Accepted: libgd2 2.0.36~rc1~dfsg-3ubuntu1 (source)
Kees Cook
kees at ubuntu.com
Mon Aug 4 03:35:15 BST 2008
Accepted:
OK: libgd2_2.0.36~rc1~dfsg.orig.tar.gz
OK: libgd2_2.0.36~rc1~dfsg-3ubuntu1.diff.gz
OK: libgd2_2.0.36~rc1~dfsg-3ubuntu1.dsc
-> Component: main Section: oldlibs
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.8
Date: Sun, 03 Aug 2008 19:21:21 -0700
Source: libgd2
Binary: libgd-tools libgd2-xpm-dev libgd2-noxpm-dev libgd2-xpm libgd2-noxpm
Architecture: source
Version: 2.0.36~rc1~dfsg-3ubuntu1
Distribution: intrepid
Urgency: medium
Maintainer: Ubuntu Core Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Kees Cook <kees at ubuntu.com>
Description:
libgd-tools - GD command line tools and example code
libgd2-noxpm - GD Graphics Library version 2 (without XPM support)
libgd2-noxpm-dev - GD Graphics Library version 2 (development version)
libgd2-xpm - GD Graphics Library version 2
libgd2-xpm-dev - GD Graphics Library version 2 (development version)
Closes: 466642 476018 478534
Changes:
libgd2 (2.0.36~rc1~dfsg-3ubuntu1) intrepid; urgency=low
.
* Merge from debian unstable, remaining changes:
- debian/control: Drop unnecessary build dependency 'gnulib'.
.
libgd2 (2.0.36~rc1~dfsg-3) unstable; urgency=medium
.
* Drop bogus "-Wl,--disable-rpath" ld flags. Closes: bug#478534,
#476018, thanks to Kumar Appaiah.
* Install (cleaned copy of) index.html as both README and README.html.
* Build-depend on html2text (pulled in by debhelper too, but also used
explicitly so we must depend on it ourselves according to Policy).
* Update local cdbs snippets:
+ Add and use local autotools.mk extended to support multiple build
flavors (instead of custom-invoked configure + make).
As extra bonus this fixes support for cross-compilation (thanks to
Kumar Appaiah for pointing it out in bug#476018).
+ Add local autotools-vars.mk, makefile.mk and makefile-vars.mk
needed by local autotools.mk above.
+ Strip non-printable characters in copyright-check.mk.
+ Relaxed copyright-check.mk to only warn by default.
+ Update dependency cleanup to strip cdbs 0.4.27 (not 0.4.27-1).
* Update debian/copyright-hints.
* Bump debhelper compatibility level to 6.
* Semi-auto-update debian/control to update build-dependencies:
DEB_AUTO_UPDATE_DEBIAN_CONTROL=yes fakeroot debian/rules clean
* Set urgency=medium as this fixes serious FTBFS bugs.
.
libgd2 (2.0.36~rc1~dfsg-2) unstable; urgency=medium
.
* Add symbols file.
* Add patch 0001 to fix leak in gdImageCopyResized.
* Set urgency=medium, as the bugfix above seems security-related.
* Update local cdbs snippets:
+ Enable patchsys-quilt.mk.
+ Major improvements to update-tarball (but none of them affecting
this current packaging).
+ Major improvements to copyright-check, including new versioned
build-dependency on devscripts. Update debian/copyright_hints.
Closes: bug#466642.
+ Drop buildcore.mk override. Set DEB_AUTO_UPDATE_DEBIAN_CONTROL
directly instead when needed.
+ Update debian/README.cdbs-tweaks
* Avoid copyright-check choking on config/install.sh and aclocal.m4.
* Semi-auto-update debian/control to update build-dependencies:
DEB_AUTO_UPDATE_DEBIAN_CONTROL=yes fakeroot debian/rules clean
.
libgd2 (2.0.36~rc1~dfsg-1) unstable; urgency=medium
.
* New upstream prerelease.
+ Fixed gdImageCopy with true color image, the transparent color was
ignored
+ Fixed support of PNG grayscale image with alpha channel
+ _gdCreateFromFile() can crash if gdImageCreate fails
+ gdImageCreateFrom*Ptr() can crash if gdNewDynamicCtxEx() fails
+ gdImageRectangle draws 1x1 rectangles as 1x3 rectangles
+ Possible integer overflow in gdImageFill()
+ Optimization for single pixel line not in correct order
+ gdImageColorDeallocate can write outside buffer
+ gdImageColorTransparent can write outside buffer
+ gdImageWBMPCtx can crash when createwbmp fails
* Set urgency=medium due to this being a bugfix-only release, and some
of the fixes seems security-related.
* Move Homepage to own field (from pseudo-field in long description).
* Move XS-Vcs-* control fields to Vcs-*.
* Add patch 0003 to fix segfault when createwbmp fails.
* Adjust watch file:
+ Include upstream prereleases
+ Ignore local trailing ~dfsg repackaging hint
+ Invoke svn-upgrade (not uupdate)
* Update cdbs tweaks:
+ Support zip in upstream-tarball.mk (unneeded here)
+ Use ~ as repackaging delimiter in upstream-tarball.mk to make room
for point releases and cleaned up rerelease
+ Rename top srcdir in repackaged tarball to $pkg-$ver.orig to
comply with Developers Reference 6.7.8.2.
+ Support mangling upstream version string in upstream-tarball.mk
+ Drop buildcore.mk override (set DEB_AUTO_UPDATE_DEBIAN_CONTROL
manually when needed instead)
* Drop all patches: applied upstream.
* Strip tests from repackaged source tarball: newly added truetype
font comes without license, and all tests are unusable anyway
without cmake modules that are already stripped.
* Document stripped files in debian/copyright.
* Update debian/copyright_hints (newer years for automade files).
* Bump standards-version to 3.7.3 (no changes needed).
* Semi-auto-update debian/control:
DEB_AUTO_UPDATE_DEBIAN_CONTROL=yes fakeroot debian/rules
Checksums-Sha1:
336a45fecf3d944718dcadad9ccea000cc6b60f6 1705 libgd2_2.0.36~rc1~dfsg-3ubuntu1.dsc
e93c43f3c2283c6fe09793ac06a4a106374e0cb3 761899 libgd2_2.0.36~rc1~dfsg.orig.tar.gz
b51e0320678f9be09ba6c2810740963a9dfd298b 30289 libgd2_2.0.36~rc1~dfsg-3ubuntu1.diff.gz
Checksums-Sha256:
d2c5afa02c6e4d31c08563633492aed4546411c807ed571ac3c20770f0cf8c77 1705 libgd2_2.0.36~rc1~dfsg-3ubuntu1.dsc
919df21310ad4a8b6155df01411138110589cc6c50b1bc414dc62aebb0a7f41a 761899 libgd2_2.0.36~rc1~dfsg.orig.tar.gz
0669c2492096743b904681d483627f10b041cc77199b41b72b95136aadc4e823 30289 libgd2_2.0.36~rc1~dfsg-3ubuntu1.diff.gz
Files:
53958a2c4b59d05768d98ecc425e614b 1705 graphics optional libgd2_2.0.36~rc1~dfsg-3ubuntu1.dsc
0f4d2fa45627af0e87fcb74f653b66dd 761899 graphics optional libgd2_2.0.36~rc1~dfsg.orig.tar.gz
8627d3b70688f4bae868a9e2addf9686 30289 graphics optional libgd2_2.0.36~rc1~dfsg-3ubuntu1.diff.gz
Original-Maintainer: GD team <pkg-gd-devel at lists.alioth.debian.org>
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)
Comment: Kees Cook <kees at outflux.net>
iEYEARECAAYFAkiWaaEACgkQH/9LqRcGPm2pNwCcDNabBiy2UsGrdG8uz9QfLRnS
lJ0An1S1/OkTBa1OGqdEYPzmUrril22u
=kGim
-----END PGP SIGNATURE-----
More information about the Intrepid-changes
mailing list