lp:ubuntu/feisty-security/tetex-bin

Created by James Westby and last modified
Get this branch:
bzr branch lp:ubuntu/feisty-security/tetex-bin
Members of Ubuntu branches can upload to this branch. Log in for directions.

Branch merges

Related bugs

Related blueprints

Branch information

Owner:
Ubuntu branches
Status:
Development

Recent revisions

19. By Jamie Strandboge

* SECURITY UPDATE: improper bounds on static buffer results in stack-based
  buffer overflow
* debian/patches/SECURITY_CVE-2007-5935.patch: make sure tmpbuf is allocated
  enough memory in texk/dvipsk/hps.c
* SECURITY UPDATE: temporary file race condition in dviljk due to use of
  tmpnam()
* SECURITY UPDATE: various buffer overflows in dviljk due to not checking
  memory boundaries
* debian/patches/SECURITY_CVE-2007-5936+5937.patch: use mkdtemp() if
  available in dvi2xx.c. Replace calls to strcpy() and do proper bounds
  checking in dvi2xx.*.
* Modify Maintainer value to match the DebianMaintainerField
  specification.
* debian/control: Build-Depends on libcairo2-dev
* References
  CVE-2007-5935
  CVE-2007-5936
  CVE-2007-5937

18. By Martin Pitt

* Merge to Debian unstable. Remaining Ubuntu changes:
  - debian/patches/patch-poppler: Ported to poppler 0.5.1 API.
  - debian/patches/patch-dvipdfm-timezones: Fix dvipdfm crash in certain
    time zones.

17. By Martin Pitt

* Add debian/patches/patch-dvipdfm-timezones:
  - Fix dvipdfm crash in certain time zones.
  - Thanks to Alex Murray for digging out the patch!
  - Closes: LP#66474

16. By Martin Pitt

* Merge to Debian unstable. Remaining Ubuntu changes:
  - debian/patches/patch-poppler: Ported to poppler 0.5.1 API.

15. By Martin Pitt

* Merge to Debian unstable. Remaining Ubuntu changes:
  - debian/patches/patch-poppler: Ported to poppler 0.5.1 API.

14. By Martin Pitt

No-change upload to build against current Poppler. This resolves the
'undefined symbol: _ZN4Dict3addERK10UGooStringP6Object' pdfetex failure
(which breaks texinfo, which in turn causes various FTBFSes).

13. By Martin Pitt

* Synchronize to Debian, Ubuntu changes left:
  - debian/patches/patch-poppler: Ported to poppler 0.5.1 API.
  - debian/postinst.functions: Fix regular expression.

12. By Martin Pitt

No-change upload to build against the current poppler library (which
changed API a bit due to the last bug fix). Closes: LP#42075

11. By Martin Pitt

debian/postinst.in: Do not install oxdvi.bin alternative, since oxdvi.real
does not exist any more. Closes: LP#38321.

10. By Martin Pitt

* debian/postinst.functions: Enclose regular epxression in m!! instead of //
  to cope with the contained slashes. Thanks to Chris Moore!
  Closes: LP#33449
* debian/rules.in: Clean up build cruft in clean rule.

Branch metadata

Branch format:
Branch format 7
Repository format:
Bazaar repository format 2a (needs bzr 1.16 or later)
This branch contains Public information 
Everyone can see this information.

Subscribers