency=low * Update to 2.0.3-6dapper1. -- Matthias Klose <email address hidden> Mon, 4 Sep 2006 10:08:28 +0000
Superseded in dapper-proposed |
openoffice.org-amd64 (2.0.3-4dapper2-1) dapper-proposed; urgency=low * Update to 2.0.3-4dapper2. -- Matthias Klose <email address hidden> Fri, 4 Aug 2006 06:46:12 +0000
Deleted in edgy-release (Reason: ROM shipping native packages) |
openoffice.org-amd64 (2.0.3-4ubuntu2-1) edgy; urgency=low * Update to 2.0.3-4ubuntu2. -- Matthias Klose <email address hidden> Wed, 2 Aug 2006 08:42:26 +0000
Superseded in dapper-proposed |
openoffice.org-amd64 (2.0.3-4dapper1) dapper-proposed; urgency=low * Update to 2.0.3-4dapper1. * Upload to dapper-proposed. -- Matthias Klose <email address hidden> Tue, 1 Aug 2006 13:13:36 +0000
Superseded in dapper-proposed |
openoffice.org-amd64 (2.0.3-3dapper6) dapper-proposed; urgency=low * Update to 2.0.3-3dapper6. * Upload to dapper-proposed. -- Matthias Klose <email address hidden> Mon, 31 Jul 2006 02:00:02 +0200
Superseded in edgy-release |
openoffice.org-amd64 (2.0.3-3ubuntu4-1) edgy; urgency=low * Update to 2.0.3-3ubuntu4. * Updated Replaces/Conflicts from the openoffice.org source. -- Matthias Klose <email address hidden> Sat, 29 Jul 2006 10:11:20 +0000
Superseded in edgy-release |
openoffice.org-amd64 (2.0.3-3ubuntu3-1) edgy; urgency=low * Update to 2.0.3-3ubuntu3. * Tighten dependencies on ia32-libs*. -- Matthias Klose <email address hidden> Thu, 27 Jul 2006 11:02:28 +0000
Superseded in dapper-security |
openoffice.org-amd64 (2.0.2-2ubuntu12.1-1) dapper-security; urgency=low * Update to 2.0.2-2ubuntu12.1 sources and binaries. * Add patch to fix a potential buffer overflow in the xml to utf-8 converter. CVE-2006-3117. * Add patch from upstream to fix macro handling security bug; it was possible to embed macros in documents without OOo seeing them and executing them without any user interaction. CVE-2006-2198. * Add patch from upstream to disable Java applets feature because it's possible to write Java applets breaking out of the sandbox. CVE-2006-2199. -- Martin Pitt <email address hidden> Tue, 11 Jul 2006 12:56:13 +0000
Obsolete in hoary-security |
openoffice.org-amd64 (1.1.3-8ubuntu2.4-1) hoary-security; urgency=low * Update to 1.1.3-8ubuntu2.4 binaries. * SECURITY UPDATE: Arbitrary code execution with crafted documents. * Took patches from Debian's 1.1.3-9sarge1 and 1.1.3-9sarge2, thanks to Rene Engelhard! * ooo-build/patches/OOO_1_1/sax+source+expatwrap+xml2utf.cxx.diff: security patch again (from upstream); fix memory corruption bug; it was possible to write values to arbritrary memory when opening special files. (CVE-2006-3117) * ooo-build/patches/OOO_1_1/6438334-macros-so7-sfx2.diff: add patch from upstream to fix macro handling security bug; it was possible to embed macros in documents without OOo seeing them and executing them without any user interaction. (CVE-2006-2198) * ooo-build/patches/OOO_1_1/6438333-applets-so7-officecfg.diff: add patch from upstream to disable Java applets feature because it's possible to write Java applets breaking out of the sandbox (NB: the normal packages don't build with Java so are not affected, but the openoffice.org-java addon package is) (CVE-2006-2199) * debian/scripts/vars.i386: disable mozab on i386, too; uses mozilla *1.0* code and is a security nightmare. Already done pre-sarge for ppc, s390 and sparc but forgotten for i386 :/ * debian/MANIFEST.i386: update -- Martin Pitt <email address hidden> Wed, 5 Jul 2006 16:03:49 +0000
openoffice.org-amd64 (2.0.2-2ubuntu12-1) dapper; urgency=low * Update to 2.0.2-2ubuntu12. * Mangle debian/control to make sure that all the arch:all transitional packages built from the main sources will be installable with us. -- Adam Conrad <email address hidden> Sun, 28 May 2006 22:47:15 +0000
Superseded in dapper-release |
openoffice.org-amd64 (2.0.2-2ubuntu11-1) dapper; urgency=low * Update to 2.0.2-2ubuntu11. * Revert accidental move to debian-native. -- Adam Conrad <email address hidden> Sat, 27 May 2006 07:49:48 +0000
Superseded in dapper-release |
openoffice.org-amd64 (2.0.2-2ubuntu10-1) dapper; urgency=low * Update to 2.0.2-2ubuntu10. -- Adam Conrad <email address hidden> Thu, 25 May 2006 08:28:32 +0000
Superseded in dapper-release |
openoffice.org-amd64 (2.0.2-2ubuntu5-1) dapper; urgency=low * Update to 2.0.2-2ubuntu5. * Fix openoffice.org-gtk upgrade. Malone: #41251, #41443. -- Matthias Klose <email address hidden> Thu, 27 Apr 2006 15:04:39 +0000
Superseded in dapper-release |
openoffice.org-amd64 (2.0.2-2ubuntu4-2) dapper; urgency=low * Fix build error on ia64. -- Matthias Klose <email address hidden> Tue, 25 Apr 2006 08:30:43 +0000
Superseded in dapper-release |
openoffice.org-amd64 (2.0.2-2ubuntu4-1) dapper; urgency=low * Update to 2.0.2-2ubuntu4. * Split out openoffice.org-gtk. * Do not build openoffice.org-gnome for ia64, crashes immediately. -- Matthias Klose <email address hidden> Mon, 24 Apr 2006 21:35:54 +0000
Superseded in dapper-release |
openoffice.org-amd64 (2.0.2-2ubuntu1-1) dapper; urgency=low * Update to 2.0.2-2ubuntu1. -- Matthias Klose <email address hidden> Thu, 30 Mar 2006 09:58:33 +0000
Superseded in dapper-release |
openoffice.org-amd64 (2.0.2-1ubuntu6-1) dapper; urgency=low * Update to 2.0.2-1ubuntu6. * Build native gnome-set-default-application. * Remove vfs UNO module, requires libgnomevfs-2.so.0, which is not available as 32bit library. -- Matthias Klose <email address hidden> Thu, 23 Mar 2006 07:51:42 +0000
Superseded in dapper-release |
openoffice.org-amd64 (2.0.2-1ubuntu3-4) dapper; urgency=low * Build native gnome-set-default-application. * Remove vfs UNO module, requires libgnomevfs-2.so.0, which is not available as 32bit library. -- Matthias Klose <email address hidden> Mon, 20 Mar 2006 12:32:50 +0000
Superseded in dapper-release |
openoffice.org-amd64 (2.0.2-1ubuntu3-3) dapper; urgency=low * Tighten dependencies on ia32-libs-openoffice.org to use the libgcj7 from this package. * Fix conflicts in -base and -qa-tools. -- Matthias Klose <email address hidden> Thu, 16 Mar 2006 17:29:47 +0000
Superseded in dapper-release |
openoffice.org-amd64 (2.0.2-1ubuntu3-2) dapper; urgency=low * debian/TODO: Remove. -- Matthias Klose <email address hidden> Thu, 16 Mar 2006 13:17:44 +0000
Superseded in dapper-release |
openoffice.org-amd64 (2.0.2-1ubuntu3-1) dapper; urgency=low * Install diversion for /usr/lib/openoffice/presets/basic/Standard/script.xlb. * Fix build failure on ia64. Ubuntu #23298. * Tighten dependencies on ia32-libs-*. -- Matthias Klose <email address hidden> Thu, 16 Mar 2006 10:03:08 +0100
Superseded in dapper-release |
openoffice.org-amd64 (2.0.2-1ubuntu1-1) dapper; urgency=low * Update to 2.0.2. * Tighten dependencies on ia32-libs-*. * Add openoffice.org-qa-tools. -- Matthias Klose <email address hidden> Sun, 12 Mar 2006 15:44:08 +0100
openoffice.org-amd64 (2.0.1oob680m5-0ubuntu2-1) dapper; urgency=low * See /usr/share/doc/openoffice.org-common/changelog.Debian.gz * Update to 2.0.1oob680m5. * New packages openoffice.org-gcj, openoffice.org-qa-tools. * Tighten dependencies on ia32-libs-*. -- Matthias Klose <email address hidden> Wed, 1 Mar 2006 12:36:16 +0000
openoffice.org-amd64 (1.1.5-0ubuntu1-0ubuntu1) breezy; urgency=low * Repackage new version. * Update dependencies. -- Matthias Klose <email address hidden> Sun, 2 Oct 2005 09:40:35 +0000
openoffice.org-amd64 (1.1.3-8ubuntu2.3-1) hoary-security; urgency=low * SECURITY UPDATE: Fix buffer overflow on malicious documents. * Use newer ubuntu version which fixes CAN-2005-0941. -- Tollef Fog Heen <email address hidden> Wed, 4 May 2005 11:36:17 +0200
Obsolete in hoary-release |
openoffice.org-amd64 (1.1.3-8ubuntu2-1) hoary; urgency=low * New Ubuntu release of the ia32 package. Includes Xhosa. -- Tollef Fog Heen <email address hidden> Wed, 6 Apr 2005 17:04:58 +0200
openoffice.org-amd64 (1.1.2-2ubuntu6.1-1) warty-security; urgency=low * Sync with i386 security update: * SECURITY UPDATE: Fix buffer overflow on malicious documents. * Added patch CAN-2005-0941.patch: - sot/source/sdstor/stgole.cxx(), StgCompObjStream::Load(): Ignore the upper 16 bits of document-specified length (32 bit) since at allocation it is truncated to a 16-bit value, which can lead to wraparounds. [CAN-2005-0941] -- Tollef Fog Heen <email address hidden> Fri, 6 May 2005 10:15:30 +0200
Obsolete in warty-release |
openoffice.org-amd64 (1.1.2-2ubuntu6-1) warty; urgency=low * Sync with i386 * ooo-build/patches/OOO_1_1_2/apply: add these new patches - ooo-build/patches/OOO_1_1/security-tmp-dir.diff: upstream security fix . Ubuntu bug #1308 - ooo-build/patches/OOO_1_1/gnome_desktop_files.diff: . combines desktop-menu-names.diff and desktop-mime.diff. bug #1188 . add rtf mimetypes to Writer's mimetypes. bug #1638 . add ppt mimetype to Impress's mimetypes. bug #1494 - ooo-build/patches/OOO_1_1/ubuntu-splash.diff: . add Ubuntu as the vendor . reset splash to default OOo splash. bug #1076 * ooo-build/patches/OOO_1_1_2/apply: remove the patches replaced . debian-splash.diff . desktop-menu-names.diff . desktop-mime.diff * debian/rules: don't build debian splash image * debian/rules: don't change translations for woody -- Tollef Fog Heen <email address hidden> Tue, 28 Sep 2004 00:55:44 +0200
1 → 34 of 34 results | First • Previous • Next • Last |