Subversion Repositories

?revision_form?Rev ?revision_input??revision_submit??revision_endform?

Rev 27 | Only display areas with differences | Ignore whitespace | Details | Blame | Last modification | View Log | RSS feed

Rev 27 Rev 35
-
 
1
libtar (1.2.16-1+deb7u2) wheezy-security; urgency=low
-
 
2
-
 
3
  * [SECURITY] CVE-2013-4420.patch: Strip out leading slashes and any
-
 
4
    pathname prefix containing ".." components (Closes: #731860). This is
-
 
5
    done in th_get_pathname() (as well as to symlink targets when
-
 
6
    extracting symlinks), not merely when extracting files, which means
-
 
7
    applications calling that function will not see the stored
-
 
8
    filename. There is no way to disable this behaviour, but it can be
-
 
9
    expected that one will be provided when the issue is solved upstream.
-
 
10
-
 
11
 -- Magnus Holmgren <holmgren@debian.org>  Sun, 16 Feb 2014 19:12:18 +0100
-
 
12
1
libtar (1.2.16-1+deb7u1) wheezy-security; urgency=low
13
libtar (1.2.16-1+deb7u1) wheezy-security; urgency=low
2
14
3
  * [SECURITY] size_t-overflow_cve-2013-4397.patch: Fix CVE-2013-4397:
15
  * [SECURITY] size_t-overflow_cve-2013-4397.patch: Fix CVE-2013-4397:
4
    Integer overflow (Closes: #725938).
16
    Integer overflow (Closes: #725938).
5
17
6
 -- Magnus Holmgren <holmgren@debian.org>  Thu, 10 Oct 2013 20:23:17 +0200
18
 -- Magnus Holmgren <holmgren@debian.org>  Thu, 10 Oct 2013 20:23:17 +0200
7
19
8
libtar (1.2.16-1) unstable; urgency=low
20
libtar (1.2.16-1) unstable; urgency=low
9
21
10
  * New upstream: Chris Frey has stepped up with the consent of the
22
  * New upstream: Chris Frey has stepped up with the consent of the
11
    original author, Mark Roth, and published an "official unofficial" git
23
    original author, Mark Roth, and published an "official unofficial" git
12
    repo at http://repo.or.cz/w/libtar.git, which I will use for the time
24
    repo at http://repo.or.cz/w/libtar.git, which I will use for the time
13
    being.
25
    being.
14
  * Updated debian/watch to look for tags and corresponding snapshot
26
  * Updated debian/watch to look for tags and corresponding snapshot
15
    tarballs at above URL.
27
    tarballs at above URL.
16
  * All patches have been incorporated or (in the case of
28
  * All patches have been incorporated or (in the case of
17
    autoreconf.patch) made obsolete upstream.
29
    autoreconf.patch) made obsolete upstream.
18
  * debian/rules: Add build-indep and build-arch targets.
30
  * debian/rules: Add build-indep and build-arch targets.
19
  * Updated debian/copyright.
31
  * Updated debian/copyright.
20
  * Use dpkg-buildflags to set CFLAGS et al.
32
  * Use dpkg-buildflags to set CFLAGS et al.
21
  * debian/control: Add VCS fields; bump Standards-Version to 3.9.3.
33
  * debian/control: Add VCS fields; bump Standards-Version to 3.9.3.
22
34
23
 -- Magnus Holmgren <holmgren@debian.org>  Sat, 23 Jun 2012 01:03:41 +0200
35
 -- Magnus Holmgren <holmgren@debian.org>  Sat, 23 Jun 2012 01:03:41 +0200
24
36
25
libtar (1.2.11-8) unstable; urgency=low
37
libtar (1.2.11-8) unstable; urgency=low
26
38
27
  * libtool.patch: Set SHELL to the configured shell in those Makefile.in
39
  * libtool.patch: Set SHELL to the configured shell in those Makefile.in
28
    where libtool is used; otherwise libtool fails when /bin/sh is dash
40
    where libtool is used; otherwise libtool fails when /bin/sh is dash
29
    but bash is expected (Closes: #621935).
41
    but bash is expected (Closes: #621935).
30
  * man_hyphen_minus.patch (new): Escape hyphens that should be minus
42
  * man_hyphen_minus.patch (new): Escape hyphens that should be minus
31
    signs in man pages.
43
    signs in man pages.
32
  * Rename libtar as libtar0 to follow policy.
44
  * Rename libtar as libtar0 to follow policy.
33
45
34
 -- Magnus Holmgren <holmgren@debian.org>  Sun, 24 Apr 2011 21:11:52 +0200
46
 -- Magnus Holmgren <holmgren@debian.org>  Sun, 24 Apr 2011 21:11:52 +0200
35
47
36
libtar (1.2.11-7) unstable; urgency=low
48
libtar (1.2.11-7) unstable; urgency=low
37
49
38
  * New maintainer (Closes: #526618).
50
  * New maintainer (Closes: #526618).
39
  * Change source format to 3.0 (quilt), clean up Debian diff and split
51
  * Change source format to 3.0 (quilt), clean up Debian diff and split
40
    into several patches:
52
    into several patches:
41
    * libtool.patch: Using libtool to build dynamic library;
53
    * libtool.patch: Using libtool to build dynamic library;
42
    * autoreconf.patch: Changes needed to call autoreconf (bug 511741);
54
    * autoreconf.patch: Changes needed to call autoreconf (bug 511741);
43
    * memleak.patch: Fix memory leaks;
55
    * memleak.patch: Fix memory leaks;
44
    * bad_ptrtoint.patch: Document stupidity of tartype_t in libtar.c 
56
    * bad_ptrtoint.patch: Document stupidity of tartype_t in libtar.c 
45
      (bug 309945).
57
      (bug 309945).
46
  * Increase Debhelper compat level to 7.
58
  * Increase Debhelper compat level to 7.
47
  * Use dh_autoreconf to avoid having to keep track of files to clean.
59
  * Use dh_autoreconf to avoid having to keep track of files to clean.
48
  * memleak2.patch (new): Applied instead of memleak.patch. Fix memory
60
  * memleak2.patch (new): Applied instead of memleak.patch. Fix memory
49
    leak by making th_get_pathname() return a pointer to a static buffer
61
    leak by making th_get_pathname() return a pointer to a static buffer
50
    instead of a pointer to a copy of a local buffer (LP: #41804).
62
    instead of a pointer to a copy of a local buffer (LP: #41804).
51
  * Add homepage field and watch file (in case there is ever a new
63
  * Add homepage field and watch file (in case there is ever a new
52
    upstream release).
64
    upstream release).
53
  * Upgrade to Standards-Version 3.9.1.
65
  * Upgrade to Standards-Version 3.9.1.
54
66
55
 -- Magnus Holmgren <holmgren@debian.org>  Sat, 26 Mar 2011 23:10:25 +0100
67
 -- Magnus Holmgren <holmgren@debian.org>  Sat, 26 Mar 2011 23:10:25 +0100
56
68
57
libtar (1.2.11-6) unstable; urgency=low
69
libtar (1.2.11-6) unstable; urgency=low
58
70
59
  * Fix autotools usage (Closes: #511741)
71
  * Fix autotools usage (Closes: #511741)
60
72
61
 -- Julien Danjou <acid@debian.org>  Sat, 02 May 2009 11:33:06 +0200
73
 -- Julien Danjou <acid@debian.org>  Sat, 02 May 2009 11:33:06 +0200
62
74
63
libtar (1.2.11-5) unstable; urgency=low
75
libtar (1.2.11-5) unstable; urgency=low
64
76
65
  * New maintainer (Closes: #465889)
77
  * New maintainer (Closes: #465889)
66
  * Add missing binary-indep target in debian/rules (Closes: #395714)
78
  * Add missing binary-indep target in debian/rules (Closes: #395714)
67
  * Use ${binary:Version} instead of Source-Version
79
  * Use ${binary:Version} instead of Source-Version
68
  * Bump standard version
80
  * Bump standard version
69
  * Switch to debhelper 5
81
  * Switch to debhelper 5
70
82
71
 -- Julien Danjou <acid@debian.org>  Wed, 02 Apr 2008 07:06:55 +0200
83
 -- Julien Danjou <acid@debian.org>  Wed, 02 Apr 2008 07:06:55 +0200
72
84
73
libtar (1.2.11-4) unstable; urgency=low
85
libtar (1.2.11-4) unstable; urgency=low
74
86
75
  * Always include the newest libtool.m4.  (Closes: #313612)
87
  * Always include the newest libtool.m4.  (Closes: #313612)
76
88
77
 -- James Morrison <phython@debian.org>  Sun, 28 Aug 2005 09:41:47 -0700
89
 -- James Morrison <phython@debian.org>  Sun, 28 Aug 2005 09:41:47 -0700
78
90
79
libtar (1.2.11-3) unstable; urgency=low
91
libtar (1.2.11-3) unstable; urgency=low
80
92
81
  * Document stupidity of tartype_t in libtar.c.  (Closes: #309945)
93
  * Document stupidity of tartype_t in libtar.c.  (Closes: #309945)
82
94
83
 -- James Morrison <phython@debian.org>  Sat, 11 Jun 2005 18:23:15 -0400
95
 -- James Morrison <phython@debian.org>  Sat, 11 Jun 2005 18:23:15 -0400
84
96
85
libtar (1.2.11-2) unstable; urgency=low
97
libtar (1.2.11-2) unstable; urgency=low
86
98
87
  * Move libtar-dev to libdevel. (Closes: #188207)
99
  * Move libtar-dev to libdevel. (Closes: #188207)
88
  * Fix potential memory leak.
100
  * Fix potential memory leak.
89
101
90
 -- James Morrison <phython@debian.org>  Sun, 25 Jul 2004 12:59:08 -0700
102
 -- James Morrison <phython@debian.org>  Sun, 25 Jul 2004 12:59:08 -0700
91
103
92
libtar (1.2.11-1) unstable; urgency=low
104
libtar (1.2.11-1) unstable; urgency=low
93
105
94
  * New Upstream release.
106
  * New Upstream release.
95
107
96
 -- James Morrison <phython@debian.org>  Sat,  5 Apr 2003 14:03:19 -0500
108
 -- James Morrison <phython@debian.org>  Sat,  5 Apr 2003 14:03:19 -0500
97
109
98
libtar (1.2.10-1) unstable; urgency=low
110
libtar (1.2.10-1) unstable; urgency=low
99
111
100
  * New Upstream release.
112
  * New Upstream release.
101
     (Closes: #166602) New upstream uses autoconf 2.5x
113
     (Closes: #166602) New upstream uses autoconf 2.5x
102
  * Remove dependency on automake.  Hopefully upstream will except this
114
  * Remove dependency on automake.  Hopefully upstream will except this
103
    use of libtool.
115
    use of libtool.
104
  * Remove all -static and -shared targets from debian/rules.
116
  * Remove all -static and -shared targets from debian/rules.
105
  * Use dh_install instead of dh_movefiles.
117
  * Use dh_install instead of dh_movefiles.
106
  * -
118
  * -
107
119
108
 -- James Morrison <phython@debian.org>  Sat,  5 Apr 2003 14:03:16 -0500
120
 -- James Morrison <phython@debian.org>  Sat,  5 Apr 2003 14:03:16 -0500
109
121
110
libtar (1.2.5-4) unstable; urgency=low
122
libtar (1.2.5-4) unstable; urgency=low
111
123
112
  * New maintainer. (Closes: #154597)
124
  * New maintainer. (Closes: #154597)
113
  * WSG_ENCAP is now defined.  (Closes: #147764)
125
  * WSG_ENCAP is now defined.  (Closes: #147764)
114
  * libtar-dev depends on libc-dev instead of libc6-dev. 
126
  * libtar-dev depends on libc-dev instead of libc6-dev. 
115
127
116
 -- James Morrison <phython@debian.org>  Wed, 14 Aug 2002 23:44:16 -0400
128
 -- James Morrison <phython@debian.org>  Wed, 14 Aug 2002 23:44:16 -0400
117
129
118
libtar (1.2.5-3) unstable; urgency=low
130
libtar (1.2.5-3) unstable; urgency=low
119
131
120
  * Modify build commands to acomadate change in autoconf (Closes #147764)
132
  * Modify build commands to acomadate change in autoconf (Closes #147764)
121
133
122
 -- Glenn McGrath <bug1@debian.org>  Thu, 23 May 2002 01:06:16 +1000
134
 -- Glenn McGrath <bug1@debian.org>  Thu, 23 May 2002 01:06:16 +1000
123
135
124
libtar (1.2.5-2) unstable; urgency=low
136
libtar (1.2.5-2) unstable; urgency=low
125
137
126
  * Fix build problem (Closes #135360)
138
  * Fix build problem (Closes #135360)
127
139
128
 -- Glenn McGrath <bug1@debian.org>  Sun, 24 Feb 2002 06:29:31 +1100
140
 -- Glenn McGrath <bug1@debian.org>  Sun, 24 Feb 2002 06:29:31 +1100
129
141
130
libtar (1.2.5-1) unstable; urgency=low
142
libtar (1.2.5-1) unstable; urgency=low
131
143
132
  * New upstream version
144
  * New upstream version
133
  * Change section of libtar-dev to devel and libtar to libs
145
  * Change section of libtar-dev to devel and libtar to libs
134
146
135
 -- Glenn McGrath <bug1@debian.org>  Fri, 22 Feb 2002 04:23:15 +1100
147
 -- Glenn McGrath <bug1@debian.org>  Fri, 22 Feb 2002 04:23:15 +1100
136
148
137
libtar (1.2.4-2) unstable; urgency=low
149
libtar (1.2.4-2) unstable; urgency=low
138
150
139
  * Change section from devel to libs 
151
  * Change section from devel to libs 
140
152
141
 -- Glenn McGrath <bug1@debian.org>  Sat,  2 Feb 2002 12:12:32 +1100
153
 -- Glenn McGrath <bug1@debian.org>  Sat,  2 Feb 2002 12:12:32 +1100
142
154
143
libtar (1.2.4-1) unstable; urgency=low
155
libtar (1.2.4-1) unstable; urgency=low
144
156
145
  * Initial Release. (closes #128042)
157
  * Initial Release. (closes #128042)
146
158
147
 -- Glenn McGrath <bug1@debian.org>  Sat,  5 Jan 2002 13:24:37 +1100
159
 -- Glenn McGrath <bug1@debian.org>  Sat,  5 Jan 2002 13:24:37 +1100
148
160