Change log for openoffice.org-amd64 package in Ubuntu

134 of 34 results
Obsolete in dapper-updates
Obsolete in dapper-security
openoffice.org-amd64 (2.0.2-2ubuntu12.7-2) dapper-security; urgency=low

  * SECURITY UPDATE: heap-based buffer overflows which may lead to arbitrary
    code execution when processing crafted WMF files
    - patches/src680/workspace.sjfixes06.diff: fix integer overflows in
      wmf/winwmf.cxx.
    - http://util.openoffice.org/source/browse/util/svtools/source/filter.vcl/wmf/winwmf.cxx?r1=1.36&r2=1.36.114.1&view=patch
    - CVE-2008-2237
  * SECURITY UPDATE: heap-based buffer overflows which may lead to arbitrary
    code execution when processing crafted EMF files
    - patches/src680/workspace.sjfixes09-plus-nStart.diff: fix multiple parser
      flaws in wmf/enhwmf.cxx.
    - adapted from http://util.openoffice.org/source/browse/util/svtools/source/filter.vcl/wmf/enhwmf.cxx?r1=1.39&r2=1.39.114.1&view=patch
    - CVE-2008-2238

 -- Jamie Strandboge <email address hidden>   Thu, 20 Nov 2008 15:51:17 -0600
Superseded in dapper-updates
Superseded in dapper-security
openoffice.org-amd64 (2.0.2-2ubuntu12.6-1) dapper-security; urgency=low

  [ Chris Cheney ]
  * ooo-build/patches/src680/workspace.fwk82.diff,
    ooo-build/patches/src680/workspace.sjfixes03.diff: fix CVE-2007-5745,
    CVE-2007-5746,CVE-2007-5747 and CVE-2008-0320
  * ooo-build/patches/src680/cws-jl85.diff: fix XML signing problem where
    the document can be manipulated so that the signature dialog display a
    false issuer

  [ Kees Cook ]
  * ooo-build/patches/src680/workspace.hsql1808.diff: upstream fixes
    backported for HSQLDB Java method calling (CVE-2007-4575).

 -- Chris Cheney <email address hidden>   Tue,  6 May 2008 10:32:12 -0500
Superseded in dapper-updates
Superseded in dapper-security
openoffice.org-amd64 (2.0.2-2ubuntu12.5-1) dapper-security; urgency=low

  * Update to 2.0.2-2ubuntu12.5 sources and binaries.
  * Security updates:
    - ooo-build/patches/src680/itiff.diff: fix tiff heap overflow
      (CVE-2007-2834)

Superseded in dapper-security
openoffice.org-amd64 (2.0.2-2ubuntu12.4-1) dapper-security; urgency=low

  * Update to 2.0.2-2ubuntu12.4 sources and binaries.
  * Security updates:
    - ooo-build/patches/src680/sw.rtf.prtdata.diff: fix RTF parser heap
      overflow (CVE-2007-0244).

 -- Matthias Klose <email address hidden>   Fri, 29 Jun 2007 10:04:15 +0000
Superseded in dapper-security
openoffice.org-amd64 (2.0.2-2ubuntu12.3-1) dapper-security; urgency=low

  * Update to 2.0.2-2ubuntu12.3 sources and binaries.
  * Security updates:
    - starcalc-file-format-parser-2.2.diff: fix StarCalc format
      file parser stack overflow (CVE-2007-0238).
    - cws-obr04-*.diff: fix escaping of hyperlinks (CVE-2007-0239).
    - libwpd-CVE-2007-0002.diff: patch OOos internal libwpd
      copy for CVE-2007-0002.

 -- Matthias Klose <email address hidden>   Fri, 23 Mar 2007 16:08:06 +0000
Superseded in dapper-security
openoffice.org-amd64 (2.0.2-2ubuntu12.2-1) dapper-security; urgency=low

  * Update to 2.0.2-2ubuntu12.2 sources and binaries.
  * Fix OpenOffice.org WMF heap overflow (CVE-2006-5870).

 -- Matthias Klose <email address hidden>   Thu, 11 Jan 2007 18:38:22 +0000
Deleted in dapper-proposed (Reason: not a proper SRU)
openoffice.org-amd64 (2.0.3-6dapper1-1) dapper-proposed; urgency=low

  * Update to 2.0.3-6dapper1.

 -- Matthias Klose <email address hidden>   Mon,  4 Sep 2006 10:08:28 +0000
Superseded in dapper-proposed
openoffice.org-amd64 (2.0.3-4dapper2-1) dapper-proposed; urgency=low

  * Update to 2.0.3-4dapper2.

 -- Matthias Klose <email address hidden>   Fri,  4 Aug 2006 06:46:12 +0000
Deleted in edgy-release (Reason: ROM shipping native packages)
openoffice.org-amd64 (2.0.3-4ubuntu2-1) edgy; urgency=low

  * Update to 2.0.3-4ubuntu2.

 -- Matthias Klose <email address hidden>   Wed,  2 Aug 2006 08:42:26 +0000
Superseded in dapper-proposed
openoffice.org-amd64 (2.0.3-4dapper1) dapper-proposed; urgency=low

  * Update to 2.0.3-4dapper1.
  * Upload to dapper-proposed.

 -- Matthias Klose <email address hidden>   Tue,  1 Aug 2006 13:13:36 +0000
Superseded in dapper-proposed
openoffice.org-amd64 (2.0.3-3dapper6) dapper-proposed; urgency=low

  * Update to 2.0.3-3dapper6.
  * Upload to dapper-proposed.

 -- Matthias Klose <email address hidden>   Mon, 31 Jul 2006 02:00:02 +0200
Superseded in edgy-release
openoffice.org-amd64 (2.0.3-3ubuntu4-1) edgy; urgency=low

  * Update to 2.0.3-3ubuntu4.
  * Updated Replaces/Conflicts from the openoffice.org source.

 -- Matthias Klose <email address hidden>   Sat, 29 Jul 2006 10:11:20 +0000
Superseded in edgy-release
openoffice.org-amd64 (2.0.3-3ubuntu3-1) edgy; urgency=low

  * Update to 2.0.3-3ubuntu3.
  * Tighten dependencies on ia32-libs*.

 -- Matthias Klose <email address hidden>   Thu, 27 Jul 2006 11:02:28 +0000
Superseded in dapper-security
openoffice.org-amd64 (2.0.2-2ubuntu12.1-1) dapper-security; urgency=low

  * Update to 2.0.2-2ubuntu12.1 sources and binaries.
  * Add patch to fix a potential buffer overflow in the xml to utf-8
    converter. CVE-2006-3117.
  * Add patch from upstream to fix macro handling security bug; it was
    possible to embed macros in documents without OOo seeing them and
    executing them without any user interaction. CVE-2006-2198.
  * Add patch from upstream to disable Java applets feature because it's
    possible to write Java applets breaking out of the sandbox.
    CVE-2006-2199.

 -- Martin Pitt <email address hidden>   Tue, 11 Jul 2006 12:56:13 +0000
Obsolete in hoary-security
openoffice.org-amd64 (1.1.3-8ubuntu2.4-1) hoary-security; urgency=low

  * Update to 1.1.3-8ubuntu2.4 binaries.
  * SECURITY UPDATE: Arbitrary code execution with crafted documents.
  * Took patches from Debian's 1.1.3-9sarge1 and 1.1.3-9sarge2, thanks to Rene
    Engelhard!
  * ooo-build/patches/OOO_1_1/sax+source+expatwrap+xml2utf.cxx.diff:
    security patch again (from upstream); fix memory corruption bug;
    it was possible to write values to arbritrary memory when
    opening special files. (CVE-2006-3117)
  * ooo-build/patches/OOO_1_1/6438334-macros-so7-sfx2.diff: add patch
    from upstream to fix macro handling security bug; it was possible to
    embed macros in documents without OOo seeing them and executing them
    without any user interaction. (CVE-2006-2198)
  * ooo-build/patches/OOO_1_1/6438333-applets-so7-officecfg.diff: add patch
    from upstream to disable Java applets feature because it's possible
    to write Java applets breaking out of the sandbox (NB: the normal
    packages don't build with Java so are not affected, but the
    openoffice.org-java addon package is) (CVE-2006-2199)
  * debian/scripts/vars.i386: disable mozab on i386, too; uses mozilla
    *1.0* code and is a security nightmare. Already done pre-sarge for ppc,
    s390 and sparc but forgotten for i386 :/
  * debian/MANIFEST.i386: update

 -- Martin Pitt <email address hidden>   Wed,  5 Jul 2006 16:03:49 +0000
Superseded in edgy-release
Obsolete in dapper-release
openoffice.org-amd64 (2.0.2-2ubuntu12-1) dapper; urgency=low

  * Update to 2.0.2-2ubuntu12.
  * Mangle debian/control to make sure that all the arch:all transitional
    packages built from the main sources will be installable with us.

 -- Adam Conrad <email address hidden>   Sun, 28 May 2006 22:47:15 +0000
Superseded in dapper-release
openoffice.org-amd64 (2.0.2-2ubuntu11-1) dapper; urgency=low

  * Update to 2.0.2-2ubuntu11.
  * Revert accidental move to debian-native.

 -- Adam Conrad <email address hidden>   Sat, 27 May 2006 07:49:48 +0000
Superseded in dapper-release
openoffice.org-amd64 (2.0.2-2ubuntu10-1) dapper; urgency=low

  * Update to 2.0.2-2ubuntu10.

 -- Adam Conrad <email address hidden>   Thu, 25 May 2006 08:28:32 +0000
Superseded in dapper-release
openoffice.org-amd64 (2.0.2-2ubuntu5-1) dapper; urgency=low

  * Update to 2.0.2-2ubuntu5.
  * Fix openoffice.org-gtk upgrade. Malone: #41251, #41443.

 -- Matthias Klose <email address hidden>   Thu, 27 Apr 2006 15:04:39 +0000
Superseded in dapper-release
openoffice.org-amd64 (2.0.2-2ubuntu4-2) dapper; urgency=low

  * Fix build error on ia64.

 -- Matthias Klose <email address hidden>   Tue, 25 Apr 2006 08:30:43 +0000
Superseded in dapper-release
openoffice.org-amd64 (2.0.2-2ubuntu4-1) dapper; urgency=low

  * Update to 2.0.2-2ubuntu4.
  * Split out openoffice.org-gtk.
  * Do not build openoffice.org-gnome for ia64, crashes immediately.

 -- Matthias Klose <email address hidden>   Mon, 24 Apr 2006 21:35:54 +0000
Superseded in dapper-release
openoffice.org-amd64 (2.0.2-2ubuntu1-1) dapper; urgency=low

  * Update to 2.0.2-2ubuntu1.

 -- Matthias Klose <email address hidden>   Thu, 30 Mar 2006 09:58:33 +0000
Superseded in dapper-release
openoffice.org-amd64 (2.0.2-1ubuntu6-1) dapper; urgency=low

  * Update to 2.0.2-1ubuntu6.
  * Build native gnome-set-default-application.
  * Remove vfs UNO module, requires libgnomevfs-2.so.0, which is not
    available as 32bit library.

 -- Matthias Klose <email address hidden>   Thu, 23 Mar 2006 07:51:42 +0000
Superseded in dapper-release
openoffice.org-amd64 (2.0.2-1ubuntu3-4) dapper; urgency=low

  * Build native gnome-set-default-application.
  * Remove vfs UNO module, requires libgnomevfs-2.so.0, which is not
    available as 32bit library.

 -- Matthias Klose <email address hidden>   Mon, 20 Mar 2006 12:32:50 +0000
Superseded in dapper-release
openoffice.org-amd64 (2.0.2-1ubuntu3-3) dapper; urgency=low

  * Tighten dependencies on ia32-libs-openoffice.org to use
    the libgcj7 from this package.
  * Fix conflicts in -base and -qa-tools.

 -- Matthias Klose <email address hidden>   Thu, 16 Mar 2006 17:29:47 +0000
Superseded in dapper-release
openoffice.org-amd64 (2.0.2-1ubuntu3-2) dapper; urgency=low

  * debian/TODO: Remove.

 -- Matthias Klose <email address hidden>   Thu, 16 Mar 2006 13:17:44 +0000
Superseded in dapper-release
openoffice.org-amd64 (2.0.2-1ubuntu3-1) dapper; urgency=low

  * Install diversion for
    /usr/lib/openoffice/presets/basic/Standard/script.xlb.
  * Fix build failure on ia64. Ubuntu #23298.
  * Tighten dependencies on ia32-libs-*.

 -- Matthias Klose <email address hidden>   Thu, 16 Mar 2006 10:03:08 +0100
Superseded in dapper-release
openoffice.org-amd64 (2.0.2-1ubuntu1-1) dapper; urgency=low

  * Update to 2.0.2.
  * Tighten dependencies on ia32-libs-*.
  * Add openoffice.org-qa-tools.

 -- Matthias Klose <email address hidden>   Sun, 12 Mar 2006 15:44:08 +0100
Superseded in dapper-release
Superseded in dapper-release
openoffice.org-amd64 (2.0.1oob680m5-0ubuntu2-1) dapper; urgency=low

  * See /usr/share/doc/openoffice.org-common/changelog.Debian.gz

  * Update to 2.0.1oob680m5.
  * New packages openoffice.org-gcj, openoffice.org-qa-tools.
  * Tighten dependencies on ia32-libs-*.

 -- Matthias Klose <email address hidden>   Wed,  1 Mar 2006 12:36:16 +0000
Superseded in dapper-release
Superseded in dapper-release
Obsolete in breezy-release
openoffice.org-amd64 (1.1.5-0ubuntu1-0ubuntu1) breezy; urgency=low


  * Repackage new version.
  * Update dependencies.

 -- Matthias Klose <email address hidden>  Sun,  2 Oct 2005 09:40:35 +0000
Superseded in hoary-security
Superseded in hoary-security
openoffice.org-amd64 (1.1.3-8ubuntu2.3-1) hoary-security; urgency=low


  * SECURITY UPDATE: Fix buffer overflow on malicious documents.
  * Use newer ubuntu version which fixes CAN-2005-0941.

 -- Tollef Fog Heen <email address hidden>  Wed,  4 May 2005 11:36:17 +0200
Obsolete in hoary-release
openoffice.org-amd64 (1.1.3-8ubuntu2-1) hoary; urgency=low


  * New Ubuntu release of the ia32 package.  Includes Xhosa.

 -- Tollef Fog Heen <email address hidden>  Wed,  6 Apr 2005 17:04:58 +0200
Obsolete in warty-security
Superseded in warty-security
Superseded in warty-security
openoffice.org-amd64 (1.1.2-2ubuntu6.1-1) warty-security; urgency=low


  * Sync with i386 security update:
  * SECURITY UPDATE: Fix buffer overflow on malicious documents.
  * Added patch CAN-2005-0941.patch:
    - sot/source/sdstor/stgole.cxx(), StgCompObjStream::Load(): Ignore
      the upper 16 bits of document-specified length (32 bit) since at
      allocation it is truncated to a 16-bit value, which can lead to
      wraparounds. [CAN-2005-0941]

 -- Tollef Fog Heen <email address hidden>  Fri,  6 May 2005 10:15:30 +0200
Obsolete in warty-release
openoffice.org-amd64 (1.1.2-2ubuntu6-1) warty; urgency=low


  * Sync with i386
  * ooo-build/patches/OOO_1_1_2/apply: add these new patches
    - ooo-build/patches/OOO_1_1/security-tmp-dir.diff: upstream security fix
        . Ubuntu bug #1308
    - ooo-build/patches/OOO_1_1/gnome_desktop_files.diff:
        . combines desktop-menu-names.diff and desktop-mime.diff. bug #1188
        . add rtf mimetypes to Writer's mimetypes. bug #1638
        . add ppt mimetype to Impress's mimetypes. bug #1494
    - ooo-build/patches/OOO_1_1/ubuntu-splash.diff: 
        . add Ubuntu as the vendor
        . reset splash to default OOo splash. bug #1076
  * ooo-build/patches/OOO_1_1_2/apply: remove the patches replaced
      . debian-splash.diff
      . desktop-menu-names.diff
      . desktop-mime.diff
  * debian/rules: don't build debian splash image
  * debian/rules: don't change translations for woody

 -- Tollef Fog Heen <email address hidden>  Tue, 28 Sep 2004 00:55:44 +0200
134 of 34 results