SEARCH
NEW RPMS
DIRECTORIES
ABOUT
FAQ
VARIOUS
BLOG

 
 
Changelog for libidn11-32bit-1.34-lp152.3.6.x86_64.rpm :

* Sat Mar 31 2018 astiegerAATTsuse.com- libidn 1.34 (bsc#1087709):
* libidn: Fix integer overflow in combine_hangul()
* libidn: Fix integer overflow in punycode decoder drop previously patched libidn-CVE-2017-14062.patch
* libidn: Fix performance issue in idna_to_unicode_internal()
* libidn: Fix performance issue in stringprep functions.
* libidn: Fix NULL pointer dereference in g_utf8_normalize()
* libidn: Fix NULL pointer dereference in stringprep_ucs4_nfkc_normalize()
* libidn: Increase performance of stringprep functions
* testing: Add OSS-fuzz integration and regression testing
* build: Update gnulib files
* build: Modernize GTK-Doc build
* build: Fix parallel builds
* build: Add configure flag --disable-doc
* build: Add configure flag --enable-ubsan (enable UB Sanitizer)
* build: Add configure flag --enable-asan (enable Address Sanitizer)
* build: Fix compiler warnings
* build: Fix build for gcc-7 drop reviously patched libidn-gcc7-part1.patch
* i18n: Added Swedish translation- update upstream signing key from website
* Mon Mar 26 2018 jengelhAATTinai.de- Update summaries. Remove ineffective --with-pic.
* Mon Mar 26 2018 tchvatalAATTsuse.com- Add patch to fix bsc#1056450 CVE-2017-14062:
* libidn-CVE-2017-14062.patch
* Thu Feb 22 2018 fvogtAATTsuse.com- Use %license (boo#1082318)
* Tue Apr 04 2017 tchvatalAATTsuse.com- Add patches to build with gcc7:
* libidn-gcc7-part1.patch
* Wed Jul 20 2016 astiegerAATTsuse.com- libidn 1.33:
* bnc#990189 CVE-2015-8948 CVE-2016-6262
* bnc#990190 CVE-2016-6261
* bnc#990191 CVE-2016-6263
* libidn: Fix out-of-bounds stack read in idna_to_ascii_4i.
* idn: Solve out-of-bounds-read when reading one zero byte as input.
* libidn: stringprep_utf8_nfkc_normalize reject invalid UTF-8.
* Thu Aug 13 2015 mpluskalAATTsuse.com- Update to 1.32
* libidn: Fix crash in idna_to_unicode_8z8z and idna_to_unicode_8zlz. This problem was introduced in 1.31.
* API and ABI is backwards compatible with the previous version.- Update gpg keyring
* Thu Jul 09 2015 tchvatalAATTsuse.com- Add Apache-2.0 license to the license line. Under this is the java code, but we don\'t build it -> just the sources license
* Thu Jul 09 2015 tchvatalAATTsuse.com- Version bump to 1.31:
* Fixes bnc#923241 CVE-2015-2059 out-of-bounds read with stringprep on invalid UTF-8
* Few other triv changes
* Fri Mar 13 2015 tchvatalAATTsuse.com- Version bump to 1.30:
* punycode.{c,h} files were reimported- Cleanup with spec-cleaner
* Mon Oct 20 2014 iAATTmarguerite.su- update version 1.29:
* libidn: Mark internal variable \"g_utf8_skip\" as static.
* idn: Flush stdout to simplify for tools that buffer too heavily.
* i18n: Added Brazilian Portuguese translation.
* Update gnulib files.
* API and ABI is backwards compatible with the previous version.
 
ICM