lp:ubuntu/utopic-proposed/tiff

Created by Ubuntu Package Importer and last modified
Get this branch:
bzr branch lp:ubuntu/utopic-proposed/tiff
Members of Ubuntu branches can upload to this branch. Log in for directions.

Branch merges

Related bugs

Related blueprints

Branch information

Owner:
Ubuntu branches
Review team:
Ubuntu Development Team
Status:
Development

Recent revisions

38. By Brian Murray

No-change rebuild to get debug symbols on all architectures.

37. By Jay Berkenbilt <email address hidden>

Remove libtiff4-dev, completing the tiff transition. Packages that
still declare build dependencies on libtiff4-dev must now build depend
on libtiff-dev instead, or if a versioned dependency is required,
libtiff5-dev with a specific version.

36. By Jay Berkenbilt <email address hidden>

Fix for CVE-2013-4243 (validation for gif2tiff) from Red Hat. (Closes:
#742917)

35. By Marc Deslauriers

* SECURITY UPDATE: denial of service and possible code execution in
  gif2tiff tool
  - debian/patches/CVE-2013-4243.patch: check width and height in
    tools/gif2tiff.c.
  - CVE-2013-4243

34. By Jay Berkenbilt <email address hidden>

Remove libtiff5-alt-dev transitional package now that no one is
build-depending on it anymore.

33. By Jay Berkenbilt <email address hidden>

Use dh-autoreconf to support new architectures in Ubuntu.

32. By Matthias Klose

Build using dh-autoreconf.

31. By Jay Berkenbilt <email address hidden>

* Update standards to 3.9.5. No changes required.
* libtiff4 -> libtiff5 transition. libtiff5-dev now provides
  libtiff-dev. libtiff5-alt-dev and libtiff4-dev are transitional
  packages that depend on libtiff5-dev. They will both be removed
  before jessie.

30. By Jackson Doak

* Merge from debian. Remaining changes:
  - debian/control: Have libtiff5-dev Provide libtiff-dev

29. By Marc Deslauriers

* SECURITY UPDATE: denial of service and possible code execution via heap
  overflow in tp_process_jpeg_strip().
  - debian/patches/CVE-2013-1960.patch: improve tp_process_jpeg_strip()
    logic in tools/tiff2pdf.c.
  - CVE-2013-1960
* SECURITY UPDATE: denial of service via stack overflow with malformed
  image-length and resolution.
  - debian/patches/CVE-2013-1961.patch: replace use of sprintf() with
    snprintf() in contrib/dbs/xtiff/xtiff.c, libtiff/tif_codec.c,
    libtiff/tif_dirinfo.c, tools/rgb2ycbcr.c, tools/tiff2bw.c,
    tools/tiff2pdf.c, tools/tiff2ps.c, tools/tiffcrop.c,
    tools/tiffdither.c.
  - CVE-2013-1961

Branch metadata

Branch format:
Branch format 7
Repository format:
Bazaar repository format 2a (needs bzr 1.16 or later)
Stacked on:
lp:ubuntu/utopic/tiff
This branch contains Public information 
Everyone can see this information.

Subscribers