|
|
|
|
Changelog for libtiff-3.9.4-21.el6_8.x86_64.rpm :
* Fri Jan 20 2017 Nikola Forró - 3.9.4-21- Fix patch for CVE-2016-5652- Related: #1412078 * Wed Jan 18 2017 Nikola Forró - 3.9.4-20- Fix CWE-476 defect found by covscan- Related: #1412078 * Fri Jan 13 2017 Nikola Forró - 3.9.4-19- Add patches for CVEs:- CVE-2016-9533 CVE-2016-9534 CVE-2016-9535- CVE-2016-9536 CVE-2016-9537 CVE-2016-9540- CVE-2016-5652- Resolves: #1412078 * Wed Jul 20 2016 Nikola Forró - 3.9.4-18- Update patch for CVE-2014-8127- Related: #1335099 * Wed Jul 20 2016 Nikola Forró - 3.9.4-17- Fix patches for CVE-2016-3990 and CVE-2016-5320- Related: #1335099 * Wed Jul 20 2016 Nikola Forró - 3.9.4-16- Add patches for CVEs:- CVE-2016-3632 CVE-2016-3945 CVE-2016-3990- CVE-2016-3991 CVE-2016-5320- Related: #1335099 * Wed Jul 20 2016 Nikola Forró - 3.9.4-15- Update patch for CVE-2014-8129- Related: #1335099 * Tue Jul 19 2016 Nikola Forró - 3.9.4-14- Merge previously released fixes for CVEs:- CVE-2013-1960 CVE-2013-1961 CVE-2013-4231- CVE-2013-4232 CVE-2013-4243 CVE-2013-4244- Resolves: #1335099 * Mon Apr 25 2016 Petr Hracek - 3.9.4-13- Patch typos in CVE-2014-8127- Related: #1299919 * Mon Apr 25 2016 Petr Hracek - 3.9.4-12- Fix CVE-2014-8127 and CVE-2015-8668 patches- Related: #1299919 * Wed Mar 09 2016 Petr Hracek - 3.9.4-11- Fixed patches on preview CVEs- Related: #1299919 * Tue Feb 16 2016 Petr Hracek - 3.9.4-10- This resolves several CVEs- CVE-2014-8127, CVE-2014-8129, CVE-2014-8130- CVE-2014-9330, CVE-2014-9655, CVE-2015-8781- CVE-2015-8784, CVE-2015-1547, CVE-2015-8683- CVE-2015-8665, CVE-2015-7554, CVE-2015-8668- Resolves: #1299919 * Thu Dec 13 2012 Tom Lane 3.9.4-9- Still more fixes to make test case for CVE-2012-5581 work on all platformsResolves: #885311 * Tue Dec 11 2012 Tom Lane 3.9.4-8- Fix incomplete patch for CVE-2012-3401- Add libtiff-tiffinfo-exif.patch so that our test case for CVE-2012-5581 works with pre-4.0.2 libtiffResolves: #885311 * Mon Dec 10 2012 Tom Lane 3.9.4-7- Add fixes for CVE-2012-3401, CVE-2012-4447, CVE-2012-4564, CVE-2012-5581Resolves: #885311 * Wed Jun 27 2012 Tom Lane 3.9.4-6- Add fixes for CVE-2012-2088, CVE-2012-2113Resolves: #835749 * Mon Apr 02 2012 Tom Lane 3.9.4-5- Add fix for CVE-2012-1173Resolves: #CVE-2012-1173 * Wed Apr 13 2011 Tom Lane 3.9.4-4- Add fix for CVE-2009-5022Resolves: #696144 * Fri Mar 18 2011 Tom Lane 3.9.4-3- Fix incorrect fix for CVE-2011-0192Resolves: #688830- Add fix for CVE-2011-1167Resolves: #688743 * Wed Feb 23 2011 Tom Lane 3.9.4-2- Add fix for CVE-2011-0192Resolves: #679299 * Mon Jun 28 2010 Tom Lane 3.9.4-1- Update to libtiff 3.9.4, for numerous bug fixes including fixes for CVE-2010-1411, CVE-2010-2065, CVE-2010-2067, CVE-2010-2233Resolves: #606708, #588784, #589034, #603024- Add fixes for multiple SIGSEGV problemsResolves: #603081, #603699, #603703 * Tue Jan 12 2010 Tom Lane 3.9.2-3- Sync with F-12, including:- Update to libtiff 3.9.2; stop carrying a lot of old patches- Apply Warmerdam\'s partial fix for bug #460322 ... better than nothing.- Use build system\'s libtool instead of what package contains; among other cleanup this gets rid of unwanted rpath specs in executables- add sparc/sparc64 to multilib header support- Apply Adam Goode\'s fix for Warmerdam\'s fixResolves: #552360Resolves: #533353- Add some defenses to prevent tiffcmp from crashing on downsampled JPEG images; this isn\'t enough to make it really work correctly though * Mon Nov 30 2009 Dennis Gregorovic - 3.8.2-15.1- Rebuilt for RHEL 6 * Sat Jul 25 2009 Fedora Release Engineering - 3.8.2-15- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild * Mon Jul 13 2009 Tom Lane 3.8.2-14- Fix buffer overrun risks caused by unchecked integer overflow (CVE-2009-2347)Related: #510041 * Wed Jul 01 2009 Tom Lane 3.8.2-13- Fix some more LZW decoding vulnerabilities (CVE-2009-2285)Related: #507465- Update upstream URL * Wed Feb 25 2009 Fedora Release Engineering - 3.8.2-12- Rebuilt for https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild * Tue Aug 26 2008 Tom Lane 3.8.2-11- Fix LZW decoding vulnerabilities (CVE-2008-2327)Related: #458674- Use -fno-strict-aliasing per rpmdiff recommendation * Tue Feb 19 2008 Fedora Release Engineering - 3.8.2-10- Autorebuild for GCC 4.3 * Wed Aug 22 2007 Tom Lane 3.8.2-9- Update License tag- Rebuild to fix Fedora toolchain issues * Thu Jul 19 2007 Tom Lane 3.8.2-8- Restore static library to distribution, in a separate -static subpackageResolves: #219905- Don\'t apply multilib header hack to unrecognized architecturesResolves: #233091- Remove documentation for programs we don\'t shipResolves: #205079Related: #185145 * Tue Jan 16 2007 Tom Lane 3.8.2-7- Remove Makefiles from the shipped /usr/share/doc/html directoriesResolves: bz #222729 * Tue Sep 05 2006 Jindrich Novy - 3.8.2-6- fix CVE-2006-2193, tiff2pdf buffer overflow (#194362)- fix typo in man page for tiffset (#186297)- use %{?dist} * Mon Jul 24 2006 Matthias Clasen - Fix several vulnerabilities (CVE-2006-3460 CVE-2006-3461 CVE-2006-3462 CVE-2006-3463 CVE-2006-3464 CVE-2006-3465) * Wed Jul 12 2006 Jesse Keating - 3.8.2-4.1- rebuild * Fri Jun 02 2006 Matthias Clasen - 3.8.2-3- Fix multilib conflict * Thu May 25 2006 Matthias Clasen - 3.8.2-3- Fix overflows in tiffsplit * Wed Apr 26 2006 Matthias Clasen - 3.8.2-2- Drop tiffgt to get rid of the libGL dependency (#190768) * Wed Apr 26 2006 Matthias Clasen - 3.8.2-1- Update to 3.8.2 * Fri Feb 10 2006 Jesse Keating - 3.7.4-3.2.1- bump again for double-long bug on ppc(64) * Tue Feb 07 2006 Jesse Keating - 3.7.4-3.2- rebuilt for new gcc4.1 snapshot and glibc changes * Fri Dec 09 2005 Jesse Keating - rebuilt * Wed Nov 16 2005 Matthias Clasen 3.7.4-3- Don\'t ship static libs * Fri Nov 11 2005 Matthias Saou 3.7.4-2- Remove useless explicit dependencies.- Minor spec file cleanups.- Move make check to %check.- Add _smp_mflags. * Thu Sep 29 2005 Matthias Clasen - 3.7.4-1- Update to 3.7.4- Drop upstreamed patches * Wed Jun 29 2005 Matthias Clasen - 3.7.2-1- Update to 3.7.2- Drop upstreamed patches * Fri May 06 2005 Matthias Clasen - 3.7.1-6- Fix a stack overflow * Wed Mar 02 2005 Matthias Clasen - 3.7.1-5- Don\'t use mktemp * Wed Mar 02 2005 Matthias Clasen - 3.7.1-4- Rebuild with gcc4 * Wed Jan 05 2005 Matthias Clasen - 3.7.1-3- Drop the largefile patch again- Fix a problem with the handling of alpha channels- Fix an integer overflow in tiffdump (#143576) * Wed Dec 22 2004 Matthias Clasen - 3.7.1-2- Readd the largefile patch (#143560) * Wed Dec 22 2004 Matthias Clasen - 3.7.1-1- Upgrade to 3.7.1- Remove upstreamed patches- Remove specfile cruft- make check * Thu Oct 14 2004 Matthias Clasen 3.6.1-7- fix some integer and buffer overflows (#134853, #134848) * Tue Oct 12 2004 Matthias Clasen 3.6.1-6- fix http://bugzilla.remotesensing.org/show_bug.cgi?id=483 * Mon Sep 27 2004 Rik van Riel 3.6.1-4- compile using RPM_OPT_FLAGS (bz #133650) * Tue Jun 15 2004 Elliot Lee - rebuilt * Thu May 20 2004 Matthias Clasen 3.6.1-2- Fix and use the makeflags patch * Wed May 19 2004 Matthias Clasen 3.6.1-1- Upgrade to 3.6.1- Adjust patches- Don\'t install tiffgt man page (#104864) * Tue Mar 02 2004 Elliot Lee - rebuilt * Sat Feb 21 2004 Florian La Roche - really add symlink to shared lib by running ldconfig at compile time * Fri Feb 13 2004 Elliot Lee - rebuilt * Thu Oct 09 2003 Florian La Roche - link shared lib against -lm (Jakub Jelinek) * Thu Sep 25 2003 Jeremy Katz 3.5.7-13- rebuild to fix gzipped file md5sum (#91281) * Wed Jun 04 2003 Elliot Lee - rebuilt * Tue Feb 11 2003 Phil Knirsch 3.5.7-11- Fixed rebuild problems. * Tue Feb 04 2003 Florian La Roche - add symlink to shared lib * Wed Jan 22 2003 Tim Powers - rebuilt * Thu Dec 12 2002 Tim Powers 3.5.7-8- rebuild on all arches * Mon Aug 19 2002 Phil Knirsch 3.5.7-7- Added LFS support (#71593) * Tue Jun 25 2002 Phil Knirsch 3.5.7-6- Fixed wrong exit code of tiffcp app (#67240) * Fri Jun 21 2002 Tim Powers - automated rebuild * Thu May 23 2002 Tim Powers - automated rebuild * Wed May 15 2002 Phil Knirsch - Fixed segfault in fax2tiff tool (#64708). * Mon Feb 25 2002 Phil Knirsch - Fixed problem with newer bash versions setting CDPATH (#59741) * Tue Feb 19 2002 Phil Knirsch - Update to current release 3.5.7 * Wed Jan 09 2002 Tim Powers - automated rebuild * Tue Aug 28 2001 Phil Knirsch - Fixed ia64 problem with tiffinfo. Was general 64 bit arch problem where s390x and ia64 were missing (#52129). * Tue Jun 26 2001 Philipp Knirsch - Hopefully final symlink fix * Thu Jun 21 2001 Than Ngo - add missing libtiff symlink * Fri Mar 16 2001 Crutcher Dunnavant - killed tiff-to-ps.fpi filter * Wed Feb 28 2001 Philipp Knirsch - Fixed missing devel version dependancy. * Tue Dec 19 2000 Philipp Knirsch - rebuild * Mon Aug 07 2000 Crutcher Dunnavant - added a tiff-to-ps.fpi filter for printing * Thu Jul 13 2000 Prospector - automatic rebuild * Thu Jul 13 2000 Nalin Dahyabhai - apply Peter Skarpetis\'s fix for the 32-bit conversion * Mon Jul 03 2000 Nalin Dahyabhai - make man pages non-executable (#12811) * Mon Jun 12 2000 Nalin Dahyabhai - remove CVS repo info from data directories * Thu May 18 2000 Nalin Dahyabhai - fix build rooting- fix syntax error in configure script- move man pages to {_mandir} * Wed May 17 2000 Nalin Dahyabhai - rebuild for an errata release * Wed Mar 29 2000 Nalin Dahyabhai - update to 3.5.5, which integrates our fax2ps fixes and the glibc fix * Tue Mar 28 2000 Nalin Dahyabhai - fix fax2ps swapping height and width in the bounding box * Mon Mar 27 2000 Nalin Dahyabhai - move man pages from devel package to the regular one- integrate Frank Warmerdam\'s fixed .fax handling code (keep until next release of libtiff)- fix fax2ps breakage (bug #8345) * Sat Feb 05 2000 Nalin Dahyabhai - set MANDIR=man3 to make multifunction man pages friendlier * Mon Jan 31 2000 Nalin Dahyabhai - fix URLs * Fri Jan 28 2000 Nalin Dahyabhai - link shared library against libjpeg and libz * Tue Jan 18 2000 Nalin Dahyabhai - enable zip and jpeg codecs- change defattr in normal package to 0755- add defattr to -devel package * Wed Dec 22 1999 Bill Nottingham - update to 3.5.4 * Sun Mar 21 1999 Cristian Gafton - auto rebuild in the new build environment (release 6) * Wed Jan 13 1999 Cristian Gafton - build for glibc 2.1 * Wed Jun 10 1998 Prospector System - translations modified for de * Wed Jun 10 1998 Michael Fulbright - rebuilt against fixed jpeg libs (libjpeg-6b) * Thu May 07 1998 Prospector System - translations modified for de, fr, tr * Mon Oct 13 1997 Donnie Barnes - new version to replace the one from libgr- patched for glibc- added shlib support
|
|
|