-
perl (5.20.2-2ubuntu0.1) vivid-security; urgency=medium
* SECURITY UPDATE: canonpath function doesn't preserve taint
- debian/patches/fixes/CVE-2015-8607_file_spec_taint_fix.diff: ensure
File::Spec::canonpath() preserves taint in dist/PathTools/Cwd.xs,
added tests to dist/PathTools/t/taint.t.
- CVE-2015-8607
-- Marc Deslauriers <email address hidden> Wed, 20 Jan 2016 09:08:09 -0500
-
perl (5.20.2-2) unstable; urgency=medium
[ Dominic Hargreaves ]
* Make perl-modules Recommend perl
[ Niko Tyni ]
* Fix the Broken libfile-spec-perl versions.
* Backport upstream fix for a regexp performance regression
from 5.14. (Closes: #777556)
* Make perl-modules Break older versions of perl. (Closes: #779433)
* Make perl-modules Depend on a matching perl-base. (Closes: #779455)
-- Niko Tyni <email address hidden> Sun, 01 Mar 2015 19:58:59 +0200
-
perl (5.20.1-5) unstable; urgency=medium
* Make perl-base and perl-modules Break perl (<< 5.20.0~)
to fix trigger related upgrade paths from wheezy. (Closes: #774844)
+ also make perl-base, perl-modules, and perl Pre-Depend
on dpkg (>= 1.17.17) to get reliable trigger dependency
guarantees. (See #671711)
-- Niko Tyni <email address hidden> Sun, 25 Jan 2015 18:26:53 +0200
-
perl (5.20.1-4) unstable; urgency=medium
* Make perl-base and perl-modules Break pdl (<< 1:2.007-4)
to fix upgrade failures with dpkg triggers. (Closes: #773323)
-- Niko Tyni <email address hidden> Fri, 19 Dec 2014 18:55:26 +0200
-
perl (5.20.1-3) unstable; urgency=low
* Move File::Temp and its dependencies (File::Path, File::Basename,
and parent) to perl-base.
See https://lists.debian.org/debian-devel/2014/11/msg00216.html
-- Niko Tyni <email address hidden> Sun, 16 Nov 2014 18:54:17 +0200
-
perl (5.20.1-2) unstable; urgency=medium
* Fix IO::Uncompress::Gunzip gunzip to in-memory file handle
(Closes: #747363)
* Fix t/io/socket.t on Hurd: include upstream fixes (Closes: #758718)
-- Dominic Hargreaves <email address hidden> Sun, 19 Oct 2014 22:02:58 +0100
-
perl (5.20.1-1) unstable; urgency=medium
* New upstream release
* [SECURITY] CVE-2014-4330: don't recurse infinitely in Data::Dumper
(Closes: #762256)
* Update Standards-Version (no changes)
* Update maintainer tests to reflect the fact that libcgi-fast-perl
is not being shipped
* Update Breaks versions for libfile-spec-perl, libmodule-corelist-perl,
libversion-perl
* Update patch metadata to reflect upstream status
(Closes: #762270, #762269)
* Upload to unstable
-- Dominic Hargreaves <email address hidden> Sat, 20 Sep 2014 14:11:36 +0100