lp:debian/lenny/poppler

Created by James Westby and last modified
Get this branch:
bzr branch lp:debian/lenny/poppler
Members of Ubuntu branches can upload to this branch. Log in for directions.

Related bugs

Related blueprints

Branch information

Owner:
Ubuntu branches
Status:
Mature

Recent revisions

9. By Moritz Muehlenhoff <email address hidden>

CVE-2010-3702 CVE-2010-3704

8. By Luciano Bello

* Non-maintainer upload by the Security Team.
* Fix integer overflow in SplashBitmap::SplashBitmap leading to a
  heap-based buffer overflow resulting in arbitrary code execution via
  crafted pdf files (CVE-2009-1188; Closes: #524806).

7. By Moritz Muehlenhoff <email address hidden>

* Non-maintainer upload by the Security Team.
* Fix CVE-2009-3603 to CVE-2009-3609, CVE-2009-0755. Based on patches
  by Marc Deslauriers
* Fix CVE-2009-3938

6. By Josselin Mouette <email address hidden>

11_JBIG2_CVEs.patch: backport several fixes related to parsing of
broken JBIG2 files.
CVE-2009-0799, CVE-2009-0800, CVE-2009-1179, CVE-2009-1180,
CVE-2009-1181, CVE-2009-1182, CVE-2009-1183, CVE-2009-1187,
CVE-2009-1188.

5. By Loïc Minier

* Bump up Standards-Version to 3.8.0.
* New patch, 61_manpages-hyphens, fixes escaping of hyphens in man pages;
  FreeDesktop #17225.
* New patch, 62_pdftops-mandatory-arg, fixes synopsis of pdftops in man page
  to clarify that a PDF file is required in all cases; FreeDesktop #17226;
  closes: #491816.
* Build-dep on cdbs (>= 0.4.52) and add a lintian override with rationale
  for the following lintian warning:
  W: poppler-dbg: dbg-package-missing-depends poppler
* Add xrefs and CVE for #489756 in 0.8.5-1 as I didn't merge the 0.8.4-1.1
  NMU.
* New upstream release; no API change, bug fixes.

4. By Ondřej Surý

* New upstream release.
* New maintainer (Closes: #344738)
* CVE-2005-3191 and CAN-2005-2097 fixes merged upstream.
* Fixed some rendering bugs and disabled Cairo output
  (Closes: #314556, #322964, #328211)
* Acknowledge NMU (Closes: #342288)
* Add 001-selection-crash-bug.patch (Closes: #330544)
* Add poppler-utils (merge patch from Ubuntu)

3. By Martin Pitt

* debian/patches/04_CVE-2005-3191_2_3.patch:
  - poppler/Stream.cc, StreamPredictor::StreamPredictor(): Check for
    (nVals * nBits) + 7 overflow, too.

2. By Martin Pitt

* debian/patches/04_CVE-2005-3191_2_3.patch:
  - Change upstream patch for StreamPredictor::StreamPredictor() and
    JPXStream::readCodestream() checks to use division instead of
    multplication, which is undefined on overflow.

1. By Adam Conrad

Import upstream version 0.4.2

Branch metadata

Branch format:
Branch format 7
Repository format:
Bazaar repository format 2a (needs bzr 1.16 or later)
Stacked on:
lp:debian/squeeze/poppler
This branch contains Public information 
Everyone can see this information.

Subscribers