-
openoffice.org (1:3.1.1-5ubuntu1.3) karmic-security; urgency=low
* SECURITY UPDATE: multiple OpenOffice.org vulnerabilities.
- ooo-build/patches/dev300/SA40775.diff: buffer overflow fixes from
upstream, patch thanks to Rene Engelhard (CVE-2010-2935, CVE-2010-2936).
- ooo-build/patches/dev300/tread-invalid-path-segments-correctly.diff:
directory traversal fixes from upstream, patch thanks to Rene Engelhard
(CVE-2010-3450).
- ooo-build/patches/dev300/cws-hb22.diff: multiple fixes from upstream,
patch thanks to Rene Engelhard.
- corrupt table model in RTF parser (CVE-2010-3451)
- SwRTFParser::ReadNumSecLevel (CVE-2010-3452)
- WW8ListManager::WW8ListManager (CVE-2010-3453)
- WW8DopTypography::ReadFromMem (CVE-2010-3454)
- LD_LIBRARY_PATH current directory injection (CVE-2010-3689)
- ooo-build/patches/dev300/security-fixes-drom-cws-os145.diff: heap
overflow in PPT fix from upstream, patch thanks to Rene Engelhard
(CVE-2010-4253).
- ooo-build/patches/dev300/security-fixes-from-cws-impress208.diff: heap
overflow in TGA fix from upstream, patch thanks to Rene Engelhard
(CVE-2010-4643).
-- Kees Cook <email address hidden> Tue, 25 Jan 2011 13:48:32 -0800
-
openoffice.org (1:3.1.1-5ubuntu1.2) karmic-security; urgency=low
* ooo-build/patches/dev300/apply:
ooo-build/patches/dev300/cws-ooo321gsl04.diff: fix
"auto-execution of python code when manually browsing macro names"
- CVE-2010-0395
-- Chris Cheney <email address hidden> Tue, 01 Jun 2010 08:00:00 -0500
-
openoffice.org (1:3.1.1-5ubuntu1.1) karmic-security; urgency=low
* Correct check for lockfile and have it log if in noninteractive mode
that OOo should not be running during upgrade. (LP: #450569)
* ooo-build/patches/dev300/cws-impress178-xpm-and-gif-fix.diff: fix
"OpenOffice.org XPM Import Integer Overflow" and
"OpenOffice.org GIF Import Heap Overflow"
- CVE-2009-2949
- CVE-2009-2950
* ooo-build/patches/dev300/cws-hb32showstoppers3.diff: fix
"OOO sprmTDefTable issue" and "OOO sprmTSetBrc issue"
- CVE-2009-3301
- CVE-2009-3302
* ooo-build/patches/dev300/libxmlsec-CVE-2009-0217.diff: fix internal
libxmlsec copy (just the nss part)
- CVE-2009-0217
* ooo-build/patches/dev300/vba-macro-properties.diff: fix vba macros not
honoring security settings
- CVE-2010-0136
-- Chris Cheney <email address hidden> Wed, 17 Feb 2010 11:00:00 -0600
-
openoffice.org (1:3.1.1-5ubuntu1) karmic; urgency=low
* Resynchronise with Debian (r1714). Remaining changes:
- Add Launchpad integration support.
- Add Launchpad translations support.
- Add package openoffice.org-style-human.
- Add some Ubuntu-specific bitmaps. Adjust broffice diversions for these.
- Add support for compressing debs with lzma.
- Add support for shared /usr/share/doc directories.
- Add support to build l10n as a separate source.
- Add support to build on lpia.
- Add support to turn off building on sparc.
- Add Xb-Npp-xxx tags according to "firefox distro add-on suport" spec.
- Use imagemagick instead of graphicsmagick.
- openoffice.org-help switch to internal copy of lucene.
- Disable gnome-vfs support since it is buggy.
- Switch desktop files from %U to %F for gvfs fuse.
- Check for known OOo-using services and stop/start them. (LP: #450569)
- Finnish (fi) erronously listed in REMOVE_HELP. (LP: #455267)
* Resynchronise with ooo-build-3-1-1 (df43127e853b920b288a6156111e4a2150bbae42).
- Fixes wrong filter texts in KDE4 fpicker. (LP: #452518)
-- Chris Cheney <email address hidden> Wed, 21 Oct 2009 22:00:00 -0500
-
openoffice.org (1:3.1.1-4ubuntu2) karmic; urgency=low
[ Chris Cheney ]
* Add openoffice.org-common to Pre-Depends as workaround for apt ordering.
(LP: #442651)
* Resynchronise with ooo-build-3-1-1 (01bbcda85cb32be9eb5334430fb208ec5ca60041).
- patches/dev300/kde4_fpicker_fixes2.diff: kde4 fpicker: fixed 'new folder'
button
- patches/dev300/ubuntu-opt.diff: -Os in karmic on powerpc doesn't work
[ Matthias Klose ]
* Build using internal boost on jaunty, adjust libgcc3_uno.so URL in
debian/copyright.
-- Matthias Klose <email address hidden> Sat, 17 Oct 2009 16:06:49 +0200
-
openoffice.org (1:3.1.1-4ubuntu1) karmic; urgency=low
* Resynchronise with Debian (r1694). Remaining changes:
- Add Launchpad integration support.
- Add Launchpad translations support.
- Add package openoffice.org-style-human.
- Add some Ubuntu-specific bitmaps. Adjust broffice diversions for these.
- Add support for compressing debs with lzma.
- Add support for shared /usr/share/doc directories.
- Add support to build l10n as a separate source.
- Add support to build on lpia.
- Add support to turn off building on sparc.
- Add Xb-Npp-xxx tags according to "firefox distro add-on suport" spec.
- Use imagemagick instead of graphicsmagick.
- openoffice.org-help switch to internal copy of lucene.
- Disable gnome-vfs support since it is buggy.
- Switch desktop files from %U to %F for gvfs fuse.
- Update GSI files for ga, nb, nn, sl.
* Resynchronise with ooo-build-3-1-1 (872a05fa740b5ecb6c8c6d7e0bef62ea2e1e800c).
[ Matthias Klose ]
* Work around libgcc3_uno.so runtime failures on armel.
* Build on sparc (was disabled by Debian).
-- Chris Cheney <email address hidden> Sun, 11 Oct 2009 00:30:00 -0500
-
openoffice.org (1:3.1.1-2ubuntu4) karmic; urgency=low
* Build-depend on texinfo on armel, required to build binutils.
-- Matthias Klose <email address hidden> Tue, 29 Sep 2009 15:25:11 +0200
-
openoffice.org (1:3.1.1-2ubuntu3) karmic; urgency=low
* Fix build failure on armel, typo in patch for uno2cpp bridge.
* Fix build failure on powerpc, building with -O2 instead of -Os.
-- Matthias Klose <email address hidden> Sun, 27 Sep 2009 13:32:31 +0200
-
openoffice.org (1:3.1.1-2ubuntu2) karmic; urgency=low
* debian/control.in: Update Vcs-Bzr.
* debian/rules: Use the internal boost libraries for jaunty/armel.
* On armel, build the internal copy of icu with -Os instead of -O.
* Revert the change form 1:3.1.1-1ubuntu2, fix the bridge to properly
work with -mfloat-abi=softfp (armeabi-softfp-buildfix.diff, i#105302).
* Don't fail a binary-indep build on architectures not supporting mono.
* Build the binfilter packages on armel.
* Fix the crashes on startup on armel the GentOOobuntu way:
- Build a binutils with the changes for the ARM unwind table linker
processing and relink libgcc3_uno.so. The increase in build time
is hardly noticed.
- binutils PR ld/10695 and OOo i#105359 have to investigated for a
proper solution.
* Check that openjdk-6 is recognized as a java environment and that the
Writer wizards work.
-- Matthias Klose <email address hidden> Sat, 26 Sep 2009 16:56:23 +0200
-
openoffice.org (1:3.1.1-2ubuntu1) karmic; urgency=low
* Resynchronise with Debian (r1671). Remaining changes:
- Add Launchpad integration support.
- Add Launchpad translations support.
- Add package openoffice.org-style-human.
- Add some Ubuntu-specific bitmaps. Adjust broffice diversions for these.
- Add support for compressing debs with lzma.
- Add support for shared /usr/share/doc directories.
- Add support to build l10n as a separate source.
- Add support to build on lpia.
- Add support to turn off building on sparc.
- Add Xb-Npp-xxx tags according to "firefox distro add-on suport" spec.
- Use imagemagick instead of graphicsmagick.
- openoffice.org-help switch to internal copy of lucene.
- Disable gnome-vfs support since it is buggy.
- Switch desktop files from %U to %F for gvfs fuse.
- Packaging fixes. (LP: #421614)
- Quote ARCH_FLAGS variable. (LP: #429213)
* Resynchronise with ooo-build-3-1-1 (23880dcff198a2073f6be4691416c2704cbe039d).
- Partial fix for KDE4 LP bugs 424132, 426667
-- Chris Cheney <email address hidden> Sun, 20 Sep 2009 17:00:00 -0500
-
openoffice.org (1:3.1.1-1ubuntu2) karmic; urgency=low
* Add hack that sets ARCH_FLAGS += -mfloat-abi=soft on armel in debian/rules. The
source does not understand -mfloat-abi=softfp -mfpu=vfp (which unsets __SOFTFP__
actually) and OO.o fails to build. Setting -mfloat-abi=soft makes __SOFTFP__
being exported so the build requirements are fulfilled (should be reverted
once upstream supports the combination of -mfloat-abi=softfp and -mfpu=vfp).
-- Oliver Grawert <email address hidden> Fri, 04 Sep 2009 16:45:46 +0200
-
openoffice.org (1:3.1.1-1ubuntu1) karmic; urgency=low
* Resynchronise with Debian (r1655). Remaining changes:
- Add Launchpad integration support.
- Add Launchpad translations support.
- Add package openoffice.org-style-human.
- Add some Ubuntu-specific bitmaps. Adjust broffice diversions for these.
- Add support for compressing debs with lzma.
- Add support for shared /usr/share/doc directories.
- Add support to build l10n as a separate source.
- Add support to build on lpia.
- Add support to turn off building on sparc.
- Add Xb-Npp-xxx tags according to "firefox distro add-on suport" spec.
- Use imagemagick instead of graphicsmagick.
- openoffice.org-help switch to internal copy of lucene.
- Disable gnome-vfs support since it is buggy.
- Switch desktop files from %U to %F for gvfs fuse.
* Resynchronise with ooo-build-3-1-1 (a9bb3ad78016bbd1e81a48489394ae04e1e8ff55).
-- Chris Cheney <email address hidden> Fri, 28 Aug 2009 09:51:19 -0500
-
openoffice.org (1:3.1.1~rc1-1ubuntu1) karmic; urgency=low
* Resynchronise with Debian (r1631). Remaining changes:
- Add Launchpad integration support.
- Add Launchpad translations support.
- Add package openoffice.org-style-human.
- Add some Ubuntu-specific bitmaps. Adjust broffice diversions for these.
- Add support for compressing debs with lzma.
- Add support for shared /usr/share/doc directories.
- Add support to build l10n as a separate source.
- Add support to build on lpia.
- Add support to turn off building on sparc.
- Add Xb-Npp-xxx tags according to "firefox distro add-on suport" spec.
- Use imagemagick instead of graphicsmagick.
- openoffice.org-help switch to internal copy of lucene.
- Disable gnome-vfs support since it is buggy.
- Switch desktop files from %U to %F for gvfs fuse.
* Resynchronise with ooo-build-3-1-1 (7b03695ba14f142cfde58b4592af50cd60e3e787).
-- Chris Cheney <email address hidden> Thu, 13 Aug 2009 16:30:00 -0500
-
openoffice.org (1:3.1.0-5ubuntu1) karmic; urgency=low
* Resynchronise with Debian (r1592). Remaining changes:
- Add Launchpad integration support.
- Add Launchpad translations support.
- Add package openoffice.org-style-human.
- Add some Ubuntu-specific bitmaps. Adjust broffice diversions for these.
- Add support for compressing debs with lzma.
- Add support for shared /usr/share/doc directories.
- Add support to build l10n as a separate source.
- Add support to build on lpia.
- Add support to turn off building on sparc.
- Add Xb-Npp-xxx tags according to "firefox distro add-on suport" spec.
- Use imagemagick instead of graphicsmagick.
- openoffice.org-help switch to internal copy of lucene.
- Disable gnome-vfs support since it is buggy.
- Remove hicolor and locolor icons.
- Switch desktop files from %U to %F for gvfs fuse.
- Reenable gsi-export for Rosetta.
- Update path in ubuntu-lpi patch. (LP: #377841)
* Resynchronise with ooo-build-3-1 (1aecbd503e6777e04a368e36adeb633be7f216c7).
-- Chris Cheney <email address hidden> Mon, 15 Jun 2009 10:30:00 -0500
-
openoffice.org (1:3.1.0-3ubuntu2) karmic; urgency=low
* Correct path to splitgsi in convert2po.
* Disable gsi-export for Rosetta due to bug in localize.pl.
* Reenable building on sparc.
* Switch boost to 1.38.
* Resynchronise with ooo-build-3-1 (271b85e5ce6b601d75d0693b9c937d1eabd069dc).
-- Chris Cheney <email address hidden> Tue, 26 May 2009 18:00:00 -0500
-
openoffice.org (1:3.1.0-3ubuntu1) karmic; urgency=low
* Resynchronise with Debian (r1559). Remaining changes:
- Add Launchpad integration support.
- Add Launchpad translations support.
- Add package openoffice.org-style-human.
- Add some Ubuntu-specific bitmaps. Adjust broffice diversions for these.
- Add support for compressing debs with lzma.
- Add support for shared /usr/share/doc directories.
- Add support to build l10n as a separate source.
- Add support to build on lpia.
- Add support to turn off building on sparc.
- Add Xb-Npp-xxx tags according to "firefox distro add-on suport" spec.
- Set startcenter.desktop to not display in the menu.
- Use imagemagick instead of graphicsmagick.
- openoffice.org-help switch to internal copy of lucene.
- Disable building on sparc.
- Disable gnome-vfs support since it is buggy.
- Remove hicolor and locolor icons.
- Switch desktop files from %U to %F for gvfs fuse.
- Reenable gsi-export for Rosetta.
* Resynchronise with ooo-build-3-1 (3f777bce5cbe0665fb840eee9cfe08fd9e1c710e).
-- Chris Cheney <email address hidden> Sun, 24 May 2009 12:30:00 -0500
-
openoffice.org (1:3.1.0-1ubuntu1) karmic; urgency=low
* Resynchronise with Debian (r1529). Remaining changes:
- Add Launchpad integration support.
- Add Launchpad translations support.
- Add package openoffice.org-style-human.
- Add some Ubuntu-specific bitmaps. Adjust broffice diversions for these.
- Add support for compressing debs with lzma.
- Add support for shared /usr/share/doc directories.
- Add support to build l10n as a separate source.
- Add support to build on lpia.
- Add support to turn off building on sparc.
- Add Xb-Npp-xxx tags according to "firefox distro add-on suport" spec.
- Set startcenter.desktop to not display in the menu.
- Use imagemagick instead of graphicsmagick.
- openoffice.org-help switch to internal copy of lucene.
- Disable building on sparc.
- Disable gnome-vfs support since it is buggy.
- Remove hicolor and locolor icons.
- Switch desktop files from %U to %F for gvfs fuse.
* Resynchronise with ooo-build-3-1 (32f6d7a88d87202f3fff28ee82084d2059c8e45a).
-- Chris Cheney <email address hidden> Mon, 11 May 2009 18:45:00 -0500
-
openoffice.org (1:3.1.0~rc2-1ubuntu1) karmic; urgency=low
* Resynchronise with Debian (r1516). Remaining changes:
- Add Launchpad integration support.
- Add Launchpad translations support.
- Add package openoffice.org-style-human.
- Add some Ubuntu-specific bitmaps. Adjust broffice diversions for these.
- Add support for compressing debs with lzma.
- Add support for shared /usr/share/doc directories.
- Add support to build l10n as a separate source.
- Add support to build on lpia.
- Add support to turn off building on sparc.
- Add Xb-Npp-xxx tags according to "firefox distro add-on suport" spec.
- Set startcenter.desktop to not display in the menu.
- Use imagemagick instead of graphicsmagick.
- openoffice.org-help switch to internal copy of lucene.
- Disable building on sparc.
- Disable gnome-vfs support since it is buggy.
- Remove hicolor and locolor icons.
- Switch desktop files from %U to %F for gvfs fuse.
- Temporarily disable system jfreereport until it is built.
* Resynchronise with ooo-build (ed83f8ef25c224f80ded79eb91c845064b407421).
-- Chris Cheney <email address hidden> Tue, 05 May 2009 23:00:00 -0500
-
openoffice.org (1:3.0.1-9ubuntu3) jaunty; urgency=low
* Added java-runtime-depends to openoffice.org-java-common depends.
(LP: #360120)
* Resynchronise with ooo-build-3-0-1 (0acbcec5cc964297d0074c8ad9a2fa21bf8f1506).
- Corrected the KDE file dialog don't overwrite patch. (LP: #338640)
-- Chris Cheney <email address hidden> Mon, 13 Apr 2009 16:30:00 -0500