lp:ubuntu/hardy-updates/devscripts

Created by James Westby and last modified
Get this branch:
bzr branch lp:ubuntu/hardy-updates/devscripts
Members of Ubuntu branches can upload to this branch. Log in for directions.

Branch merges

Related bugs

Related blueprints

Branch information

Owner:
Ubuntu branches
Review team:
Ubuntu Development Team
Status:
Development

Recent revisions

53. By Tyler Hicks

* SECURITY UPDATE: Arbitrary code execution via crafted filenames in .dsc
  and .changes files
  - scripts/debdiff.pl: Perform input sanitization on filenames. Thanks to
    Raphael Geissert for the original patch.
  - CVE-2012-0210
* SECURITY UPDATE: Arbitrary code execution via crafted filenames in the top
  level directory of the original upstream source tarball
  - scripts/debdiff.pl: Perform input sanitization on filenames. Thanks to
    Adam D. Barratt for the original patch.
  - CVE-2012-0211
* SECURITY UPDATE: Arbritray code execution via crafted filenames in
  arguments passed to debdiff
  - scripts/debdiff.pl: Perform input sanitization on filenames. Based on
    upstream patches.
  - http://anonscm.debian.org/gitweb/?p=devscripts/devscripts.git;a=commitdiff;h=87f88232eb643f0c118c6ba38db8e966915b450f
  - http://anonscm.debian.org/gitweb/?p=devscripts/devscripts.git;a=commitdiff;h=76227af1ee8d68f4844f642325eac903ca21e739
  - CVE-2012-0212
* scripts/debdiff.pl: Remove undocumented functionality which treated
  files with extentionless filenames as packages. Thanks to Adam D. Barratt
  for the original patch.
  - http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=659559

52. By Jamie Strandboge

* SECURITY UPDATE: fix handling of mangle rules in watch files to
  not execute them as Perl code
  - patch adapted from r1984, r1992 and r2006 of Debian svn
  - CVE-2009-2946

51. By Scott Kitterman

* Backport from 2.10.25
  - debsign: Update to 2.10.25 version for correct Checksums-* updating
    needed for compatibility with dak in Debian - update man page too
  - debsign: Include previous Ubuntu difference to provide
    $DEBSIGN_ALWAYS_RESIGN support

50. By Colin Watson

* Backport from trunk:
  - debcheckout: Add auth support for *.launchpad.net.
* debchange: Recognise 'intrepid' as a valid Ubuntu release name
  (LP: #193701).

49. By Sarah Kowalik

[ Terence Simpson ]
* scripts/debchange.pl:
  Allow -i increment ~ppa revisions (LP: #180748)

[ Sarah Hobbs ]
* Added recommends: debhelper as most packages use the dh_* scripts
  in debian/rules (LP: #178749)

48. By Daniel Hahler

scripts/debdiff.pl:
Make diff output p1-compatible, when interdiff is not used
(either for native packages or if not available) (LP: #136863)

47. By Oliver Grawert

* Merge from debian unstable, remaining changes:
  - Change the default URL parameter of rmadison to be ubuntu
  - debian/control:
    + DebianMaintainerField foo.
    + Build-depend on lsb-release.
  - debian/rules:
    + Actually run tests in test-stamp target.
 - scripts/debchange.1:
    + Add info about --security option.
  - scripts/debchange.pl:
    + Add --security option, which acts like --nmu, but adds security update
      template instead of NMU template to changelog.
    + Add -U/--upstream flag that forces original "just increment
      the end" behaviour; Ubuntu is upstream for some pieces of software.
    + Add --distributor= to override lsb_release output.
    + Default to "hardy" as distribution.
    + Add "ubuntu1" to version string for new versions.
  - scripts/debuild.pl:
    + Preserve DEBEMAIL environment variable inside debuild.
    + Enforce Ubuntu merge policy.
  - test/debchange.pl:
    + Test for debchange.pl
  - Added wget | curl to Depends
  - Update "rmadison --help" output to show that Ubuntu is the default
* drop build dep on libfile-desktopentry-perl and dont install desktop2menu
  for now, we dont use the debian menu system and libfile-desktopentry-perl
  is not in main

46. By Nicolas Valcarcel

Added wget | curl to Depends (Closes LP: #165207)

45. By Soren Hansen

Update "rmadison --help" output to show that Ubuntu is the default,
and also provide a hint about shorthands.

44. By Steve Kowalik

* Merge from Debian unstable.
* Remaining Ubuntu changes:
  - debian/control:
    + DebianMaintainerField foo.
    + Build-depend on lsb-release.
  - debian/rules:
    + Actually run tests in test-stamp target.
  - scripts/debchange.1:
    + Add info about --security option.
  - scripts/debchange.pl:
    + Add --security option, which acts like --nmu, but adds security update
      template instead of NMU template to changelog.
    + Add -U/--upstream flag that forces original "just increment
      the end" behaviour; Ubuntu is upstream for some pieces of software.
    + Add --distributor= to override lsb_release output.
    + Default to "hardy" as distribution.
    + Add "ubuntu1" to version string for new versions.
  - scripts/debuild.pl:
    + Preserve DEBEMAIL environment variable inside debuild.
    + Enforce Ubuntu merge policy.
  - test/debchange.pl:
    + Test for debchange.pl
* Change the default URL parameter of rmadison to be ubuntu. The old
  behaviour can be used by 'rmadison -u debian'.

Branch metadata

Branch format:
Branch format 7
Repository format:
Bazaar repository format 2a (needs bzr 1.16 or later)
Stacked on:
lp:ubuntu/karmic/devscripts
This branch contains Public information 
Everyone can see this information.

Subscribers