-
qtbase-opensource-src (5.12.8+dfsg-0ubuntu2.1) focal-security; urgency=medium
* SECURITY UPDATE: Out-of-bounds Write
- No-change rebuild for the focal-security pocket.
- CVE-2021-38593
-- Paulo Flabiano Smorigo <email address hidden> Wed, 05 Jan 2022 18:54:17 +0000
-
qtbase-opensource-src (5.12.8+dfsg-0ubuntu2) focal; urgency=medium
* Backport four upstream commits to fix massive memory consumption when
rendering specially crafted SVG files (CVE-2021-38593, LP: #1950193).
-- Dmitry Shachnev <email address hidden> Sun, 12 Dec 2021 14:25:21 +0300
-
qtbase-opensource-src (5.12.8+dfsg-0ubuntu1) focal; urgency=medium
* New upstream bugfix release.
* Drop patches, included in the new release:
- uic_global_includes.diff
- CVE-2020-0569.diff
- CVE-2020-0570.diff
- CVE-2015-9541.diff
* Refresh other patches.
* Update debian/copyright using debian/scripts/update-copyright.
* Bump ABI version to qtbase-abi-5-12-8.
* Bump Build-Depends-Indep to 5.12.8.
* Update symbols files from the current build logs.
-- Dmitry Shachnev <email address hidden> Thu, 09 Apr 2020 10:57:56 +0300
-
qtbase-opensource-src (5.12.5+dfsg-9build1) focal; urgency=medium
* No-change rebuild for icu soname change.
-- Matthias Klose <email address hidden> Tue, 03 Mar 2020 21:50:35 +0100
-
qtbase-opensource-src (5.12.5+dfsg-9) unstable; urgency=medium
[ Dmitry Shachnev ]
* Backport upstream patch to add an expansion limit for XML entities
(CVE-2015-9541, closes: #951066).
- Add two new symbols to debian/libqt5core5a.symbols.
[ Helmut Grohne ]
* qmake cross wrapper should pass QMAKE_STRIP. (Closes: #950507)
-- Dmitry Shachnev <email address hidden> Thu, 27 Feb 2020 16:52:19 +0300
-
qtbase-opensource-src (5.12.5+dfsg-8build1) focal; urgency=medium
* No-change rebuild for icu soname change.
-- Matthias Klose <email address hidden> Thu, 13 Feb 2020 09:15:15 +0100
-
qtbase-opensource-src (5.12.5+dfsg-8) unstable; urgency=medium
* Revert adding alternative qtbase5-gles-dev dependencies:
- For qtbase5-private-dev: it is wrong, those who need private headers
and OpenGL ES specific API should use qtbase5-private-gles-dev, not
qtbase5-private-dev.
- For libqt5opengl5-dev: it does not help, libqt5opengl5 uses desktop
OpenGL specific symbols, so it is not installable with libqt5gui5-gles.
* Remove explicit libqt5gui5 | libqt5gui5-gles dependencies from the
platformtheme packages. Rely on ${shlibs:Depends} instead.
* Override the remaining version-substvar-for-external-package error.
* Backport fixes for two vulnerabilities:
- CVE-2020-0569: Do not load plugin from the CWD.
- CVE-2020-0570: Qt tries to load invalid library from CWD.
* Make Qt 5 the default configuration in qtchooser, by installing the
qt-default/qtchooser/default.conf symlink in libqt5core5a package.
* Bump Standards-Version to 4.5.0, no changes needed.
-- Dmitry Shachnev <email address hidden> Fri, 31 Jan 2020 00:03:38 +0300
-
qtbase-opensource-src (5.12.5+dfsg-7) unstable; urgency=medium
* Changeless upload to allow arch:all binary packages being built after
passing NEW queue.
-- Lisandro Damián Nicanor Pérez Meyer <email address hidden> Thu, 23 Jan 2020 09:08:39 -0300
-
qtbase-opensource-src (5.12.5+dfsg-5) unstable; urgency=medium
[ Pino Toscano ]
* Limit the libdrm-dev build dependency as linux-any, as it is only useful
on Linux. (Closes: #947675)
[ Dmitry Shachnev ]
* Backport upstream patch to add RISC-V detection.
* Update debian/libqt5network5.symbols from buildds’ logs.
-- Dmitry Shachnev <email address hidden> Tue, 31 Dec 2019 14:19:15 +0300
-
qtbase-opensource-src (5.12.5+dfsg-4) unstable; urgency=medium
* Build-depend on libdrm-dev and libxcb-glx0-dev, to fix FTBFS.
-- Dmitry Shachnev <email address hidden> Sun, 22 Dec 2019 00:28:25 +0300
-
qtbase-opensource-src (5.12.5+dfsg-3) unstable; urgency=medium
* Backport upstream patch to fix uic handling of .ui files with global
includes. Thanks to Alexander Volkov for the pointer!
* Stop depending on libgl1-mesa-dev and libgles2-mesa-dev, which are
transitional packages in mesa ≥ 19.3.0~rc6-1.
* Also make qtbase5-dev explicitly depend on libegl-dev (closes: #947117).
* Move the compatibility symlinks from qtbase5-dev-tools to qtbase5-dev
(closes: #939653).
-- Dmitry Shachnev <email address hidden> Sat, 21 Dec 2019 14:30:03 +0300
-
qtbase-opensource-src (5.12.5+dfsg-2) unstable; urgency=medium
* Update symbols files from buildds’ logs.
* Add support for PostgreSQL 12 (closes: #941763).
* Bump Standards-Version to 4.4.1, no changes needed.
* Upload to unstable.
-- Dmitry Shachnev <email address hidden> Sun, 20 Oct 2019 22:33:00 +0300
-
qtbase-opensource-src (5.12.4+dfsg-4ubuntu1) eoan; urgency=medium
* Backport two patches from upstream 5.12.5 release:
- Use Xft DPI as basis for HiDPI scaling (LP: #1834333).
- Fix crash when closing floating QDialogs, by reverting a breaking
change from 5.12.4 release.
* Update symbols files from the current build logs.
-- Dmitry Shachnev <email address hidden> Thu, 03 Oct 2019 11:59:59 +0300