Subversion Repositories

?revision_form?Rev ?revision_input??revision_submit??revision_endform?

Rev 49 | Go to most recent revision | Details | Compare with Previous | Last modification | View Log | RSS feed

Rev Author Line No. Line
49 magnus 1
libtar (1.2.20-8) unstable; urgency=low
2
 
3
  * Convert debian/rules to modern dh style and upgrade to compat level
4
    11, enabling Multi-Arch.
50 magnus 5
  * testsuite.patch: Don't create testsuite/Makefile with autoconf; add
6
    empty clean and distclean targets to it so that cleaning and building
7
    twice works.
49 magnus 8
 
50 magnus 9
 -- Magnus Holmgren <holmgren@debian.org>  Sun, 25 Aug 2019 18:41:20 +0200
49 magnus 10
 
45 magnus 11
libtar (1.2.20-7) unstable; urgency=low
12
 
13
  * no_strip.patch: make install must not strip binaries; it breaks cross
14
    compilation and is against policy with regard to build options.
47 magnus 15
  * Pass --build and --host to configure as appropriate to enable cross
16
    compilation (Closes: #839883).
48 magnus 17
  * Change Homepage to http://repo.or.cz/w/libtar.git since www.feep.net
18
    is gone.
45 magnus 19
 
48 magnus 20
 -- Magnus Holmgren <holmgren@debian.org>  Tue, 11 Oct 2016 23:12:49 +0200
45 magnus 21
 
43 magnus 22
libtar (1.2.20-6) unstable; urgency=low
23
 
24
  * Drop libtar/Makefile from examples, since it makes the build
25
    unreproducible (saves $SHELL) and isn't enough to compile libtar.c
26
    anyway.
44 magnus 27
  * Bump Standards-Version to 3.9.8.
43 magnus 28
 
44 magnus 29
 -- Magnus Holmgren <holmgren@debian.org>  Mon, 01 Aug 2016 22:52:44 +0200
43 magnus 30
 
38 magnus 31
libtar (1.2.20-5) unstable; urgency=low
32
 
33
  * oldgnu_prefix.patch: Detect old-style GNU headers correctly (Closes:
34
    #763119). Those appear in incremental archives and use the bytes that
35
    the new-style headers use for the prefix field for other fields.
36
    Thanks to Steinar H. Gunderson.
39 magnus 37
  * testsuite.patch: Add a simple test (Closes: #737258).
41 magnus 38
  * Bump Standards-Version to 3.9.7.
38 magnus 39
 
41 magnus 40
 -- Magnus Holmgren <holmgren@debian.org>  Fri, 25 Mar 2016 19:12:23 +0100
38 magnus 41
 
36 magnus 42
libtar (1.2.20-4) unstable; urgency=high
43
 
44
  * no_maxpathlen.patch: Half of the part of the patch modifying
45
    compat/dirname.c was missing, causing libtar's dirname to always
46
    return NULL (except in special circumstances). Actually make it work
47
    (Closes: #745352). (The reason that libtar doesn't use libc's
48
    dirname() and basename() on some or most platforms is that the code
49
    doesn't work with destructive versions of these functions).
50
 
51
 -- Magnus Holmgren <holmgren@debian.org>  Sat, 03 May 2014 20:39:02 +0200
52
 
30 magnus 53
libtar (1.2.20-3) unstable; urgency=low
54
 
55
  * no_maxpathlen.patch: Fix two grave bugs in the patch. First,
56
    th_get_pathname would only allocate as much memory as was needed for
57
    the first filename encountered, causing heap corruption when/if
58
    encountering longer filenames later. Second, two variables were mixed
59
    up in tar_append_tree(). Also, fix a potential memory leak and trim
60
    the patch a bit.
31 magnus 61
  * [SECURITY] CVE-2013-4420.patch: When the prefix field is in use, the
62
    safer_name_suffix() function should certainly be applied to the
63
    combination of it and the name field, not just on the name field.
33 magnus 64
  * th_get_size-unsigned-int.patch: Make the th_get_size() macro cast the
65
    result from oct_to_int() to unsigned int. This is the right fix for
66
    bug #725938 on 64-bit systems, where a specially crafted tar file
67
    would not cause an integer overflow, but a memory allocation of almost
68
    16 exbibytes, which would certainly fail outright without harm.
30 magnus 69
 
33 magnus 70
 -- Magnus Holmgren <holmgren@debian.org>  Sat, 15 Feb 2014 23:51:51 +0100
30 magnus 71
 
23 magnus 72
libtar (1.2.20-2) unstable; urgency=low
73
 
74
  * no_static_buffers.patch: avoid using a static buffer in
75
    th_get_pathname(). Taken from upstream. Needed for no_maxpathlen.patch.
29 magnus 76
  * no_maxpathlen.patch: Fix FTBFS on Hurd by dynamically allocating path
23 magnus 77
    names (Closes: #657116). Thanks to Svante Signell and Petter
78
    Reinholdtsen.
24 magnus 79
  * [SECURITY] CVE-2013-4420.patch: Strip out leading slashes and any
80
    pathname prefix containing ".." components (Closes: #731860). This is
81
    done in th_get_pathname() (as well as to symlink targets when
82
    extracting symlinks), not merely when extracting files, which means
83
    applications calling that function will not see the stored
84
    filename. There is no way to disable this behaviour, but it can be
85
    expected that one will be provided when the issue is solved upstream.
25 magnus 86
  * Bump Standards-Version to 3.9.5.
23 magnus 87
 
25 magnus 88
 -- Magnus Holmgren <holmgren@debian.org>  Sat, 15 Feb 2014 21:49:37 +0100
23 magnus 89
 
18 magnus 90
libtar (1.2.20-1) unstable; urgency=high
91
 
92
  * [SECURITY] New upstream release. Fixes CVE-2013-4397: Integer
93
    overflow (Closes: #725938).
19 magnus 94
  * Bump Standards-Version to 3.9.4.
18 magnus 95
 
96
 -- Magnus Holmgren <holmgren@debian.org>  Thu, 10 Oct 2013 19:20:49 +0200
97
 
15 magnus 98
libtar (1.2.19-1) unstable; urgency=low
99
 
100
  * New upstream release.
101
 
102
 -- Magnus Holmgren <holmgren@debian.org>  Sun, 05 May 2013 17:59:29 +0200
103
 
10 magnus 104
libtar (1.2.16-1) unstable; urgency=low
8 magnus 105
 
106
  * New upstream: Chris Frey has stepped up with the consent of the
107
    original author, Mark Roth, and published an "official unofficial" git
108
    repo at http://repo.or.cz/w/libtar.git, which I will use for the time
109
    being.
10 magnus 110
  * Updated debian/watch to look for tags and corresponding snapshot
111
    tarballs at above URL.
8 magnus 112
  * All patches have been incorporated or (in the case of
113
    autoreconf.patch) made obsolete upstream.
9 magnus 114
  * debian/rules: Add build-indep and build-arch targets.
11 magnus 115
  * Updated debian/copyright.
12 magnus 116
  * Use dpkg-buildflags to set CFLAGS et al.
13 magnus 117
  * debian/control: Add VCS fields; bump Standards-Version to 3.9.3.
8 magnus 118
 
13 magnus 119
 -- Magnus Holmgren <holmgren@debian.org>  Sat, 23 Jun 2012 01:03:41 +0200
8 magnus 120
 
6 magnus 121
libtar (1.2.11-8) unstable; urgency=low
122
 
123
  * libtool.patch: Set SHELL to the configured shell in those Makefile.in
124
    where libtool is used; otherwise libtool fails when /bin/sh is dash
125
    but bash is expected (Closes: #621935).
126
  * man_hyphen_minus.patch (new): Escape hyphens that should be minus
127
    signs in man pages.
128
  * Rename libtar as libtar0 to follow policy.
129
 
130
 -- Magnus Holmgren <holmgren@debian.org>  Sun, 24 Apr 2011 21:11:52 +0200
131
 
5 magnus 132
libtar (1.2.11-7) unstable; urgency=low
133
 
134
  * New maintainer (Closes: #526618).
135
  * Change source format to 3.0 (quilt), clean up Debian diff and split
136
    into several patches:
137
    * libtool.patch: Using libtool to build dynamic library;
138
    * autoreconf.patch: Changes needed to call autoreconf (bug 511741);
139
    * memleak.patch: Fix memory leaks;
140
    * bad_ptrtoint.patch: Document stupidity of tartype_t in libtar.c
141
      (bug 309945).
142
  * Increase Debhelper compat level to 7.
143
  * Use dh_autoreconf to avoid having to keep track of files to clean.
144
  * memleak2.patch (new): Applied instead of memleak.patch. Fix memory
145
    leak by making th_get_pathname() return a pointer to a static buffer
146
    instead of a pointer to a copy of a local buffer (LP: #41804).
147
  * Add homepage field and watch file (in case there is ever a new
148
    upstream release).
149
  * Upgrade to Standards-Version 3.9.1.
150
 
151
 -- Magnus Holmgren <holmgren@debian.org>  Sat, 26 Mar 2011 23:10:25 +0100
152
 
3 magnus 153
libtar (1.2.11-6) unstable; urgency=low
154
 
155
  * Fix autotools usage (Closes: #511741)
156
 
157
 -- Julien Danjou <acid@debian.org>  Sat, 02 May 2009 11:33:06 +0200
158
 
159
libtar (1.2.11-5) unstable; urgency=low
160
 
161
  * New maintainer (Closes: #465889)
162
  * Add missing binary-indep target in debian/rules (Closes: #395714)
163
  * Use ${binary:Version} instead of Source-Version
164
  * Bump standard version
165
  * Switch to debhelper 5
166
 
167
 -- Julien Danjou <acid@debian.org>  Wed, 02 Apr 2008 07:06:55 +0200
168
 
169
libtar (1.2.11-4) unstable; urgency=low
170
 
171
  * Always include the newest libtool.m4.  (Closes: #313612)
172
 
173
 -- James Morrison <phython@debian.org>  Sun, 28 Aug 2005 09:41:47 -0700
174
 
175
libtar (1.2.11-3) unstable; urgency=low
176
 
177
  * Document stupidity of tartype_t in libtar.c.  (Closes: #309945)
178
 
179
 -- James Morrison <phython@debian.org>  Sat, 11 Jun 2005 18:23:15 -0400
180
 
181
libtar (1.2.11-2) unstable; urgency=low
182
 
183
  * Move libtar-dev to libdevel. (Closes: #188207)
184
  * Fix potential memory leak.
185
 
186
 -- James Morrison <phython@debian.org>  Sun, 25 Jul 2004 12:59:08 -0700
187
 
188
libtar (1.2.11-1) unstable; urgency=low
189
 
190
  * New Upstream release.
191
 
192
 -- James Morrison <phython@debian.org>  Sat,  5 Apr 2003 14:03:19 -0500
193
 
194
libtar (1.2.10-1) unstable; urgency=low
195
 
196
  * New Upstream release.
197
     (Closes: #166602) New upstream uses autoconf 2.5x
198
  * Remove dependency on automake.  Hopefully upstream will except this
199
    use of libtool.
200
  * Remove all -static and -shared targets from debian/rules.
201
  * Use dh_install instead of dh_movefiles.
202
  * -
203
 
204
 -- James Morrison <phython@debian.org>  Sat,  5 Apr 2003 14:03:16 -0500
205
 
206
libtar (1.2.5-4) unstable; urgency=low
207
 
208
  * New maintainer. (Closes: #154597)
209
  * WSG_ENCAP is now defined.  (Closes: #147764)
210
  * libtar-dev depends on libc-dev instead of libc6-dev.
211
 
212
 -- James Morrison <phython@debian.org>  Wed, 14 Aug 2002 23:44:16 -0400
213
 
214
libtar (1.2.5-3) unstable; urgency=low
215
 
216
  * Modify build commands to acomadate change in autoconf (Closes #147764)
217
 
218
 -- Glenn McGrath <bug1@debian.org>  Thu, 23 May 2002 01:06:16 +1000
219
 
220
libtar (1.2.5-2) unstable; urgency=low
221
 
222
  * Fix build problem (Closes #135360)
223
 
224
 -- Glenn McGrath <bug1@debian.org>  Sun, 24 Feb 2002 06:29:31 +1100
225
 
226
libtar (1.2.5-1) unstable; urgency=low
227
 
228
  * New upstream version
229
  * Change section of libtar-dev to devel and libtar to libs
230
 
231
 -- Glenn McGrath <bug1@debian.org>  Fri, 22 Feb 2002 04:23:15 +1100
232
 
233
libtar (1.2.4-2) unstable; urgency=low
234
 
235
  * Change section from devel to libs
236
 
237
 -- Glenn McGrath <bug1@debian.org>  Sat,  2 Feb 2002 12:12:32 +1100
238
 
239
libtar (1.2.4-1) unstable; urgency=low
240
 
241
  * Initial Release. (closes #128042)
242
 
243
 -- Glenn McGrath <bug1@debian.org>  Sat,  5 Jan 2002 13:24:37 +1100
244