-
libarchive (3.2.2-2) unstable; urgency=medium
* Disable tests (Closes: #859455)
-- Andreas Henriksson <email address hidden> Mon, 03 Apr 2017 22:20:05 +0200
-
libarchive (3.2.1-6) unstable; urgency=medium
* Add debian/patches/Fail-with-negative-lha-compsize-in-lha_read_file_header_1.patch
- Cherry-pick upstream commit 98dcbbf0bf4854bf987557
"Fail with negative lha->compsize in lha_read_file_header_1()"
Secunia SA74169, CVE-2017-5601 (Closes: #853278)
-- Andreas Henriksson <email address hidden> Tue, 31 Jan 2017 10:25:56 +0100
-
libarchive (3.2.1-5) unstable; urgency=medium
* Cherry-pick upstream commits 7f17c791, eec077f5, e37b620f
- Fixes for upstream issues 747, 761, 767 also known as
CVE-2016-8689, CVE-2016-8688, CVE-2016-8687
(Closes: #840934, #840935, #840936)
-- Andreas Henriksson <email address hidden> Sun, 16 Oct 2016 15:41:59 +0200
-
libarchive (3.2.1-2) unstable; urgency=medium
* The "welcome Peter to the team" upload
[ Peter Pentchev ]
* Declare compliancy with Debian Policy 3.9.8 with no changes.
* Remove the "XS-Testsuite: autopkgtest" header from the control file:
it has not been "XS-" for some time, and it is added by default by
dpkg-1.17.11 when debian/tests/control is present.
* Use the HTTPS scheme for the Alioth VCS URLs.
* Switch to Alioth's cgit in the Vcs-Browser source control field.
* Convert the copyright file to the machine-readable format.
* Fill in the upstream metadata file.
* Enable full build hardening.
* Pass --as-needed to the linker to avoid overlinking.
* Bump the debhelper build dependency to version 9 to reflect
the debhelper compatibility level and drop the now-unused Lintian
override.
* Fold the bsdtar and bsdcpio packages into the new libarchive-tools
binary package and install bsdcat into it, too. Make bsdtar and
bsdcpio transitional dummy packages.
* Drop the Breaks and Replaces relations to libarchive1, it's not
even in oldstable any more.
* Drop the misc:Pre-Depends that were needed for the multi-arch
transition; dpkg-dev adds them automatically now.
* Fix a typo in README.Debian.
* Add an upstream patch to replace the use of SIGRTMAX with something
that calculates the exact value of the highest signal actually used;
hopefully this fixes the FTBFS on the GNU Hurd.
* Drop the outdated and unused SONAME mismatch Lintian override.
* Re-enable the use of minitar for extraction, too, in the CI test;
keep the untar test for completeness.
* Add the Typos patch to fix a couple of typographical errors.
* Add the Candidate patch to fix a typographical error in a structure
member field and, consequently, update all references to it.
* Add the CPPCheck patch to fix some issues reported by cppcheck.
[ Andreas Henriksson ]
* Add Peter Pentchev to Uploaders
-- Andreas Henriksson <email address hidden> Mon, 25 Jul 2016 17:54:13 +0200