lp:ubuntu/gutsy-security/blender

Created by James Westby and last modified
Get this branch:
bzr branch lp:ubuntu/gutsy-security/blender
Members of Ubuntu branches can upload to this branch. Log in for directions.

Branch merges

Related bugs

Related blueprints

Branch information

Owner:
Ubuntu branches
Review team:
Ubuntu Development Team
Status:
Development

Recent revisions

20. By Stefan Lesicnik

* SECURITY UPDATE: Stack-based buffer overflow in the imb_loadhdr
  function in Blender 2.45 allows user-assisted remote attackers
  to execute arbitrary code via a .blend file that contains a crafted
  Radiance RGBE image (LP: #222592)
  - 20_CVE-2008-1102.diff: Upstream patch to address stack overflow.
  - CVE-2008-1102
* SECURITY UPDATE: Untrusted search path vulnerability in BPY_interface in
  Blender 2.46 allows local users to execute arbitrary code via a Trojan
  horse Python file in the current working directory, related to an
  erroneous setting of sys.path by the PySys_SetArgv function. (LP: #319501)
  - 01_sanitize_sys.path: Debian patch to no longer load modules from
    current dir. Slightly modified from Debian patch as per recommendation
    from debian patch author.
  - CVE-2008-4863

19. By William Lima <email address hidden>

Switch over to python 2.5 (Closes LP: #116540).

18. By Lukas Fittl

* Fix fullscreen desktop file to actually work (Closes LP: #123578)
* Use correct libGL SONAME (Closes LP: #113897)

17. By Cyril Brulebois <email address hidden>

* Added debian/patches/20_gcc4.3_support.dpatch to fix FTBFS with GCC 4.3.
  Solves:
   - many missing includes;
   - one missing newline;
   - one redefinition.
  (Closes: #417491)
* Rebuild will turn libav{codec,format}0d Depends: into libav{codec,format}1d,
  thus fixing the impossibility to install blender (Closes: #427567).

16. By Florian Ernst <email address hidden>

* New upstream release.
* Drop debian/patches/01_64bits_stupidity, not needed anymore: as of this
  version blender is 64 bits safe again. Adjust README.Debian accordingly.

15. By Lukas Fittl

[ Florian Ernst ]
* debian/control:
  + drop g++-3.3 from B-D. Actually, we don't need it anymore.
  + bump B-D on python-central to 0.5 to make lintian happy.

[ Lukas Fittl ]
* The above changes have been taken from pkg-blender cvs.
* Provide .desktop entries for fullscreen and windowed mode
  (Closes LP: #23761).

14. By Lukas Fittl

[ Cyril Brulebois ]
* Updated and improved desktop integration (Closes: #417901):
   - added the missing dh_desktop call;
   - added the installation of the SVG icon from release/freedesktop/icons;
   - adapted the icon name in the .desktop file accordingly.
* Adjusted README.Debian file so that it has the very same structure as a
  debian changelog file.

[ Lukas Fittl ]
* The above changes have been taken from pkg-blender cvs.
* Fix FTBFS on mips and sparc (Closes: #417889)
* Install all icon sizes.

13. By Lukas Fittl

[ Cyril Brulebois ]
* New upstream release.
* Added myself to the Uploaders field.
* Refreshed 10_gnukfreebsd_support.dpatch:
   - it should now support each FreeBSD kernel version, using startswith()
     instead of an hardcoded kernel version string;
   - nan_compile.mk and some other files are no longer patched, although the
     compilation is OK; adjustments might be needed.
* Updated user-config.py:
   - fixed () vs {} for FFMPEG;
   - switched from 'bullet' to 'bullet2' and adjusted some paths.
* Added a Build-Conflicts against nvidia-glx. When trying to build with that
  package installed, a ``-lGL not found otherwise'' occurs, and without it,
  everything looks fine. That should also avoid situations like in #282071
  and #285946.
* Added debian/patches/01_64bits_stupidity.dpatch to enable blender on
  64-bit systems. Please read the NEWS.Debian file for more info.
* Adjusted the clean target since many binary files remained after the
  cleanup, reported by dpkg-buildpackage when trying to update the Debian
  diff after a build.
* Adjusted the width of the lines in the long description to get a possibly
  beautiful paragraph.

[ Lukas Fittl ]
* The above changes have been taken from pkg-blender cvs and
  as soon as 2.43 reaches Debian unstable it can be synced.
* debian/control: Update the maintainer field according to
  debian-maintainer-field specification.

12. By Florian Ernst <email address hidden>

* urgency=high due to RC bugfix targetted at testing
* debian/control: add explicit Build-Depends on pkg-config which was
  previously pulled in automatically via a dependency chain, thus
  resolving a FTBFS (Closes: #397560)

* debian/rules: remove dh_python call as dh_pycentral should do the work
* debian/genpot/*.py: convert DOS to Unix line endings, thanks to Jens
  Seidel for the pointer
* debian/blender.1: update by Cyril Brulebois, many thanks (Closes: #394224)

11. By Lukas Fittl <email address hidden>

* Merge from Debian unstable (Closes: Malone #55903). Remaining changes:
  - debian/genpot: Add python scripts from Lee June <email address hidden> to
    generate a reasonable PO template from the sources. Since gettext is used
    in a highly nonstandard way, xgettext does not work for this job.
  - debian/rules: Call the scripts, generate po/blender.pot, and clean it up
    in the clean target.
  - Add a proper header to the generated PO template.
* debian/control: Build depend on libavformat-dev >= 3:0.cvs20060823-3.1,
  otherwise this package will FTBFS

Branch metadata

Branch format:
Branch format 7
Repository format:
Bazaar repository format 2a (needs bzr 1.16 or later)
Stacked on:
lp:ubuntu/karmic/blender
This branch contains Public information 
Everyone can see this information.

Subscribers