-
miniupnpc (1.9.20140610-2ubuntu2.16.04.2) xenial-security; urgency=medium
* SECURITY UPDATE: multiple overflows
- debian/patches/CVE-2017-1000494-1.patch: properly initialize data
structure for SOAP parsing in upnpreplyparse.c.
- debian/patches/CVE-2017-1000494-2.patch: fix heap buffer overflow in
minixml.c.
- CVE-2017-1000494
-- Marc Deslauriers <email address hidden> Wed, 31 Jan 2018 13:46:02 -0500
-
miniupnpc (1.9.20140610-2ubuntu2.16.04.1) xenial-security; urgency=medium
* SECURITY UPDATE: integer signedness error
- debian/patches/CVE-2017-8798_integer_signedness_error.patch: fix
comparisons in miniwget.c.
- CVE-2017-8798
* SECURITY UPDATE: buffer overflow in simpleUPnPcommand2
- debian/patches/More_accurate_checking_*.patch: perform better
checking while writing buffer in miniupnpc.c.
- No CVE number
-- Marc Deslauriers <email address hidden> Fri, 19 May 2017 11:18:26 -0400
-
miniupnpc (1.9.20140610-2ubuntu2) wily; urgency=medium
* SECURITY UPDATE: buffer overflow in XML parser (LP: #1506017)
- debian/patches/CVE-2015-6031.patch: fix buffer overflow in
igd_desc_parse.c
- CVE-2015-6031
-- Steve Beattie <email address hidden> Thu, 15 Oct 2015 17:31:20 -0700
-
miniupnpc (1.9.20140610-2ubuntu1) vivid; urgency=low
* Merge from Debian unstable (LP: #1387096). Remaining changes:
- Suggest minissdpd rather than recommending it, as it's in universe.
miniupnpc (1.9.20140610-2) unstable; urgency=medium
* Uploading to unstable.
miniupnpc (1.9.20140610-1) experimental; urgency=medium
* New upstream release. This fixes FTBFS in kFreeBSD.
* Now switching to pristine tar Git packaging.
* Adds correct-typo-in-manpage.patch.
* Added a debian/libminiupnpc10.symbols file.
miniupnpc (1.9.20140401-1) experimental; urgency=medium
* New upstream release (Closes: #748913, #698705)
* Uploading to experimental because of the needed transition.
* Enabled hardening build flags (Closes: #680214).
* Removed 000-Setup.py_CFLAGS_override.patch now applied upstream.
* Refreshed fix-ftbfs-on-hurd.patch.
* Upstream bumped SONAME, so now packaging libminiupnpc10 instead of 8.
* Switched to upstream branch tags git packaging. Note that upstream Git
cannot be used directly, as it contains all projects of miniupnp in a
single repository.
* Removed patch applied upstream: debian/patches/fix-ftbfs-on-hurd.patch.
* Bumped Standards-Version.
-- Gianfranco Costamagna <email address hidden> Thu, 30 Oct 2014 18:07:17 +0000