Changelog for
libid3tag0-0.16.3-1.2.x86_64.rpm :
* Sat Nov 11 2023 Dirk Müller
- update to 0.16.3:
* new upstream location
* Define a separate library soversion, which is set to 0 to preserve ABI compatibility.
* Mon May 09 2022 Christophe Giboudeaux - Update to 0.16.2
* Fix null pointer dereference in id3_ucs4_length (boo#1081962, CVE-2017-11550)- Drop id3_ucs4_length-sanity-check.patch. Merged upstream.
* Fri Apr 08 2022 Manfred Hollstein - Add id3_ucs4_length-sanity-check.patch as Patch0. The patch helps to avoid a segfault in programs using this library, such as minidlna and potentially others; for details see and
* Thu Dec 09 2021 Ferdinand Thiessen - Update to 0.16.1 from maintained fork by the Tenacity Audio Editor
* Merge various outstanding patches
* Upstream pkg-config file
* Use cmake for build and install cmake files- Drop merged fixes
* fix-build-with-gperf-3.1.diff
* libid3tag-0.15.1b-mb.diff
* libid3tag-automake-fix.dif
* libid3tag-gperf.dif
* libid3tag-noweak.dif
* libid3tag-optflags.patch
* libid3tag-unknown-encoding.patch
* libid3tag-utf16.patch
* libid3tag-visibility.patch
* Wed Feb 21 2018 kbabiochAATTsuse.com- Added libid3tag-utf16.patch: Fixed id3_utf16_deserialize() in utf16.c, which previously misparsed ID3v2 tags encoded in UTF-16 with an odd number of bytes, triggering an endless loop allocating memory until OOM leading to DoS. (CVE-2004-2779 bsc#1081959 CVE-2017-11551 bsc#1081961)- Added libid3tag-unknown-encoding.patch: Fixed the handling of unknown encodings when parsing ID3 tags. (CVE-2017-11550 bsc#1081962 CVE-2008-2109 bsc#387731)- Removed libid3tag-0.15.1b-fix_overflow.patch, since it is handled differently by libid3tag-utf16.patch already.
* Wed Oct 11 2017 lnusselAATTsuse.de- dont BuildRequire zypper to avoid unecessary dependency chain. Check for %suse_version instead.
* Thu May 11 2017 alarrosaAATTsuse.com- Add BuildRequires: zypper and use it to check for gperf version so the package builds with all versions of gperf (boo#1027205)
* Wed May 10 2017 alarrosaAATTsuse.com- Add fix-build-with-gperf-3.1.diff to fix build with gperf 3.1 which now uses size_t instead of unsigned int for the len parameter of the hash/lookup function (boo#1027205)
* Tue Jun 16 2015 mpluskalAATTsuse.com- Use url for source- Add baselibs.conf as source- Cleanup spec file with spec-cleaner
* Fri Nov 23 2012 jengelhAATTinai.de- Remove redundant tags/sections from specfile- Parallel build with %_smp_mflags- Employ shared library naming- Have makeinstall succeed on non-SUSE