Publishing details

Changelog

wavpack (5.1.0-2ubuntu1~ubuntu16.04.1~ppa1) xenial; urgency=medium

  * No-change backport to xenial

wavpack (5.1.0-2ubuntu1) bionic; urgency=medium

  * SECURITY UPDATE: stack-based buffer overr-read
    - debian/patches/CVE-2018-6767.patch: do not overwrite
      stack on corrupt RF64 file in cli/riff.c.
    - CVE-2018-6767
  * SECURITY UPDATE: Maliciously crafted DSDIFF can result
    in a denial of service
    - debian/patches/CVE-2018-7253.patch: do not overwrite
      heap on corrupt DSDIFF file in cli/dsdiff.c
    - CVE-2018-7253
  * SECURITY UPDATE: Denial of service through maliciously
    crafted CAF file
    - debian/patches/CVE-2018-7254.patch: fix buffer overflows
      and bad allocs in cli/caff.c.
    - CVE-2018-7254

wavpack (5.1.0-2) unstable; urgency=medium

  * Bump Standards-Version to 4.0.0.
  * Drop myself from Uploaders.

wavpack (5.1.0-1) unstable; urgency=medium

  * Team upload.
  * New upstream release.
  * debian/patches: Removed patches included upstream.
  * debian/copyright: Update copyright years.

wavpack (5.0.0-2) unstable; urgency=medium

  * Team upload.
  * debian/patches: Apply upstream fix to fix some fuzz failures
    (CVE-2016-10169, CVE-2016-10170, CVE-2016-10171, CVE-2016-10172). (Closes:
    #853076)

wavpack (5.0.0-1) unstable; urgency=medium

  * Team upload.
  * New upstream release.
  * debian/libwavpack1.symbols: Add new symbols.
  * debian/copyright: Update copyright information.
  * debian/control: Bump Standards-Version.

wavpack (4.80.0-1) unstable; urgency=medium

  * Team upload.
  * New upstream release.
  * debian/patches/mark-stack-non-executable.patch: Removed, included
    upstream.
  * debian/control:
    - Bump Standards-Version, no changes needed.
    - Update Vcs-*.

 -- David Hildebrand <email address hidden>  Sun, 04 Mar 2018 09:26:28 -0500

Available diffs

Builds

Built packages

Package files