summary |
shortlog | log |
commit |
commitdiff |
tree
first ⋅ prev ⋅ next
Raspbian automatic forward porter [Sat, 1 Feb 2025 23:27:50 +0000 (23:27 +0000)]
Merge version 6.7.2-7+rpi1 and 6.7.2-8 to produce 6.7.2-8+rpi1
Patrick Franz [Wed, 22 Jan 2025 21:34:08 +0000 (22:34 +0100)]
Merge qt6-connectivity (6.7.2-8) import into refs/heads/workingbranch
Ivan Solovev [Thu, 2 Jan 2025 15:48:49 +0000 (16:48 +0100)]
[PATCH] QLowEnergyControllerPrivateBluez: guard against malformed replies
The QLowEnergyControllerPrivateBluez::l2cpReadyRead() slot reads the
data from a Bluetooth L2CAP socket and then tries to process it
according to ATT protocol specs.
However, the code was missing length and sanity checks at some
codepaths in processUnsolicitedReply() and processReply() helper
methods, simply relying on the data to be in the proper format.
This patch adds some minimal checks to make sure that we do not read
past the end of the received array and do not divide by zero.
This problem was originally pointed out by Marc Mutz in an unrelated
patch.
Pick-to: 6.5 5.15
Change-Id: I8dcfe031f70ad61fa3d87dc9d771c3fabc6d0edc
Reviewed-by: Alex Blasche <alexander.blasche@qt.io>
Reviewed-by: Juha Vuolle <juha.vuolle@qt.io>
(cherry picked from commit
aecbd657c841a2a8c74631ceac96b8ff1f03ab5c)
Reviewed-by: Qt Cherry-pick Bot <cherrypick_bot@qt-project.org>
(cherry picked from commit
53e991671f725c136e9aa824c59ec13934c63fb4)
Gbp-Pq: Name CVE-2025-23050.diff
Patrick Franz [Wed, 22 Jan 2025 21:34:08 +0000 (22:34 +0100)]
qt6-connectivity (6.7.2-8) unstable; urgency=medium
[ Patrick Franz ]
* Backport patch to fix CVE-2025-23050.
[dgit import unpatched qt6-connectivity 6.7.2-8]
Patrick Franz [Wed, 22 Jan 2025 21:34:08 +0000 (22:34 +0100)]
Import qt6-connectivity_6.7.2-8.debian.tar.xz
[dgit import tarball qt6-connectivity 6.7.2-8 qt6-connectivity_6.7.2-8.debian.tar.xz]
Raspbian automatic forward porter [Wed, 1 Jan 2025 11:50:17 +0000 (11:50 +0000)]
Merge version 6.7.2-5+rpi1 and 6.7.2-7 to produce 6.7.2-7+rpi1
Patrick Franz [Sun, 22 Dec 2024 09:44:49 +0000 (10:44 +0100)]
Merge qt6-connectivity (6.7.2-7) import into refs/heads/workingbranch
Patrick Franz [Sun, 22 Dec 2024 09:44:49 +0000 (10:44 +0100)]
qt6-connectivity (6.7.2-7) unstable; urgency=medium
* Upload to unstable.
[dgit import unpatched qt6-connectivity 6.7.2-7]
Patrick Franz [Sun, 22 Dec 2024 09:44:49 +0000 (10:44 +0100)]
Import qt6-connectivity_6.7.2-7.debian.tar.xz
[dgit import tarball qt6-connectivity 6.7.2-7 qt6-connectivity_6.7.2-7.debian.tar.xz]
Raspbian automatic forward porter [Fri, 15 Nov 2024 21:32:41 +0000 (21:32 +0000)]
Merge version 6.6.2-2+rpi1 and 6.7.2-5 to produce 6.7.2-5+rpi1
Pino Toscano [Wed, 23 Oct 2024 17:38:32 +0000 (19:38 +0200)]
Merge qt6-connectivity (6.7.2-5) import into refs/heads/workingbranch
Pino Toscano [Wed, 23 Oct 2024 17:38:32 +0000 (19:38 +0200)]
qt6-connectivity (6.7.2-5) unstable; urgency=medium
* Team upload.
* Mark a symbol as 32bit-specific.
[dgit import unpatched qt6-connectivity 6.7.2-5]
Pino Toscano [Wed, 23 Oct 2024 17:38:32 +0000 (19:38 +0200)]
Import qt6-connectivity_6.7.2-5.debian.tar.xz
[dgit import tarball qt6-connectivity 6.7.2-5 qt6-connectivity_6.7.2-5.debian.tar.xz]
Patrick Franz [Sat, 31 Aug 2024 22:24:23 +0000 (00:24 +0200)]
Import qt6-connectivity_6.7.2.orig.tar.xz
[dgit import orig qt6-connectivity_6.7.2.orig.tar.xz]
Peter Michael Green [Fri, 21 Jun 2024 23:50:53 +0000 (23:50 +0000)]
Merge qt6-connectivity (6.6.2-2+rpi1) import into refs/heads/workingbranch
Peter Michael Green [Fri, 21 Jun 2024 23:50:53 +0000 (23:50 +0000)]
qt6-connectivity (6.6.2-2+rpi1) trixie-staging; urgency=medium
* Update symbols file for raspbian.
[dgit import unpatched qt6-connectivity 6.6.2-2+rpi1]
Peter Michael Green [Fri, 21 Jun 2024 23:50:53 +0000 (23:50 +0000)]
Import qt6-connectivity_6.6.2-2+rpi1.debian.tar.xz
[dgit import tarball qt6-connectivity 6.6.2-2+rpi1 qt6-connectivity_6.6.2-2+rpi1.debian.tar.xz]
Patrick Franz [Thu, 6 Jun 2024 16:17:38 +0000 (18:17 +0200)]
Merge qt6-connectivity (6.6.2-2) import into refs/heads/workingbranch
Patrick Franz [Thu, 6 Jun 2024 16:17:38 +0000 (18:17 +0200)]
qt6-connectivity (6.6.2-2) unstable; urgency=medium
[ Patrick Franz ]
* Upload to unstable.
[dgit import unpatched qt6-connectivity 6.6.2-2]
Patrick Franz [Thu, 6 Jun 2024 16:17:38 +0000 (18:17 +0200)]
Import qt6-connectivity_6.6.2-2.debian.tar.xz
[dgit import tarball qt6-connectivity 6.6.2-2 qt6-connectivity_6.6.2-2.debian.tar.xz]
Patrick Franz [Sat, 17 Feb 2024 09:21:51 +0000 (10:21 +0100)]
Import qt6-connectivity_6.6.2.orig.tar.xz
[dgit import orig qt6-connectivity_6.6.2.orig.tar.xz]
Patrick Franz [Sun, 22 Jan 2023 10:20:28 +0000 (11:20 +0100)]
qt6-connectivity (6.4.2-1) unstable; urgency=medium
[ Patrick Franz ]
* Switch to the official 6.4.2 tarball, the tarball is the same.
* Enable link time optimization.
[dgit import unpatched qt6-connectivity 6.4.2-1]
Patrick Franz [Sun, 22 Jan 2023 10:20:28 +0000 (11:20 +0100)]
Import qt6-connectivity_6.4.2.orig.tar.xz
[dgit import orig qt6-connectivity_6.4.2.orig.tar.xz]
Patrick Franz [Sun, 22 Jan 2023 10:20:28 +0000 (11:20 +0100)]
Import qt6-connectivity_6.4.2-1.debian.tar.xz
[dgit import tarball qt6-connectivity 6.4.2-1 qt6-connectivity_6.4.2-1.debian.tar.xz]