Subversion Repositories

?revision_form?Rev ?revision_input??revision_submit??revision_endform?

Rev 50 | Details | Compare with Previous | Last modification | View Log | RSS feed

Rev Author Line No. Line
49 magnus 1
libtar (1.2.20-8) unstable; urgency=low
2
 
3
  * Convert debian/rules to modern dh style and upgrade to compat level
4
    11, enabling Multi-Arch.
50 magnus 5
  * testsuite.patch: Don't create testsuite/Makefile with autoconf; add
6
    empty clean and distclean targets to it so that cleaning and building
7
    twice works.
51 magnus 8
  * Bump Standards-Version to 4.4.0.
49 magnus 9
 
51 magnus 10
 -- Magnus Holmgren <holmgren@debian.org>  Sun, 25 Aug 2019 18:49:41 +0200
49 magnus 11
 
45 magnus 12
libtar (1.2.20-7) unstable; urgency=low
13
 
14
  * no_strip.patch: make install must not strip binaries; it breaks cross
15
    compilation and is against policy with regard to build options.
47 magnus 16
  * Pass --build and --host to configure as appropriate to enable cross
17
    compilation (Closes: #839883).
48 magnus 18
  * Change Homepage to http://repo.or.cz/w/libtar.git since www.feep.net
19
    is gone.
45 magnus 20
 
48 magnus 21
 -- Magnus Holmgren <holmgren@debian.org>  Tue, 11 Oct 2016 23:12:49 +0200
45 magnus 22
 
43 magnus 23
libtar (1.2.20-6) unstable; urgency=low
24
 
25
  * Drop libtar/Makefile from examples, since it makes the build
26
    unreproducible (saves $SHELL) and isn't enough to compile libtar.c
27
    anyway.
44 magnus 28
  * Bump Standards-Version to 3.9.8.
43 magnus 29
 
44 magnus 30
 -- Magnus Holmgren <holmgren@debian.org>  Mon, 01 Aug 2016 22:52:44 +0200
43 magnus 31
 
38 magnus 32
libtar (1.2.20-5) unstable; urgency=low
33
 
34
  * oldgnu_prefix.patch: Detect old-style GNU headers correctly (Closes:
35
    #763119). Those appear in incremental archives and use the bytes that
36
    the new-style headers use for the prefix field for other fields.
37
    Thanks to Steinar H. Gunderson.
39 magnus 38
  * testsuite.patch: Add a simple test (Closes: #737258).
41 magnus 39
  * Bump Standards-Version to 3.9.7.
38 magnus 40
 
41 magnus 41
 -- Magnus Holmgren <holmgren@debian.org>  Fri, 25 Mar 2016 19:12:23 +0100
38 magnus 42
 
36 magnus 43
libtar (1.2.20-4) unstable; urgency=high
44
 
45
  * no_maxpathlen.patch: Half of the part of the patch modifying
46
    compat/dirname.c was missing, causing libtar's dirname to always
47
    return NULL (except in special circumstances). Actually make it work
48
    (Closes: #745352). (The reason that libtar doesn't use libc's
49
    dirname() and basename() on some or most platforms is that the code
50
    doesn't work with destructive versions of these functions).
51
 
52
 -- Magnus Holmgren <holmgren@debian.org>  Sat, 03 May 2014 20:39:02 +0200
53
 
30 magnus 54
libtar (1.2.20-3) unstable; urgency=low
55
 
56
  * no_maxpathlen.patch: Fix two grave bugs in the patch. First,
57
    th_get_pathname would only allocate as much memory as was needed for
58
    the first filename encountered, causing heap corruption when/if
59
    encountering longer filenames later. Second, two variables were mixed
60
    up in tar_append_tree(). Also, fix a potential memory leak and trim
61
    the patch a bit.
31 magnus 62
  * [SECURITY] CVE-2013-4420.patch: When the prefix field is in use, the
63
    safer_name_suffix() function should certainly be applied to the
64
    combination of it and the name field, not just on the name field.
33 magnus 65
  * th_get_size-unsigned-int.patch: Make the th_get_size() macro cast the
66
    result from oct_to_int() to unsigned int. This is the right fix for
67
    bug #725938 on 64-bit systems, where a specially crafted tar file
68
    would not cause an integer overflow, but a memory allocation of almost
69
    16 exbibytes, which would certainly fail outright without harm.
30 magnus 70
 
33 magnus 71
 -- Magnus Holmgren <holmgren@debian.org>  Sat, 15 Feb 2014 23:51:51 +0100
30 magnus 72
 
23 magnus 73
libtar (1.2.20-2) unstable; urgency=low
74
 
75
  * no_static_buffers.patch: avoid using a static buffer in
76
    th_get_pathname(). Taken from upstream. Needed for no_maxpathlen.patch.
29 magnus 77
  * no_maxpathlen.patch: Fix FTBFS on Hurd by dynamically allocating path
23 magnus 78
    names (Closes: #657116). Thanks to Svante Signell and Petter
79
    Reinholdtsen.
24 magnus 80
  * [SECURITY] CVE-2013-4420.patch: Strip out leading slashes and any
81
    pathname prefix containing ".." components (Closes: #731860). This is
82
    done in th_get_pathname() (as well as to symlink targets when
83
    extracting symlinks), not merely when extracting files, which means
84
    applications calling that function will not see the stored
85
    filename. There is no way to disable this behaviour, but it can be
86
    expected that one will be provided when the issue is solved upstream.
25 magnus 87
  * Bump Standards-Version to 3.9.5.
23 magnus 88
 
25 magnus 89
 -- Magnus Holmgren <holmgren@debian.org>  Sat, 15 Feb 2014 21:49:37 +0100
23 magnus 90
 
18 magnus 91
libtar (1.2.20-1) unstable; urgency=high
92
 
93
  * [SECURITY] New upstream release. Fixes CVE-2013-4397: Integer
94
    overflow (Closes: #725938).
19 magnus 95
  * Bump Standards-Version to 3.9.4.
18 magnus 96
 
97
 -- Magnus Holmgren <holmgren@debian.org>  Thu, 10 Oct 2013 19:20:49 +0200
98
 
15 magnus 99
libtar (1.2.19-1) unstable; urgency=low
100
 
101
  * New upstream release.
102
 
103
 -- Magnus Holmgren <holmgren@debian.org>  Sun, 05 May 2013 17:59:29 +0200
104
 
10 magnus 105
libtar (1.2.16-1) unstable; urgency=low
8 magnus 106
 
107
  * New upstream: Chris Frey has stepped up with the consent of the
108
    original author, Mark Roth, and published an "official unofficial" git
109
    repo at http://repo.or.cz/w/libtar.git, which I will use for the time
110
    being.
10 magnus 111
  * Updated debian/watch to look for tags and corresponding snapshot
112
    tarballs at above URL.
8 magnus 113
  * All patches have been incorporated or (in the case of
114
    autoreconf.patch) made obsolete upstream.
9 magnus 115
  * debian/rules: Add build-indep and build-arch targets.
11 magnus 116
  * Updated debian/copyright.
12 magnus 117
  * Use dpkg-buildflags to set CFLAGS et al.
13 magnus 118
  * debian/control: Add VCS fields; bump Standards-Version to 3.9.3.
8 magnus 119
 
13 magnus 120
 -- Magnus Holmgren <holmgren@debian.org>  Sat, 23 Jun 2012 01:03:41 +0200
8 magnus 121
 
6 magnus 122
libtar (1.2.11-8) unstable; urgency=low
123
 
124
  * libtool.patch: Set SHELL to the configured shell in those Makefile.in
125
    where libtool is used; otherwise libtool fails when /bin/sh is dash
126
    but bash is expected (Closes: #621935).
127
  * man_hyphen_minus.patch (new): Escape hyphens that should be minus
128
    signs in man pages.
129
  * Rename libtar as libtar0 to follow policy.
130
 
131
 -- Magnus Holmgren <holmgren@debian.org>  Sun, 24 Apr 2011 21:11:52 +0200
132
 
5 magnus 133
libtar (1.2.11-7) unstable; urgency=low
134
 
135
  * New maintainer (Closes: #526618).
136
  * Change source format to 3.0 (quilt), clean up Debian diff and split
137
    into several patches:
138
    * libtool.patch: Using libtool to build dynamic library;
139
    * autoreconf.patch: Changes needed to call autoreconf (bug 511741);
140
    * memleak.patch: Fix memory leaks;
141
    * bad_ptrtoint.patch: Document stupidity of tartype_t in libtar.c
142
      (bug 309945).
143
  * Increase Debhelper compat level to 7.
144
  * Use dh_autoreconf to avoid having to keep track of files to clean.
145
  * memleak2.patch (new): Applied instead of memleak.patch. Fix memory
146
    leak by making th_get_pathname() return a pointer to a static buffer
147
    instead of a pointer to a copy of a local buffer (LP: #41804).
148
  * Add homepage field and watch file (in case there is ever a new
149
    upstream release).
150
  * Upgrade to Standards-Version 3.9.1.
151
 
152
 -- Magnus Holmgren <holmgren@debian.org>  Sat, 26 Mar 2011 23:10:25 +0100
153
 
3 magnus 154
libtar (1.2.11-6) unstable; urgency=low
155
 
156
  * Fix autotools usage (Closes: #511741)
157
 
158
 -- Julien Danjou <acid@debian.org>  Sat, 02 May 2009 11:33:06 +0200
159
 
160
libtar (1.2.11-5) unstable; urgency=low
161
 
162
  * New maintainer (Closes: #465889)
163
  * Add missing binary-indep target in debian/rules (Closes: #395714)
164
  * Use ${binary:Version} instead of Source-Version
165
  * Bump standard version
166
  * Switch to debhelper 5
167
 
168
 -- Julien Danjou <acid@debian.org>  Wed, 02 Apr 2008 07:06:55 +0200
169
 
170
libtar (1.2.11-4) unstable; urgency=low
171
 
172
  * Always include the newest libtool.m4.  (Closes: #313612)
173
 
174
 -- James Morrison <phython@debian.org>  Sun, 28 Aug 2005 09:41:47 -0700
175
 
176
libtar (1.2.11-3) unstable; urgency=low
177
 
178
  * Document stupidity of tartype_t in libtar.c.  (Closes: #309945)
179
 
180
 -- James Morrison <phython@debian.org>  Sat, 11 Jun 2005 18:23:15 -0400
181
 
182
libtar (1.2.11-2) unstable; urgency=low
183
 
184
  * Move libtar-dev to libdevel. (Closes: #188207)
185
  * Fix potential memory leak.
186
 
187
 -- James Morrison <phython@debian.org>  Sun, 25 Jul 2004 12:59:08 -0700
188
 
189
libtar (1.2.11-1) unstable; urgency=low
190
 
191
  * New Upstream release.
192
 
193
 -- James Morrison <phython@debian.org>  Sat,  5 Apr 2003 14:03:19 -0500
194
 
195
libtar (1.2.10-1) unstable; urgency=low
196
 
197
  * New Upstream release.
198
     (Closes: #166602) New upstream uses autoconf 2.5x
199
  * Remove dependency on automake.  Hopefully upstream will except this
200
    use of libtool.
201
  * Remove all -static and -shared targets from debian/rules.
202
  * Use dh_install instead of dh_movefiles.
203
  * -
204
 
205
 -- James Morrison <phython@debian.org>  Sat,  5 Apr 2003 14:03:16 -0500
206
 
207
libtar (1.2.5-4) unstable; urgency=low
208
 
209
  * New maintainer. (Closes: #154597)
210
  * WSG_ENCAP is now defined.  (Closes: #147764)
211
  * libtar-dev depends on libc-dev instead of libc6-dev.
212
 
213
 -- James Morrison <phython@debian.org>  Wed, 14 Aug 2002 23:44:16 -0400
214
 
215
libtar (1.2.5-3) unstable; urgency=low
216
 
217
  * Modify build commands to acomadate change in autoconf (Closes #147764)
218
 
219
 -- Glenn McGrath <bug1@debian.org>  Thu, 23 May 2002 01:06:16 +1000
220
 
221
libtar (1.2.5-2) unstable; urgency=low
222
 
223
  * Fix build problem (Closes #135360)
224
 
225
 -- Glenn McGrath <bug1@debian.org>  Sun, 24 Feb 2002 06:29:31 +1100
226
 
227
libtar (1.2.5-1) unstable; urgency=low
228
 
229
  * New upstream version
230
  * Change section of libtar-dev to devel and libtar to libs
231
 
232
 -- Glenn McGrath <bug1@debian.org>  Fri, 22 Feb 2002 04:23:15 +1100
233
 
234
libtar (1.2.4-2) unstable; urgency=low
235
 
236
  * Change section from devel to libs
237
 
238
 -- Glenn McGrath <bug1@debian.org>  Sat,  2 Feb 2002 12:12:32 +1100
239
 
240
libtar (1.2.4-1) unstable; urgency=low
241
 
242
  * Initial Release. (closes #128042)
243
 
244
 -- Glenn McGrath <bug1@debian.org>  Sat,  5 Jan 2002 13:24:37 +1100
245