jbig2dec (0.12-1) unstable; urgency=medium
* Licensing has changed to GNU Affero General Public License (AGPL).
Please ensure that all use complies with this new license.
-- Jonas Smedegaard <dr(a)jones.dk> Fri, 31 Jul 2015 11:45:03 +0200
This is the mail system at host nonagon.crans.org.
I'm sorry to have to inform you that your message could not
be delivered to one or more recipients. It's attached below.
For further assistance, please send mail to postmaster.
If you do so, please include this problem report. You can
delete your own text from the attached returned message.
The mail system
<monitoring(a)federez.net> (expanded from <root>): host
smtp.crans.org[138.231.136.39] said: 550 5.1.0 <root(a)nonagon.crans.org>:
Sender address rejected: User unknown in relay recipient table (in reply to
RCPT TO command)
apticron report [Fri, 24 Mar 2017 23:38:19 +0100]
========================================================================
apticron has detected that some packages need upgrading on:
quigon.federez.net
[ 160.228.155.65 ]
The following packages are currently pending an upgrade:
libjbig2dec0 0.13-4~deb8u1
========================================================================
Package Details:
Lecture des fichiers de modifications (« changelog »)...
--- Nouveautés pour jbig2dec (libjbig2dec0) ---
jbig2dec (0.12-1) unstable; urgency=medium
* Licensing has changed to GNU Affero General Public License (AGPL).
Please ensure that all use complies with this new license.
-- Jonas Smedegaard <dr(a)jones.dk> Fri, 31 Jul 2015 11:45:03 +0200
--- Modifications pour jbig2dec (libjbig2dec0) ---
jbig2dec (0.13-4~deb8u1) jessie-security; urgency=medium
* Non-maintainer upload by the Debian Security Team.
* Backport latest upstream release to Jessie.
* Fixes CVE-2016-9601 and many other unreported issues.
* Drop licensecheck from build-depends as it was part of devscripts
in the past (and we don't need such a check in stable/oldstable).
* Disable multiarch support to not introduce unexpected regression.
-- Raphaël Hertzog <hertzog(a)debian.org> Fri, 17 Mar 2017 14:59:04 +0100
jbig2dec (0.13-4) unstable; urgency=medium
* Add patches cherry-picked upstream to squash signed/unsigned
warnings and to fix warning for always-false unsigned < 0 tests.
Closes: Bug#850497. Thanks to Salvatore Bonaccorso.
* Modernize Vcs-Browser field: Use git subdir (not cgit).
* Stop override lintian for
package-needs-versioned-debhelper-build-depends: Fixed in lintian.
* Update copyright info: Extend coverage of Debian packaging.
-- Jonas Smedegaard <dr(a)jones.dk> Mon, 23 Jan 2017 21:13:34 +0100
jbig2dec (0.13-3) unstable; urgency=medium
* Add patch cherry-picked upstream to prevent checking too early for
buffer overrun.
* Modernize CDBS: Build-depend on licensecheck (not devscripts).
-- Jonas Smedegaard <dr(a)jones.dk> Tue, 23 Aug 2016 10:13:47 +0200
jbig2dec (0.13-2) unstable; urgency=medium
* Fix mark libjbig2dec0 as multi-ach: same.
Closes: Bug#799916. Thanks to Jacek Szafarkiewicz and Yuriy M.
Kaminskiy.
* Add patch 2001 to avoid compile unrelated and unusable Memento
memory debugging code.
Closes: Bug#824483. Thanks to Yuriy M. Kaminskiy.
* Drop symbols for dropped Memento code.
Thanks to Yuriy M. Kaminskiy.
-- Jonas Smedegaard <dr(a)jones.dk> Mon, 16 May 2016 18:35:14 +0200
jbig2dec (0.13-1) unstable; urgency=medium
[ upstream ]
* New bugfix release.
[ Jonas Smedegaard ]
* Update watch file:
+ Bump file format to version 4.
+ Mangle scanned page to get tarball URLs from tags, and adapt URL
pattern.
+ Mangle download filename.
+ Mention gbp in usage comment.
* Use https protocol in Vcs-Git URL.
* Declare compliance with Debian Policy 3.9.8.
* Update copyright info:
+ Extend coverage for main author to include recent years.
+ Extend copyright of packaging to cover current year.
* Update git-buildpackage config: Filter any .gitignore file.
* Drop patch 2001: Applied upstream.
* Drop 3 symbols (unused, according to http://codesearch.debian.net/).
* Fix remove old lintian overrides file.
-- Jonas Smedegaard <dr(a)jones.dk> Tue, 10 May 2016 16:51:55 +0200
jbig2dec (0.12+20150918-1) unstable; urgency=medium
[ upstream ]
* Snapshot.
+ Tidy build configuration.
+ Update for modern libpng.
+ Commit of build_consolidation branch.
+ Fixes for Windows build with VS 2015.
+ Check that cloned image exists before proceeding further.
+ Release huffman table memory properly.
[ Jonas Smedegaard ]
* Fix lintian overrides.
* Unfuzz all patches.
-- Jonas Smedegaard <dr(a)jones.dk> Sat, 26 Sep 2015 17:33:05 +0200
jbig2dec (0.12-2) unstable; urgency=medium
* Move package maintenance to printing team.
* Suppress lintian warning about build-depending unversioned on
debhelper.
* Update copyright info: Fix strip stray License field.
-- Jonas Smedegaard <dr(a)jones.dk> Fri, 31 Jul 2015 19:19:18 +0200
jbig2dec (0.12-1) unstable; urgency=medium
* Update README.source to emphasize that control.in file is *not* a
show-stopper for contributions, referring to wiki page for details.
* Update upstream URLs to reflect move to git.ghostscript.com and lack
of tarball releases.
* Declare compliance with Debian Policy 3.9.6.
* Update Vcs-* fields.
* Bump debhelper compatibility level to 9.
* Update copyright info:
+ Extend coverage for myself.
+ Bump packaging license to GPL-3+.
+ Fix use SPDX shortname for X11 license.
Thanks to Paul Richards Tagliamonte.
+ Use file format 1.0.
+ Use license short-name public-domain.
+ Bump main license to AGPL-3+.
Add NEWS file about that change.
+ Drop unused Files and License sections for autotools files.
+ Use License-Grant and License-Reference fields.
Thanks to Ben Finney.
* Use newest autotools.
Build-depend automake (not automake1.11) and on recent cdbs.
* Drop patches 1002 1003 applied upstream.
* Improve patch 1004: Remove extracted file from script to detect
upstream code changes.
* Add debian/patches/README documenting patch naming micro-policy.
* Add patch 2001 to avoid including problematic and seemingly uneeded
pngstruct.h.
* Let CDBS move aside upstream cruft during build.
* Cleanup more autotools files.
* Add symbols file.
Closes: bug#694899. Thanks to Logan Rosen.
* Fix tie d-shlibs target also to development package (not only
library package).
* Add lintian overrides regarding license in License-Reference field.
See bug#786450.
* Update package relations:
+ Build-depend unversioned on d-shlibs: Needed version satisfied
even in oldstable.
* Install into multiarch paths.
-- Jonas Smedegaard <dr(a)jones.dk> Fri, 31 Jul 2015 11:45:03 +0200
========================================================================
You can perform the upgrade by issuing the command:
apt-get dist-upgrade
as root on quigon.federez.net
--
apticron
This is the mail system at host nonagon.crans.org.
I'm sorry to have to inform you that your message could not
be delivered to one or more recipients. It's attached below.
For further assistance, please send mail to postmaster.
If you do so, please include this problem report. You can
delete your own text from the attached returned message.
The mail system
<monitoring(a)federez.net> (expanded from <root>): host
smtp.crans.org[2a06:e042:100:4:200:9ff:fe04:1901] said: 550 5.1.0
<root(a)nonagon.crans.org>: Sender address rejected: User unknown in relay
recipient table (in reply to RCPT TO command)
This is the mail system at host nonagon.crans.org.
I'm sorry to have to inform you that your message could not
be delivered to one or more recipients. It's attached below.
For further assistance, please send mail to postmaster.
If you do so, please include this problem report. You can
delete your own text from the attached returned message.
The mail system
<monitoring(a)federez.net> (expanded from <root>): host
smtp.crans.org[138.231.136.39] said: 550 5.1.0 <root(a)nonagon.crans.org>:
Sender address rejected: User unknown in relay recipient table (in reply to
RCPT TO command)
apticron report [Sat, 04 Mar 2017 23:38:18 +0100]
========================================================================
apticron has detected that some packages need upgrading on:
quigon.federez.net
[ 160.228.155.65 ]
The following packages are currently pending an upgrade:
imagemagick 8:6.8.9.9-5+deb8u7
imagemagick-6.q16 8:6.8.9.9-5+deb8u7
imagemagick-common 8:6.8.9.9-5+deb8u7
libmagickcore-6.q16-2 8:6.8.9.9-5+deb8u7
libmagickcore-6.q16-2-extra 8:6.8.9.9-5+deb8u7
libmagickwand-6.q16-2 8:6.8.9.9-5+deb8u7
munin-common 2.0.25-1+deb8u3
munin-node 2.0.25-1+deb8u3
munin-plugins-core 2.0.25-1+deb8u3
munin-plugins-extra 2.0.25-1+deb8u3
========================================================================
Package Details:
Lecture des fichiers de modifications (« changelog »)...
--- Modifications pour munin (munin-common munin-node munin-plugins-core munin-plugins-extra) ---
munin (2.0.25-1+deb8u3) jessie-security; urgency=high
* Non-maintainer upload by the Security Team.
* cgi: use Scalar::Util::looks_like_number.
Fix regression, causing munin-cgi-graph to spam munin logs with Perl
warnings of uninitialized value use for $size_x, $size_y, $upper_limit
or $lower_limit. (Closes: #856536)
-- Salvatore Bonaccorso <carnil(a)debian.org> Fri, 03 Mar 2017 06:10:34 +0100
munin (2.0.25-1+deb8u2) jessie-security; urgency=high
* Non-maintainer upload by the Security Team.
* cgi: handle the empty string in CGI arguments.
Fix regression in zooming functionality via munin-cgi-graph introduced
by the original fix for CVE-2017-6188. (Closes: #856455)
-- Salvatore Bonaccorso <carnil(a)debian.org> Wed, 01 Mar 2017 21:05:07 +0100
--- Modifications pour imagemagick (imagemagick imagemagick-6.q16 imagemagick-common libmagickcore-6.q16-2 libmagickcore-6.q16-2-extra libmagickwand-6.q16-2) ---
imagemagick (8:6.8.9.9-5+deb8u7) jessie-security; urgency=medium
* Fix Ipl file missing malloc check (Closes: #851483).
Fix CVE-2016-10145.
* Fix wpg file off by one (Closes: #851483).
Fix CVE-2016-10145.
* Fix a memory leak in caption coders (Closes: #851380).
Fix CVE-2016-10146.
* Fix possible buffer overflow when writing compressed TIFFS.
(Closes: #848139). Fix CVE-2016-8707.
* Fix a double free in profile due to overflow
(Closes: #851383). Fix CVE-2017-5506.
* Fix memory leak in MPC file handling (Closes: #851382).
Fix CVE-2017-5507
* Fix Heap-Buffer-Overflow in TIFF coder (Closes: #851381).
Fix CVE-2017-5508
* Fix improper cast that could cause an overflow. (Closes: #851374).
Fix CVE-2017-5511.
* Fix memory corruption heap overflow in psb file. (Closes: #851376).
Fix CVE-2017-5510.
* Detect write error in ReadGROUP4Image. (Closes: #849439).
Fix CVE-2016-10062
-- Bastien Roucariès <roucaries.bastien+debian(a)gmail.com> Sun, 12 Feb 2017 22:08:25 +0100
========================================================================
You can perform the upgrade by issuing the command:
apt-get dist-upgrade
as root on quigon.federez.net
--
apticron
apticron report [Fri, 03 Mar 2017 23:38:18 +0100]
========================================================================
apticron has detected that some packages need upgrading on:
quigon.federez.net
[ 160.228.155.65 ]
The following packages are currently pending an upgrade:
imagemagick 8:6.8.9.9-5+deb8u7
imagemagick-6.q16 8:6.8.9.9-5+deb8u7
imagemagick-common 8:6.8.9.9-5+deb8u7
libmagickcore-6.q16-2 8:6.8.9.9-5+deb8u7
libmagickcore-6.q16-2-extra 8:6.8.9.9-5+deb8u7
libmagickwand-6.q16-2 8:6.8.9.9-5+deb8u7
munin-common 2.0.25-1+deb8u3
munin-node 2.0.25-1+deb8u3
munin-plugins-core 2.0.25-1+deb8u3
munin-plugins-extra 2.0.25-1+deb8u3
========================================================================
Package Details:
Lecture des fichiers de modifications (« changelog »)...
--- Modifications pour munin (munin-common munin-node munin-plugins-core munin-plugins-extra) ---
munin (2.0.25-1+deb8u3) jessie-security; urgency=high
* Non-maintainer upload by the Security Team.
* cgi: use Scalar::Util::looks_like_number.
Fix regression, causing munin-cgi-graph to spam munin logs with Perl
warnings of uninitialized value use for $size_x, $size_y, $upper_limit
or $lower_limit. (Closes: #856536)
-- Salvatore Bonaccorso <carnil(a)debian.org> Fri, 03 Mar 2017 06:10:34 +0100
munin (2.0.25-1+deb8u2) jessie-security; urgency=high
* Non-maintainer upload by the Security Team.
* cgi: handle the empty string in CGI arguments.
Fix regression in zooming functionality via munin-cgi-graph introduced
by the original fix for CVE-2017-6188. (Closes: #856455)
-- Salvatore Bonaccorso <carnil(a)debian.org> Wed, 01 Mar 2017 21:05:07 +0100
--- Modifications pour imagemagick (imagemagick imagemagick-6.q16 imagemagick-common libmagickcore-6.q16-2 libmagickcore-6.q16-2-extra libmagickwand-6.q16-2) ---
imagemagick (8:6.8.9.9-5+deb8u7) jessie-security; urgency=medium
* Fix Ipl file missing malloc check (Closes: #851483).
Fix CVE-2016-10145.
* Fix wpg file off by one (Closes: #851483).
Fix CVE-2016-10145.
* Fix a memory leak in caption coders (Closes: #851380).
Fix CVE-2016-10146.
* Fix possible buffer overflow when writing compressed TIFFS.
(Closes: #848139). Fix CVE-2016-8707.
* Fix a double free in profile due to overflow
(Closes: #851383). Fix CVE-2017-5506.
* Fix memory leak in MPC file handling (Closes: #851382).
Fix CVE-2017-5507
* Fix Heap-Buffer-Overflow in TIFF coder (Closes: #851381).
Fix CVE-2017-5508
* Fix improper cast that could cause an overflow. (Closes: #851374).
Fix CVE-2017-5511.
* Fix memory corruption heap overflow in psb file. (Closes: #851376).
Fix CVE-2017-5510.
* Detect write error in ReadGROUP4Image. (Closes: #849439).
Fix CVE-2016-10062
-- Bastien Roucariès <roucaries.bastien+debian(a)gmail.com> Sun, 12 Feb 2017 22:08:25 +0100
========================================================================
You can perform the upgrade by issuing the command:
apt-get dist-upgrade
as root on quigon.federez.net
--
apticron
apticron report [Sun, 05 Mar 2017 23:38:18 +0100]
========================================================================
apticron has detected that some packages need upgrading on:
quigon.federez.net
[ 160.228.155.65 ]
The following packages are currently pending an upgrade:
imagemagick 8:6.8.9.9-5+deb8u7
imagemagick-6.q16 8:6.8.9.9-5+deb8u7
imagemagick-common 8:6.8.9.9-5+deb8u7
libmagickcore-6.q16-2 8:6.8.9.9-5+deb8u7
libmagickcore-6.q16-2-extra 8:6.8.9.9-5+deb8u7
libmagickwand-6.q16-2 8:6.8.9.9-5+deb8u7
munin-common 2.0.25-1+deb8u3
munin-node 2.0.25-1+deb8u3
munin-plugins-core 2.0.25-1+deb8u3
munin-plugins-extra 2.0.25-1+deb8u3
========================================================================
Package Details:
Lecture des fichiers de modifications (« changelog »)...
--- Modifications pour munin (munin-common munin-node munin-plugins-core munin-plugins-extra) ---
munin (2.0.25-1+deb8u3) jessie-security; urgency=high
* Non-maintainer upload by the Security Team.
* cgi: use Scalar::Util::looks_like_number.
Fix regression, causing munin-cgi-graph to spam munin logs with Perl
warnings of uninitialized value use for $size_x, $size_y, $upper_limit
or $lower_limit. (Closes: #856536)
-- Salvatore Bonaccorso <carnil(a)debian.org> Fri, 03 Mar 2017 06:10:34 +0100
munin (2.0.25-1+deb8u2) jessie-security; urgency=high
* Non-maintainer upload by the Security Team.
* cgi: handle the empty string in CGI arguments.
Fix regression in zooming functionality via munin-cgi-graph introduced
by the original fix for CVE-2017-6188. (Closes: #856455)
-- Salvatore Bonaccorso <carnil(a)debian.org> Wed, 01 Mar 2017 21:05:07 +0100
--- Modifications pour imagemagick (imagemagick imagemagick-6.q16 imagemagick-common libmagickcore-6.q16-2 libmagickcore-6.q16-2-extra libmagickwand-6.q16-2) ---
imagemagick (8:6.8.9.9-5+deb8u7) jessie-security; urgency=medium
* Fix Ipl file missing malloc check (Closes: #851483).
Fix CVE-2016-10145.
* Fix wpg file off by one (Closes: #851483).
Fix CVE-2016-10145.
* Fix a memory leak in caption coders (Closes: #851380).
Fix CVE-2016-10146.
* Fix possible buffer overflow when writing compressed TIFFS.
(Closes: #848139). Fix CVE-2016-8707.
* Fix a double free in profile due to overflow
(Closes: #851383). Fix CVE-2017-5506.
* Fix memory leak in MPC file handling (Closes: #851382).
Fix CVE-2017-5507
* Fix Heap-Buffer-Overflow in TIFF coder (Closes: #851381).
Fix CVE-2017-5508
* Fix improper cast that could cause an overflow. (Closes: #851374).
Fix CVE-2017-5511.
* Fix memory corruption heap overflow in psb file. (Closes: #851376).
Fix CVE-2017-5510.
* Detect write error in ReadGROUP4Image. (Closes: #849439).
Fix CVE-2016-10062
-- Bastien Roucariès <roucaries.bastien+debian(a)gmail.com> Sun, 12 Feb 2017 22:08:25 +0100
========================================================================
You can perform the upgrade by issuing the command:
apt-get dist-upgrade
as root on quigon.federez.net
--
apticron