Subversion Repositories

?revision_form?Rev ?revision_input??revision_submit??revision_endform?

Rev 48 | Rev 50 | Go to most recent revision | Details | Compare with Previous | Last modification | View Log | RSS feed

Rev Author Line No. Line
49 magnus 1
libtar (1.2.20-8) unstable; urgency=low
2
 
3
  * Convert debian/rules to modern dh style and upgrade to compat level
4
    11, enabling Multi-Arch.
5
 
6
 -- Magnus Holmgren <holmgren@debian.org>  Sun, 25 Aug 2019 17:57:21 +0200
7
 
45 magnus 8
libtar (1.2.20-7) unstable; urgency=low
9
 
10
  * no_strip.patch: make install must not strip binaries; it breaks cross
11
    compilation and is against policy with regard to build options.
47 magnus 12
  * Pass --build and --host to configure as appropriate to enable cross
13
    compilation (Closes: #839883).
48 magnus 14
  * Change Homepage to http://repo.or.cz/w/libtar.git since www.feep.net
15
    is gone.
45 magnus 16
 
48 magnus 17
 -- Magnus Holmgren <holmgren@debian.org>  Tue, 11 Oct 2016 23:12:49 +0200
45 magnus 18
 
43 magnus 19
libtar (1.2.20-6) unstable; urgency=low
20
 
21
  * Drop libtar/Makefile from examples, since it makes the build
22
    unreproducible (saves $SHELL) and isn't enough to compile libtar.c
23
    anyway.
44 magnus 24
  * Bump Standards-Version to 3.9.8.
43 magnus 25
 
44 magnus 26
 -- Magnus Holmgren <holmgren@debian.org>  Mon, 01 Aug 2016 22:52:44 +0200
43 magnus 27
 
38 magnus 28
libtar (1.2.20-5) unstable; urgency=low
29
 
30
  * oldgnu_prefix.patch: Detect old-style GNU headers correctly (Closes:
31
    #763119). Those appear in incremental archives and use the bytes that
32
    the new-style headers use for the prefix field for other fields.
33
    Thanks to Steinar H. Gunderson.
39 magnus 34
  * testsuite.patch: Add a simple test (Closes: #737258).
41 magnus 35
  * Bump Standards-Version to 3.9.7.
38 magnus 36
 
41 magnus 37
 -- Magnus Holmgren <holmgren@debian.org>  Fri, 25 Mar 2016 19:12:23 +0100
38 magnus 38
 
36 magnus 39
libtar (1.2.20-4) unstable; urgency=high
40
 
41
  * no_maxpathlen.patch: Half of the part of the patch modifying
42
    compat/dirname.c was missing, causing libtar's dirname to always
43
    return NULL (except in special circumstances). Actually make it work
44
    (Closes: #745352). (The reason that libtar doesn't use libc's
45
    dirname() and basename() on some or most platforms is that the code
46
    doesn't work with destructive versions of these functions).
47
 
48
 -- Magnus Holmgren <holmgren@debian.org>  Sat, 03 May 2014 20:39:02 +0200
49
 
30 magnus 50
libtar (1.2.20-3) unstable; urgency=low
51
 
52
  * no_maxpathlen.patch: Fix two grave bugs in the patch. First,
53
    th_get_pathname would only allocate as much memory as was needed for
54
    the first filename encountered, causing heap corruption when/if
55
    encountering longer filenames later. Second, two variables were mixed
56
    up in tar_append_tree(). Also, fix a potential memory leak and trim
57
    the patch a bit.
31 magnus 58
  * [SECURITY] CVE-2013-4420.patch: When the prefix field is in use, the
59
    safer_name_suffix() function should certainly be applied to the
60
    combination of it and the name field, not just on the name field.
33 magnus 61
  * th_get_size-unsigned-int.patch: Make the th_get_size() macro cast the
62
    result from oct_to_int() to unsigned int. This is the right fix for
63
    bug #725938 on 64-bit systems, where a specially crafted tar file
64
    would not cause an integer overflow, but a memory allocation of almost
65
    16 exbibytes, which would certainly fail outright without harm.
30 magnus 66
 
33 magnus 67
 -- Magnus Holmgren <holmgren@debian.org>  Sat, 15 Feb 2014 23:51:51 +0100
30 magnus 68
 
23 magnus 69
libtar (1.2.20-2) unstable; urgency=low
70
 
71
  * no_static_buffers.patch: avoid using a static buffer in
72
    th_get_pathname(). Taken from upstream. Needed for no_maxpathlen.patch.
29 magnus 73
  * no_maxpathlen.patch: Fix FTBFS on Hurd by dynamically allocating path
23 magnus 74
    names (Closes: #657116). Thanks to Svante Signell and Petter
75
    Reinholdtsen.
24 magnus 76
  * [SECURITY] CVE-2013-4420.patch: Strip out leading slashes and any
77
    pathname prefix containing ".." components (Closes: #731860). This is
78
    done in th_get_pathname() (as well as to symlink targets when
79
    extracting symlinks), not merely when extracting files, which means
80
    applications calling that function will not see the stored
81
    filename. There is no way to disable this behaviour, but it can be
82
    expected that one will be provided when the issue is solved upstream.
25 magnus 83
  * Bump Standards-Version to 3.9.5.
23 magnus 84
 
25 magnus 85
 -- Magnus Holmgren <holmgren@debian.org>  Sat, 15 Feb 2014 21:49:37 +0100
23 magnus 86
 
18 magnus 87
libtar (1.2.20-1) unstable; urgency=high
88
 
89
  * [SECURITY] New upstream release. Fixes CVE-2013-4397: Integer
90
    overflow (Closes: #725938).
19 magnus 91
  * Bump Standards-Version to 3.9.4.
18 magnus 92
 
93
 -- Magnus Holmgren <holmgren@debian.org>  Thu, 10 Oct 2013 19:20:49 +0200
94
 
15 magnus 95
libtar (1.2.19-1) unstable; urgency=low
96
 
97
  * New upstream release.
98
 
99
 -- Magnus Holmgren <holmgren@debian.org>  Sun, 05 May 2013 17:59:29 +0200
100
 
10 magnus 101
libtar (1.2.16-1) unstable; urgency=low
8 magnus 102
 
103
  * New upstream: Chris Frey has stepped up with the consent of the
104
    original author, Mark Roth, and published an "official unofficial" git
105
    repo at http://repo.or.cz/w/libtar.git, which I will use for the time
106
    being.
10 magnus 107
  * Updated debian/watch to look for tags and corresponding snapshot
108
    tarballs at above URL.
8 magnus 109
  * All patches have been incorporated or (in the case of
110
    autoreconf.patch) made obsolete upstream.
9 magnus 111
  * debian/rules: Add build-indep and build-arch targets.
11 magnus 112
  * Updated debian/copyright.
12 magnus 113
  * Use dpkg-buildflags to set CFLAGS et al.
13 magnus 114
  * debian/control: Add VCS fields; bump Standards-Version to 3.9.3.
8 magnus 115
 
13 magnus 116
 -- Magnus Holmgren <holmgren@debian.org>  Sat, 23 Jun 2012 01:03:41 +0200
8 magnus 117
 
6 magnus 118
libtar (1.2.11-8) unstable; urgency=low
119
 
120
  * libtool.patch: Set SHELL to the configured shell in those Makefile.in
121
    where libtool is used; otherwise libtool fails when /bin/sh is dash
122
    but bash is expected (Closes: #621935).
123
  * man_hyphen_minus.patch (new): Escape hyphens that should be minus
124
    signs in man pages.
125
  * Rename libtar as libtar0 to follow policy.
126
 
127
 -- Magnus Holmgren <holmgren@debian.org>  Sun, 24 Apr 2011 21:11:52 +0200
128
 
5 magnus 129
libtar (1.2.11-7) unstable; urgency=low
130
 
131
  * New maintainer (Closes: #526618).
132
  * Change source format to 3.0 (quilt), clean up Debian diff and split
133
    into several patches:
134
    * libtool.patch: Using libtool to build dynamic library;
135
    * autoreconf.patch: Changes needed to call autoreconf (bug 511741);
136
    * memleak.patch: Fix memory leaks;
137
    * bad_ptrtoint.patch: Document stupidity of tartype_t in libtar.c
138
      (bug 309945).
139
  * Increase Debhelper compat level to 7.
140
  * Use dh_autoreconf to avoid having to keep track of files to clean.
141
  * memleak2.patch (new): Applied instead of memleak.patch. Fix memory
142
    leak by making th_get_pathname() return a pointer to a static buffer
143
    instead of a pointer to a copy of a local buffer (LP: #41804).
144
  * Add homepage field and watch file (in case there is ever a new
145
    upstream release).
146
  * Upgrade to Standards-Version 3.9.1.
147
 
148
 -- Magnus Holmgren <holmgren@debian.org>  Sat, 26 Mar 2011 23:10:25 +0100
149
 
3 magnus 150
libtar (1.2.11-6) unstable; urgency=low
151
 
152
  * Fix autotools usage (Closes: #511741)
153
 
154
 -- Julien Danjou <acid@debian.org>  Sat, 02 May 2009 11:33:06 +0200
155
 
156
libtar (1.2.11-5) unstable; urgency=low
157
 
158
  * New maintainer (Closes: #465889)
159
  * Add missing binary-indep target in debian/rules (Closes: #395714)
160
  * Use ${binary:Version} instead of Source-Version
161
  * Bump standard version
162
  * Switch to debhelper 5
163
 
164
 -- Julien Danjou <acid@debian.org>  Wed, 02 Apr 2008 07:06:55 +0200
165
 
166
libtar (1.2.11-4) unstable; urgency=low
167
 
168
  * Always include the newest libtool.m4.  (Closes: #313612)
169
 
170
 -- James Morrison <phython@debian.org>  Sun, 28 Aug 2005 09:41:47 -0700
171
 
172
libtar (1.2.11-3) unstable; urgency=low
173
 
174
  * Document stupidity of tartype_t in libtar.c.  (Closes: #309945)
175
 
176
 -- James Morrison <phython@debian.org>  Sat, 11 Jun 2005 18:23:15 -0400
177
 
178
libtar (1.2.11-2) unstable; urgency=low
179
 
180
  * Move libtar-dev to libdevel. (Closes: #188207)
181
  * Fix potential memory leak.
182
 
183
 -- James Morrison <phython@debian.org>  Sun, 25 Jul 2004 12:59:08 -0700
184
 
185
libtar (1.2.11-1) unstable; urgency=low
186
 
187
  * New Upstream release.
188
 
189
 -- James Morrison <phython@debian.org>  Sat,  5 Apr 2003 14:03:19 -0500
190
 
191
libtar (1.2.10-1) unstable; urgency=low
192
 
193
  * New Upstream release.
194
     (Closes: #166602) New upstream uses autoconf 2.5x
195
  * Remove dependency on automake.  Hopefully upstream will except this
196
    use of libtool.
197
  * Remove all -static and -shared targets from debian/rules.
198
  * Use dh_install instead of dh_movefiles.
199
  * -
200
 
201
 -- James Morrison <phython@debian.org>  Sat,  5 Apr 2003 14:03:16 -0500
202
 
203
libtar (1.2.5-4) unstable; urgency=low
204
 
205
  * New maintainer. (Closes: #154597)
206
  * WSG_ENCAP is now defined.  (Closes: #147764)
207
  * libtar-dev depends on libc-dev instead of libc6-dev.
208
 
209
 -- James Morrison <phython@debian.org>  Wed, 14 Aug 2002 23:44:16 -0400
210
 
211
libtar (1.2.5-3) unstable; urgency=low
212
 
213
  * Modify build commands to acomadate change in autoconf (Closes #147764)
214
 
215
 -- Glenn McGrath <bug1@debian.org>  Thu, 23 May 2002 01:06:16 +1000
216
 
217
libtar (1.2.5-2) unstable; urgency=low
218
 
219
  * Fix build problem (Closes #135360)
220
 
221
 -- Glenn McGrath <bug1@debian.org>  Sun, 24 Feb 2002 06:29:31 +1100
222
 
223
libtar (1.2.5-1) unstable; urgency=low
224
 
225
  * New upstream version
226
  * Change section of libtar-dev to devel and libtar to libs
227
 
228
 -- Glenn McGrath <bug1@debian.org>  Fri, 22 Feb 2002 04:23:15 +1100
229
 
230
libtar (1.2.4-2) unstable; urgency=low
231
 
232
  * Change section from devel to libs
233
 
234
 -- Glenn McGrath <bug1@debian.org>  Sat,  2 Feb 2002 12:12:32 +1100
235
 
236
libtar (1.2.4-1) unstable; urgency=low
237
 
238
  * Initial Release. (closes #128042)
239
 
240
 -- Glenn McGrath <bug1@debian.org>  Sat,  5 Jan 2002 13:24:37 +1100
241