Changelog for
jhead-3.06.0.1-bp155.5.3.1.x86_64.rpm :
* Fri Feb 10 2023 pgajdosAATTsuse.com- added patches fix [bsc#1207150] https://github.com/Matthias-Wandel/jhead/commit/2a237d866581b3774ebe63d6c312e76459bd0866 + jhead-CVE-2022-41751-3.patch
* Tue Nov 08 2022 Jason Sikes
- Added jhead-CVE-2021-34055.patch
* Fix out of bounds write in ClearOrientation() due to unchecked error
* [bsc#1205167]
* CVE-2021-34055
* Thu Oct 27 2022 David Anes - security fix [bsc#1204409, CVE-2022-41751]
* arbitrary OS commands by placing them in a JPEG filename
* Added patch jhead-CVE-2022-41751-1.patch
* Added patch jhead-CVE-2022-41751-2.patch
* Mon Apr 19 2021 pgajdosAATTsuse.com- version update to 3.06.0.1
* lot of fuzztest fixes, e. g. CVE-2021-3496 [bsc#1184756]- deleted patches - CVE-2018-17088.patch (upstreamed)
* Fri Jan 22 2021 Wang Jun - Update to version 3.04
* Apply a whole bunch of patches from Debian.
* Spell check and fuzz test stuff from Debian, nothing useful to human users.
* Add option to set exif date from date from another file.
* Bug fixes relating to fuzz testing.
* Fix bug where thumbnail replacement DID NOT WORK.
* Fix bug when no orientation tag is present
* Fix bug of not clearing exif information when processing images with an without exif data in one invocation.
* Remove some unnecessary warnings with some types of GPS data
* Remove multiple copies of the same type of section when deleting section types
* Modify the patch CVE-2018-17088.patch because source code changed- Remove these patches because of including upstream code
* CVE-2018-6612.patch, CVE-2016-3822.patch, CVE-2018-16554.patch
* Wed Oct 24 2018 Marketa Calabkova - Renamed CVE-2018-16554.patch to CVE-2018-17088.patch, because it is in fact fix of boo#1108672- Buffer overflow fix (boo#1108480) CVE-2018-16554.patch
* Fri Sep 14 2018 sbrabecAATTsuse.com- Integer overflow fixes (boo#1108480, CVE-2016-3822, CVE-2018-16554, CVE-2016-3822.patch, CVE-2018-16554.patch.
* Mon Feb 05 2018 kbabiochAATTsuse.com- Added CVE-2018-6612.patch: Fix of a heap-based buffer over-read (boo#1079349 CVE-2018-6612)
* Mon Apr 27 2015 mpluskalAATTsuse.com- Update to version 3.00
* Make max comment size 16000
* Added \"-zt\" option to trim 32k of trailing zeroes from Nikon 1 J2 and J3 images.
* Add ability to reset invalid rotation tag (from Moultrie game cameras)- Use url for source- Cleanup spec file with spec-cleaner
* Sun Mar 10 2013 toganmAATTopensuse.org- Update to version 2.97
* Add feature to show quality of jpeg, (by Andy Spiegel)
* Fix crash on some corrupt files bug, clarify time adjustment syntax in help