-
gdk-pixbuf (2.26.1-1ubuntu1.5) precise-security; urgency=medium
* SECURITY UPDATE: Fix a heap-based buffer overflow
- debian/patches/CVE-2015-7552.patch: Protect against overflow. Based on
upstream patches.
- CVE-2015-7552
* SECURITY UPDATE: Fix multiple integer overflows
- debian/patches/CVE-2015-8875.patch: use gint64 in more places to avoid
overflow when shifting
- CVE-2015-8875
-- Emily Ratliff <email address hidden> Wed, 21 Sep 2016 10:14:57 -0500
-
gdk-pixbuf (2.26.1-1ubuntu1.3) precise-security; urgency=medium
* SECURITY UPDATE: Heap overflow and DoS with tga files
- debian/patches/CVE-2015-7673-1.patch: pass on OOM conditions in
make_weights functions in gdk-pixbuf/pixops/pixops.c
- debian/patches/CVE-2015-7673-2.patch: Wrap TGAColormap struct in
its own API in gdk-pixbuf/io-tga.c
- debian/patches/CVE-2015-7673-3.patch: always parse colormaps in
gdk-pixbuf/io-tga.c
* SECURITY UPDATE: heap overflow when scaling GIF images
- debian/patches/CVE-2015-767.patch: ensure variables are large
enough when shifting bits in gdk-pixbuf/pixops/pixops.c
-- Steve Beattie <email address hidden> Sat, 10 Oct 2015 07:55:26 -0700
-
gdk-pixbuf (2.26.1-1ubuntu1.2) precise-security; urgency=medium
* SECURITY UPDATE: heap overflow when scaling bitmap images
- debian/patches/CVE-2015-4491-1.patch: check for overflows in
gdk-pixbuf/pixops/pixops.c.
- debian/patches/CVE-2015-4491-2.patch: also check n_x in
gdk-pixbuf/pixops/pixops.c.
- CVE-2015-4491
-- Marc Deslauriers <email address hidden> Tue, 18 Aug 2015 13:04:11 -0400
-
gdk-pixbuf (2.26.1-1ubuntu1.1) precise; urgency=medium
* Link with -Wl,--no-as-needed so that we get linked against libgobject,
avoiding crashes when modules load and unload newer versions of libgobject
which have a global constructor. (LP: #1174253)
-- Iain Lane <email address hidden> Fri, 21 Mar 2014 18:06:47 +0000
-
gdk-pixbuf (2.26.1-1) unstable; urgency=low
* New upstream bug fix release:
- Fix srcdir != builddir build.
- Avoid an integer overflow in the xbm loader. (LP: #681150)
- Translation updates.
* debian/control.in: Prefer building against libpng-dev over libpng12-dev,
to be prepared for the libpng 1.5 transition. (Closes: #662344)
* debian/control.in: Bump Standards-Version to 3.9.3 (no changes necessary).
gdk-pixbuf (2.26.0-2) unstable; urgency=low
* Upload to unstable.
-- Martin Pitt <email address hidden> Mon, 16 Apr 2012 07:21:41 +0200
-
gdk-pixbuf (2.26.0-1) experimental; urgency=low
* New upstream release.
-- Michael Biebl <email address hidden> Wed, 21 Mar 2012 01:48:57 +0100
-
gdk-pixbuf (2.26.0-0ubuntu1) precise; urgency=low
* New upstream version
-- Sebastien Bacher <email address hidden> Tue, 20 Mar 2012 19:38:33 +0100
-
gdk-pixbuf (2.25.2-0ubuntu2) precise; urgency=low
* debian/control.in:
- updated the glib requirement
* debian/libgdk-pixbuf2.0-common.install:
- restore file dropped by error
* debian/libgdk-pixbuf2.0-dev.install:
- drop duplicated line
* Thanks ricotz for pointing those issues
-- Sebastien Bacher <email address hidden> Mon, 06 Feb 2012 16:18:25 +0100
-
gdk-pixbuf (2.25.2-0ubuntu1) precise; urgency=low
* New upstream version
* debian/libgdk-pixbuf2.0-0.symbols:
- list new symbols
* debian/libgdk-pixbuf2.0-dev.install:
- install gdk-pixbuf-pixdata
-- Sebastien Bacher <email address hidden> Mon, 06 Feb 2012 10:28:49 +0100
-
gdk-pixbuf (2.25.0-0ubuntu1) precise; urgency=low
* New upstream version
* debian/control.in:
- updated glib requirement
* debian/libgdk-pixbuf2.0-0.symbols:
- list new symbols
* debian/rules:
- use --with-x11
-- Sebastien Bacher <email address hidden> Tue, 03 Jan 2012 12:47:30 +0100
-
gdk-pixbuf (2.24.0-2) unstable; urgency=low
[ Michael Biebl ]
* debian/watch:
- Switch to .xz tarballs.
[ Josselin Mouette ]
* Split locales in a separate package for multiarch:
libgdk-pixbuf2.0-common. Make it m-a: foreign.
[ Michael Biebl ]
* Change section of gir1.2-gdkpixbuf-2.0 to introspection.
-- Michael Biebl <email address hidden> Wed, 14 Dec 2011 22:12:21 +0100
-
gdk-pixbuf (2.24.0-1ubuntu2) precise; urgency=low
* Rebuild for libjpeg8.
-- Colin Watson <email address hidden> Tue, 18 Oct 2011 19:45:28 +0100
-
gdk-pixbuf (2.24.0-1ubuntu1) oneiric; urgency=low
* 01_revert_libs_private_use.patch:
- revert upstream commit to use Libs.private for oneiric, it leads to
build errors in softwares not using -lm correctly and we don't
have a list of those, we will drop the patch and fix them next cycle.
-- Sebastien Bacher <email address hidden> Tue, 27 Sep 2011 21:48:11 +0200