libgd2 2.0.35.dfsg-3ubuntu1 source package in Ubuntu

Changelog

libgd2 (2.0.35.dfsg-3ubuntu1) hardy; urgency=low

  * Merge from debian unstable, remaining changes:
    - debian/control: Drop unnecessary build dependency 'gnulib'.
    - maintainer field updates

libgd2 (2.0.35.dfsg-3) unstable; urgency=high

  * Add patch hand-picked from upstream CVS:
    + gdImageColorTransparent can write outside buffer
  * Raise to urgency=high as this a small, security-related bugfix.

libgd2 (2.0.35.dfsg-2) unstable; urgency=medium

  * Add patch (using patchsystem-quilt.mk cdbs snippet) hand-picked from
    upstream CVS to fix various security-related issues:
    + _gdCreateFromFile() can crash if gdImageCreate fails
    + gdImageCreateFrom*Ptr() can crash if gdNewDynamicCtxEx()
    + gdImageRectangle draws 1x1 rectangles as 1x3 rectangles
    + Possible integer overflow in gdImageFill()
    + Optimization for single pixel line not in correct order
    + gdImageColorDeallocate can write outside buffer
  * Add XS-Vcs-Svn and XS-Vcs-Browser fields to debian/control.
  * Update cdbs tweaks:
    + Support non-dot-delimited repackaging tag in update-tarball.
    + update-tarball needs recent cdbs (only relevant for backports).
  * Cleanup duplicate build-dependencies in debian/rules.
  * Semi-auto-update debian/control:
      DEB_BUILD_OPTIONS=cdbs-autoupdate fakeroot debian/rules pre-build
  * Fix shlibs dependencies: Use DEB_UPSTREAM_VERSION (instead of custom
    version variables).
  * Set urgenvy=medium due to the security-related fixes.

libgd2 (2.0.35.dfsg-1) unstable; urgency=low

  * New upstream release. Closes: bug#431443, thanks to Sean Finney.
  * Repackage source tarball to avoid files below VMS and cmake that
    contains copyrights with questionable or missing licensing info.
  * Switch to team maintainance using Alioth project pkg-gd, and myself
    and Sean Finney as uploaders. Others interested in helping out
    maintaining packaging of GD and related packages, please get in
    touch with us at <email address hidden> .
  * Update CDBS tweaks:
    + Minor improvements to upstream-tarball.mk.
    + Advertise debian/README.cdbs-tweaks in debian/rules.
  * Replace deprecated ${Source-Version} with Use binNMU-safe
    ${binary:Version} in debian/control. Thanks to Lintian.
  * Update debian/copyright to include new copyright (BSD) for the file
    strlcpy.c.

 -- Kees Cook <email address hidden>   Thu, 06 Dec 2007 17:02:21 -0800

Upload details

Uploaded by:
Kees Cook
Uploaded to:
Hardy
Original maintainer:
Ubuntu Development Team
Architectures:
any
Section:
oldlibs
Urgency:
Very Urgent

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
libgd2_2.0.35.dfsg.orig.tar.gz 1.3 MiB fb36009a9b94b29e9aef6bbb0ce079757547cb4316df5812f2678bd18300b8c5
libgd2_2.0.35.dfsg-3ubuntu1.diff.gz 25.6 KiB 3c3d739687aced36becac0e8ce1c86d374862284aaa237b62da73ee3add5aafa
libgd2_2.0.35.dfsg-3ubuntu1.dsc 1.1 KiB fd3358245b2eb3dcfea8f95aec50f14f6a85a682d98c3a95a47849dacc20f4ae

View changes file

Binary packages built by this source

libgd-tools: No summary available for libgd-tools in ubuntu hardy.

No description available for libgd-tools in ubuntu hardy.

libgd2-noxpm: No summary available for libgd2-noxpm in ubuntu hardy.

No description available for libgd2-noxpm in ubuntu hardy.

libgd2-noxpm-dev: No summary available for libgd2-noxpm-dev in ubuntu hardy.

No description available for libgd2-noxpm-dev in ubuntu hardy.

libgd2-xpm: No summary available for libgd2-xpm in ubuntu hardy.

No description available for libgd2-xpm in ubuntu hardy.

libgd2-xpm-dev: No summary available for libgd2-xpm-dev in ubuntu hardy.

No description available for libgd2-xpm-dev in ubuntu hardy.