lp:debian/stretch/libyaml-libyaml-perl

Created by Ubuntu Package Importer and last modified
Get this branch:
bzr branch lp:debian/stretch/libyaml-libyaml-perl
Members of Ubuntu branches can upload to this branch. Log in for directions.

Related bugs

Related blueprints

Branch information

Owner:
Ubuntu branches
Status:
Development

Recent revisions

15. By Salvatore Bonaccorso

* Team upload.
* Add CVE-2014-9130.patch patch.
  Fix CVE-2014-9130: assertion failure caused by wrapped strings.
  (Closes: 771365)

14. By Salvatore Bonaccorso

* Team upload.

[ gregor herrmann ]
* Strip trailing slash from metacpan URLs.

[ Salvatore Bonaccorso ]
* Add CVE-2014-2525.patch patch.
  CVE-2014-2525: Heap overflow when parsing YAML tags.
  The heap overflow is caused by not properly expanding a string before
  writing to it in function yaml_parser_scan_uri_escapes in scanner.c.

13. By Salvatore Bonaccorso

* Team upload.
* Add libyaml-string-overflow.patch patch.
  Addresses CVE-2013-6393 for the LibYAML embedded copy in YAML::LibYAML.
* Add libyaml-node-id-hardening.patch patch.
  Guard against integer overflow.
* Add libyaml-guard-against-overflows-in-indent-and-flow_level.patch patch.
  Guard against overflows in indent and flow_level.

12. By Salvatore Bonaccorso

* Team upload.
* Revert applying libyaml-node-id-hardening.patch patch,
  libyaml-indent-column-overflow-v2.patch and
  libyaml-string-overflow.patch patch as this uncovered a regression
  on libyaml's side, discovered when rebuilding the packages with
  build-dependency on libyaml-libyaml-perl.

11. By Salvatore Bonaccorso

* Team upload.
* Add libyaml-string-overflow.patch patch.
  Addresses CVE-2013-6393 for the LibYAML embedded copy in YAML::LibYAML.
* Add libyaml-indent-column-overflow-v2.patch.
  Addresses regression for the initial patch for CVE-2013-6393.
* Add libyaml-node-id-hardening.patch patch.
  Guard against integer overflow.
* Declare compliance with Debian Policy 3.9.5

10. By gregor herrmann

[ Salvatore Bonaccorso ]
* Change Vcs-Git to canonical URI (git://anonscm.debian.org)
* Change search.cpan.org based URIs to metacpan.org based URIs

[ gregor herrmann ]
* New upstream release.
* Update years of copyright.
* Add patch to disable maintainer helper script.
* Drop build dependency on not (yet) used libyaml-dev.
* Declare compliance with Debian Policy 3.9.4.

9. By gregor herrmann

* Document copyright and license for embedded libyaml. Thanks to Niko
  Tyni for spotting. (Closes: #664196)
* Bump debhelper build dependency to 9.20120312 to get all hardening
  flags.
* Fix a grammatical error in the long description.

8. By Niko Tyni

* Team upload.

[ Julián Moreno Patiño ]
* Enable hardening flags. (Closes: #661548)
  + Switch compat level 8 to 9.
  + Add fix_ftbfs_hardening_flags.diff patch.
  + Bump debhelper version to 9.
* Bump Standards-Version to 3.9.3.
  + Update to DEP5 copyright-format 1.0.
    + Add /me to debian copyright.

[ Niko Tyni ]
* Note that this fixes CVE-2012-1152.
* Upload at urgency=medium

7. By gregor herrmann

* New upstream release.
* Update copyright years.

6. By gregor herrmann

[ Ansgar Burchardt ]
* debian/control: Convert Vcs-* fields to Git.

[ Salvatore Bonaccorso ]
* debian/copyright: Replace DEP5 Format-Specification URL from
  svn.debian.org to anonscm.debian.org URL.

[ gregor herrmann ]
* New upstream release.
* Update copyright years for inc/Module/*.
* Add /me to Uploaders.

Branch metadata

Branch format:
Branch format 7
Repository format:
Bazaar repository format 2a (needs bzr 1.16 or later)
Stacked on:
lp:debian/libyaml-libyaml-perl
This branch contains Public information 
Everyone can see this information.

Subscribers