summary |
shortlog | log |
commit |
commitdiff |
tree
first ⋅ prev ⋅ next
Raspbian forward pporter [Thu, 26 Oct 2017 13:47:41 +0000 (14:47 +0100)]
Merge version 6:0.8.20-0+deb7u1+rpi1 and 6:0.8.21-0+deb7u1 to produce 6:0.8.21-0+deb7u1+rpi1
Hugo Lefeuvre [Mon, 16 Oct 2017 15:22:05 +0000 (16:22 +0100)]
Merge libav (6:0.8.21-0+deb7u1) import into refs/heads/workingbranch
Debian Multimedia Maintainers [Mon, 16 Oct 2017 15:22:05 +0000 (16:22 +0100)]
disable-configuration-warnings
Gbp-Pq: Name 03-disable-configuration-warnings.patch
Reinhard Tartler [Mon, 28 Jun 2010 20:43:55 +0000 (22:43 +0200)]
Tweak doxygen config
exclude some directories we use for packaging from doxygen documentation
Gbp-Pq: Name 01-Tweak-doxygen-config.patch
Hugo Lefeuvre [Mon, 16 Oct 2017 15:22:05 +0000 (16:22 +0100)]
libav (6:0.8.21-0+deb7u1) wheezy-security; urgency=high
* Non-maintainer upload by the LTS Team.
* New upstream release fixing multiple security issues.
- CVE-2017-7208: buffer over-read in the decode_residual function
in libavcodec.
- CVE-2017-7862: out-of-bounds write caused by a heap-based buffer
overflow related to the decode_frame function in
libavcodec/pictordec.c.
- CVE-2017-9992: Heap-based buffer overflow in the decode_dds1
function in libavcodec/dfa.c.
- CVE-2015-8365: out-of-bounds array access in the smka_decode_frame
function in libavcodec/smacker.c.
[dgit import unpatched libav 6:0.8.21-0+deb7u1]
Hugo Lefeuvre [Mon, 16 Oct 2017 15:22:05 +0000 (16:22 +0100)]
Import libav_0.8.21.orig.tar.xz
[dgit import orig libav_0.8.21.orig.tar.xz]
Hugo Lefeuvre [Mon, 16 Oct 2017 15:22:05 +0000 (16:22 +0100)]
Import libav_0.8.21-0+deb7u1.debian.tar.gz
[dgit import tarball libav 6:0.8.21-0+deb7u1 libav_0.8.21-0+deb7u1.debian.tar.gz]
Raspbian forward pporter [Thu, 23 Feb 2017 22:28:30 +0000 (22:28 +0000)]
Merge version 6:0.8.17-2+rpi1+deb7u2 and 6:0.8.20-0+deb7u1 to produce 6:0.8.20-0+deb7u1+rpi1
Hugo Lefeuvre [Mon, 16 Jan 2017 21:09:59 +0000 (21:09 +0000)]
Merge libav (6:0.8.20-0+deb7u1) import into refs/heads/workingbranch
Debian Multimedia Maintainers [Mon, 16 Jan 2017 21:09:59 +0000 (21:09 +0000)]
disable-configuration-warnings
Gbp-Pq: Name 03-disable-configuration-warnings.patch
Reinhard Tartler [Mon, 28 Jun 2010 20:43:55 +0000 (22:43 +0200)]
Tweak doxygen config
exclude some directories we use for packaging from doxygen documentation
Gbp-Pq: Name 01-Tweak-doxygen-config.patch
Hugo Lefeuvre [Mon, 16 Jan 2017 21:09:59 +0000 (21:09 +0000)]
libav (6:0.8.20-0+deb7u1) wheezy-security; urgency=high
* Non-maintainer upload by the LTS Team.
* New upstream release fixing multiple security issues.
- CVE-2016-9820: mpegvideo: Fix undefined negative shifts in
mpeg_motion_internal.
- CVE-2016-9819: mpegvideo: Fix undefined negative shifts in
ff_init_block_index.
- mpeg12dec: move setting first_field to mpeg_field_start().
- CVE-2016-9822: mpeg12dec: avoid signed overflow in bitrate
calculation.
- CVE-2016-9821: mpegvideo_parser: avoid signed overflow in bitrate
calculation.
- h264: Use the right H264Context for struct member comparison.
[dgit import unpatched libav 6:0.8.20-0+deb7u1]
Hugo Lefeuvre [Mon, 16 Jan 2017 21:09:59 +0000 (21:09 +0000)]
Import libav_0.8.20.orig.tar.xz
[dgit import orig libav_0.8.20.orig.tar.xz]
Hugo Lefeuvre [Mon, 16 Jan 2017 21:09:59 +0000 (21:09 +0000)]
Import libav_0.8.20-0+deb7u1.debian.tar.gz
[dgit import tarball libav 6:0.8.20-0+deb7u1 libav_0.8.20-0+deb7u1.debian.tar.gz]
Raspbian Automatic git importer [Thu, 22 Dec 2016 05:33:43 +0000 (05:33 +0000)]
Merge libav (6:0.8.18-0+deb7u1) import into refs/heads/workingbranch
Raspbian Automatic git importer [Thu, 22 Dec 2016 05:33:25 +0000 (05:33 +0000)]
Merge libav (6:0.8.17-2+rpi1+deb7u2) import into refs/heads/workingbranch
Raspbian Automatic git importer [Thu, 22 Dec 2016 05:33:24 +0000 (05:33 +0000)]
Merge libav (6:0.8.17-2+deb7u2) import into refs/heads/workingbranch
Debian Multimedia Maintainers [Mon, 3 Oct 2016 15:36:42 +0000 (15:36 +0000)]
CVE-2016-3062
Gbp-Pq: Name CVE-2016-3062.patch
Debian Multimedia Maintainers [Mon, 3 Oct 2016 15:36:42 +0000 (15:36 +0000)]
CVE-2016-2326
Gbp-Pq: Name CVE-2016-2326.patch
Debian Multimedia Maintainers [Mon, 3 Oct 2016 15:36:42 +0000 (15:36 +0000)]
disable-configuration-warnings
Gbp-Pq: Name 03-disable-configuration-warnings.patch
Reinhard Tartler [Mon, 28 Jun 2010 20:43:55 +0000 (22:43 +0200)]
Tweak doxygen config
exclude some directories we use for packaging from doxygen documentation
Gbp-Pq: Name 01-Tweak-doxygen-config.patch
Hugo Lefeuvre [Mon, 3 Oct 2016 15:36:42 +0000 (15:36 +0000)]
libav (6:0.8.18-0+deb7u1) wheezy-security; urgency=high
* Non-maintainer upload by the LTS Team.
* New upstream release fixing multiple security issues.
- CVE-2016-7393: Fix stack buffer overflow errors detected by address
sanitizer in various fate tests.
- CVE-2015-1872: Check number of components for JPEG-LS.
- CVE-2015-5479: The ff_h263_decode_mba function in libavcodec/ituh263dec.c
in earlier versions allows remote attackers to cause a denial of service
(divide-by-zero error and application crash) via a file with crafted
dimensions.
* Remove debian/patches/CVE-2014-9676.patch: Integrated in the new upstream
release.
[dgit import unpatched libav 6:0.8.18-0+deb7u1]
Hugo Lefeuvre [Mon, 3 Oct 2016 15:36:42 +0000 (15:36 +0000)]
Import libav_0.8.18.orig.tar.gz
[dgit import orig libav_0.8.18.orig.tar.gz]
Hugo Lefeuvre [Mon, 3 Oct 2016 15:36:42 +0000 (15:36 +0000)]
Import libav_0.8.18-0+deb7u1.debian.tar.gz
[dgit import tarball libav 6:0.8.18-0+deb7u1 libav_0.8.18-0+deb7u1.debian.tar.gz]
Debian Multimedia Maintainers [Fri, 17 Jun 2016 23:37:24 +0000 (23:37 +0000)]
CVE-2016-3062
Gbp-Pq: Name CVE-2016-3062.patch
Debian Multimedia Maintainers [Fri, 17 Jun 2016 23:37:24 +0000 (23:37 +0000)]
CVE-2014-9676
Gbp-Pq: Name CVE-2014-9676.patch
Debian Multimedia Maintainers [Fri, 17 Jun 2016 23:37:24 +0000 (23:37 +0000)]
CVE-2016-2326
Gbp-Pq: Name CVE-2016-2326.patch
Debian Multimedia Maintainers [Fri, 17 Jun 2016 23:37:24 +0000 (23:37 +0000)]
disable-configuration-warnings
Gbp-Pq: Name 03-disable-configuration-warnings.patch
Reinhard Tartler [Mon, 28 Jun 2010 20:43:55 +0000 (22:43 +0200)]
Tweak doxygen config
exclude some directories we use for packaging from doxygen documentation
Gbp-Pq: Name 01-Tweak-doxygen-config.patch
Raspbian forward porter [Fri, 17 Jun 2016 23:37:24 +0000 (23:37 +0000)]
libav (6:0.8.17-2+rpi1+deb7u2) wheezy-staging; urgency=medium
[changes brought forward from 6:0.8.17-1+rpi1 by Peter Michael Green <plugwash@raspbian.org> at Wed, 25 Mar 2015 00:22:51 +0000]
* Disable build of neon flavour
[dgit import unpatched libav 6:0.8.17-2+rpi1+deb7u2]
Raspbian forward porter [Fri, 17 Jun 2016 23:37:24 +0000 (23:37 +0000)]
Import libav_0.8.17-2+rpi1+deb7u2.debian.tar.gz
[dgit import tarball libav 6:0.8.17-2+rpi1+deb7u2 libav_0.8.17-2+rpi1+deb7u2.debian.tar.gz]
Debian Multimedia Maintainers [Tue, 14 Jun 2016 12:13:25 +0000 (12:13 +0000)]
CVE-2016-3062
Gbp-Pq: Name CVE-2016-3062.patch
Debian Multimedia Maintainers [Tue, 14 Jun 2016 12:13:25 +0000 (12:13 +0000)]
CVE-2014-9676
Gbp-Pq: Name CVE-2014-9676.patch
Debian Multimedia Maintainers [Tue, 14 Jun 2016 12:13:25 +0000 (12:13 +0000)]
CVE-2016-2326
Gbp-Pq: Name CVE-2016-2326.patch
Debian Multimedia Maintainers [Tue, 14 Jun 2016 12:13:25 +0000 (12:13 +0000)]
disable-configuration-warnings
Gbp-Pq: Name 03-disable-configuration-warnings.patch
Reinhard Tartler [Mon, 28 Jun 2010 20:43:55 +0000 (22:43 +0200)]
Tweak doxygen config
exclude some directories we use for packaging from doxygen documentation
Gbp-Pq: Name 01-Tweak-doxygen-config.patch
Chris Lamb [Tue, 14 Jun 2016 12:13:25 +0000 (12:13 +0000)]
libav (6:0.8.17-2+deb7u2) wheezy-security; urgency=high
* CVE-2016-3062: Fix a memory corruption issue when parsing .mp4
files, which could lead to crash or possibly execute arbitrary code.
[dgit import unpatched libav 6:0.8.17-2+deb7u2]
Chris Lamb [Tue, 14 Jun 2016 12:13:25 +0000 (12:13 +0000)]
Import libav_0.8.17-2+deb7u2.debian.tar.gz
[dgit import tarball libav 6:0.8.17-2+deb7u2 libav_0.8.17-2+deb7u2.debian.tar.gz]
Debian Multimedia Maintainers [Wed, 2 Mar 2016 22:22:59 +0000 (22:22 +0000)]
CVE-2016-2326
Gbp-Pq: Name CVE-2016-2326.patch
Debian Multimedia Maintainers [Wed, 2 Mar 2016 22:22:59 +0000 (22:22 +0000)]
disable-configuration-warnings
Gbp-Pq: Name 03-disable-configuration-warnings.patch
Reinhard Tartler [Mon, 28 Jun 2010 20:43:55 +0000 (22:43 +0200)]
Tweak doxygen config
exclude some directories we use for packaging from doxygen documentation
Gbp-Pq: Name 01-Tweak-doxygen-config.patch
Sebastian Ramacher [Wed, 2 Mar 2016 22:22:59 +0000 (22:22 +0000)]
libav (6:0.8.17-2) wheezy-security; urgency=medium
* debian/confflags: Build with --disable-protocol=concat as this is the only
real fix for CVE-2016-1897 and CVE-2016-1898.
* debian/patches/CVE-2016-2326.patch: avformat/asfenc: Check pts
(CVE-2016-2326).
[dgit import unpatched libav 6:0.8.17-2]
Sebastian Ramacher [Wed, 2 Mar 2016 22:22:59 +0000 (22:22 +0000)]
Import libav_0.8.17-2.debian.tar.gz
[dgit import tarball libav 6:0.8.17-2 libav_0.8.17-2.debian.tar.gz]
Sebastian Ramacher [Sun, 15 Mar 2015 04:02:09 +0000 (04:02 +0000)]
Import libav_0.8.17.orig.tar.gz
[dgit import orig libav_0.8.17.orig.tar.gz]