libraw (0.16.0-9+deb8u3) jessie-security; urgency=high * debian/patches/: patchset updated - 0003-Fix_CVE-2017-6886.patch added | CVE-2017-6886, CVE-2017-6887: | Fix various buffer overflows that can be exploited | via crafted input files. Thanks to Emilio Pozuelo Monfort (pochu) for the patch. -- Matteo F. Vescovi Sat, 12 Aug 2017 13:21:35 +0200 libraw (0.16.0-9+deb8u2) stable; urgency=high * debian/patches/: patchset updated - 0002-Fix_CVE-2015-8366_CVE-2015-8367.patch added | CVE-2015-8366: Index overflow in smal_decode_segment | CVE-2015-8367: Memory objects are not intialized properly -- Matteo F. Vescovi Sat, 12 Dec 2015 21:55:04 +0100 libraw (0.16.0-9+deb8u1) stable; urgency=high * debian/patches/: patchset updated - 0001-Fix_CVE-2015-3885.patch added | Integer overflow in the ljpeg_start function | in dcraw 7.00 and earlier allows remote attackers | to cause a denial of service (crash) via a | crafted image, which triggers a buffer overflow, | related to the len variable. -- Matteo F. Vescovi Tue, 26 May 2015 18:09:20 +0200 libraw (0.16.0-9) unstable; urgency=medium * debian/control: strictly build-depends on libjpeg-dev. Thanks to Ondřej Surý (ondrej) for the patch. (Closes: #763482) * debian/control: S-V bump 3.9.5 => 3.9.6 (no changes needed) -- Matteo F. Vescovi Tue, 30 Sep 2014 17:47:16 +0200 libraw (0.16.0-8) unstable; urgency=medium * debian/watch: search path updated (Closes: #759650) -- Matteo F. Vescovi Fri, 29 Aug 2014 10:29:55 +0200 libraw (0.16.0-7) unstable; urgency=medium * debian/libraw10.symbols: updated for mips64/mips64el. Thanks to YunQiang Su for the patch. (Closes: #758530) -- Matteo F. Vescovi Thu, 28 Aug 2014 16:06:06 +0200 libraw (0.16.0-6) unstable; urgency=medium * debian/control: new uploader (Closes: #755414) * debian/control: VCS fields added * debian/libraw10.symbols: mips64/mips64el archs added. Thanks to YunQiang Su for the patch. (Closes: #754360) -- Matteo F. Vescovi Mon, 21 Jul 2014 15:10:41 +0200 libraw (0.16.0-5) unstable; urgency=medium [ Martin Pitt ] * Fix autopkgtest: Add missing libraw-dev test dep, drop unnecessary @builddeps@, and add missing "set -e" so that the test actually fails properly. Also fix linking order to also work with binutils-gold. These fixes closes: #750985. -- Luca Falavigna Tue, 10 Jun 2014 11:13:04 +0200 libraw (0.16.0-4) unstable; urgency=medium * debian/libraw10.symbols: - Update symbols to build against gcc-4.9 (Closes: #746875). * debian/tests/testbuild: - Provide a simple test to check whether the package is fucntional, as per DEP8 (autopkgtests). -- Luca Falavigna Sat, 07 Jun 2014 18:43:23 +0200 libraw (0.16.0-3) unstable; urgency=medium [ Adam Conrad ] * debian/libraw10.symbols: - Update symbols for arm64 and ppc64el (Closes: #745883). -- Luca Falavigna Thu, 01 May 2014 09:58:02 +0200 libraw (0.16.0-2) unstable; urgency=medium * debian/libraw10.symbol: - Handle 32-bit symbol differences (Closes: #740106). -- Luca Falavigna Thu, 27 Feb 2014 16:34:23 +0100 libraw (0.16.0-1) unstable; urgency=medium * New upstream release. * debian/control: - Re-add myself as Uploader. - Bump Standards-Version to 3.9.5. * debian/copyright: - Update license information. * debian/libraw10.symbol: - Renamed from libraw9.symbols.amd64 to match new binary, refreshed with the new symbols (Closes: #738424). -- Luca Falavigna Mon, 24 Feb 2014 18:53:46 +0100 libraw (0.15.4-1) unstable; urgency=low * Team upload. * New upstream release. - Fix for CVE-2013-1438 (Closes: #721231). - Fix for CVE-2013-1439 (Closes: #721338). - Fix segmentaition fault when unprocessed_raw is passed -s option wihout any parameter (Closes: #716423). * debian/patches/4channels_parameter.patch: - Dropped, applied upstream. * debian/patches/typo.patch: - Dropped, applied upstream. -- Luca Falavigna Sat, 05 Oct 2013 17:53:47 +0200 libraw (0.15.3-1) unstable; urgency=low * Team upload to unstable. * New upstream release (Closes: #710353). - Fix error handling for broken full-color images - CVE-2013-2126. - Fix wrong data_maximum calcluation - CVE-2013-2127. * debian/patches/4channels_parameter.patch: - Fix segmentaition fault when 4channel is passed -s option without any parameter (Closes: #715577). -- Luca Falavigna Wed, 10 Jul 2013 21:20:09 +0200 libraw (0.15.1-1) experimental; urgency=low * Team upload. * New upstream release. * debian/patches/typo.patch: - Fix typo in help output. * debian/control: - Build-depend on dh-autoreconf. - Build-depend on libjpeg8-dev | libjpeg-dev. - Replace libraw5 with libraw9, SONAME changed. - libraw-dev depends on libraw9 accordingly. * debian/copyright: - Update copyright years. * debian/libraw9.install: - Renamed from libraw5.install to match new binary. * debian/libraw9.symbols.amd64: - Renamed from libraw5.symbols.amd64 to match new binary. * debian/rules: - Build with autoreconf support. - Build with DNG support (Closes: #699356). - Pass "-Wl,-z,defs -Wl,--as-needed" to LDFLAGS. - Update dh_makeshlibs call to match new binary. -- Luca Falavigna Sat, 25 May 2013 02:50:14 +0200 libraw (0.14.7-2) unstable; urgency=low * Team upload. * Upload to unstable. * debian/control: - Remove deprecated DM-Upload-Allowed field. - Bump Standards-Version to 3.9.4. -- Luca Falavigna Sun, 12 May 2013 20:47:35 +0200 libraw (0.14.7-1) experimental; urgency=low * Team upload. * New upstream release (Closes: #682982). * debian/control: - Add DM-Upload-Allowed field. * debian/watch: - Use new redirector librawredir.debian.net. -- Luca Falavigna Sat, 25 Aug 2012 13:35:59 +0200 libraw (0.14.6-2) unstable; urgency=low * Team upload. * debian/control: - Add liblcms2-dev to libraw-dev Depends field. -- Luca Falavigna Sun, 27 May 2012 12:16:53 +0200 libraw (0.14.6-1) unstable; urgency=low * Team upload to unstable. * New upstream release. * Multi-arch support. * debian/compat: - Bump compatibility level to 9. * debian/control: - Bump Standards-Version to 3.9.3. * debian/copyright: - Update copyright years. - Format now points to copyright-format site. * debian/libraw5.symbols.amd64: - Refresh symbols file. * debian/rules: - Bump minimum version in dh_makeshlibs to 0.14.6. -- Luca Falavigna Sun, 06 May 2012 17:59:10 +0200 libraw (0.14.0-1) experimental; urgency=low * Team upload. * New upstream release. * debian/control: - Replace libraw2 with libraw5, SONAME changed. - libraw-dev depends on libraw5 accordingly. - Build-depend on pkg-config, libjasper-dev and liblcms2-dev. * debian/libraw5.install: - Renamed from libraw2.install to match new binary. * debian/libraw5.symbols.amd64: - Renamed from libraw2.symbols.amd64 to match new binary. * debian/rules: - Update dh_makeshlibs call to match new binary. -- Luca Falavigna Sat, 24 Sep 2011 15:32:39 +0200 libraw (0.13.8-1) unstable; urgency=low * Team upload. * New upstream release. * debian/control: - Add Debian Shotwell Maintainers to Maintainers. - Move Devid to Uploaders. - Add autotools-dev to Build-Depends. - Add libraw2 package, who provides the shared library. - Add libraw2-bin package, who provides some tools to manipulate RAW files. - Bump Standards-Version to 3.9.2, no changes required. * debian/copyright: - Update copyright information. * debian/rules: - Build with autotools_dev to regenerate config.{sub,guess}. - Manually set prefix to install shared library correctly. * debian/watch: - Upstream disabled listing support, watch file is no-op now. -- Luca Falavigna Mon, 22 Aug 2011 20:45:22 +0200 libraw (0.13.1-2) unstable; urgency=low * Set myself as maintainer (Closes: #613870). * debian/control: add Timo Witte to Uploaders field. * debian/install: install *.pc files in /usr/lib/pkgconfig (Closes: #613777). -- Devid Antonio Filoni Fri, 04 Mar 2011 20:48:20 +0100 libraw (0.13.1-1) unstable; urgency=low * New upstream release (Closes: #607139). * debian/control: - Bump Standards-Version to 3.9.1, no changes required. * debian/copyright: - Update copyright years. -- Luca Falavigna Tue, 08 Feb 2011 22:53:51 +0100 libraw (0.9.1-1) unstable; urgency=low * Initial release (Closes: #578830). -- Luca Falavigna Sat, 12 Jun 2010 10:09:37 +0200