libsoup2.4 (2.74.2-3ubuntu0.1) jammy-security; urgency=medium * SECURITY UPDATE: Request smuggling - debian/patches/CVE-2024-52530.patch: Strictly don't allow NUL bytes in headers - CVE-2024-52530 * SECURITY UPDATE: Buffer overflow - debian/patches/CVE-2024-52531-1.patch: Be more robust against invalid input when parsing params - debian/patches/CVE-2024-52531-2.patch: Add test for passing invalid UTF-8 to soup_header_parse_semi_param_list() - CVE-2024-52531 * SECURITY UPDATE: Denial of service - debian/patches/CVE-2024-52532-1.patch: process the frame as soon as data is read - debian/patches/CVE-2024-52532-2.patch: disconnect error copy after the test ends - CVE-2024-52532 -- Bruce Cable <bruce.cable@canonical.com> Tue, 19 Nov 2024 09:24:38 +1100 libsoup2.4 (2.74.2-3) unstable; urgency=medium * Team upload * Source-only upload to allow testing migration * Move to debhelper compat level 13 * Standards-Version: 4.6.0 (no changes required) * Override Lintian errors for RUNPATH in installed-tests. These have a private shared library for common code. * Override overzealous Lintian hint for documentation outside /usr/share/doc * d/p/tests-add-soup_test_build_filename_abs.patch, d/p/test-utils-Log-Apache-arguments.patch, d/p/test-utils-Save-Apache-server-root-during-initialization.patch: Add patches to fix unit test teardown for XMLRPC tests * Adjust PHP dependencies. php currently has a complicated version number as a result of a transition to PHP 8 that was started and then rolled back. * d/p/Record-Apache-error-log-for-unit-tests-and-show-it-during.patch: Add patch to display Apache error log in test diagnostics * d/p/Mark-XMLRPC-tests-as-flaky.patch: Add patch to treat tests based on php-xmlrpc as unreliable -- Simon McVittie <smcv@debian.org> Mon, 27 Dec 2021 20:33:29 +0000 libsoup2.4 (2.74.2-2) unstable; urgency=medium * Add libsoup2.4-common package for translations -- Jeremy Bicha <jbicha@debian.org> Sun, 28 Nov 2021 16:04:43 -0500 libsoup2.4 (2.74.2-1) unstable; urgency=medium * New upstream release * Update debian/copyright -- Jeremy Bicha <jbicha@debian.org> Sun, 28 Nov 2021 15:57:59 -0500 libsoup2.4 (2.74.1-1) unstable; urgency=medium * New upstream release * debian/control.in: Allow building against php8 * debian/control.in: Add php8 as an alternate dependency to php-xmlrpc -- Jeremy Bicha <jbicha@debian.org> Sun, 24 Oct 2021 20:43:30 -0400 libsoup2.4 (2.74.0-3) unstable; urgency=medium * Drop vala patch since vala 0.54 is in Debian (Closes: #997243) -- Jeremy Bicha <jbicha@debian.org> Sat, 23 Oct 2021 15:38:01 -0400 libsoup2.4 (2.74.0-2) unstable; urgency=medium * Add patch to revert commit applied for use with vala 0.53.1 -- Jeremy Bicha <jbicha@debian.org> Tue, 31 Aug 2021 19:13:26 -0400 libsoup2.4 (2.74.0-1) unstable; urgency=medium * New upstream release * Drop three patches applied in new release * Don't let debhelper 13.4+ make all the installed-tests executable -- Jeremy Bicha <jbicha@debian.org> Thu, 26 Aug 2021 20:45:31 -0400 libsoup2.4 (2.72.0-4) unstable; urgency=medium * Team upload * Upload to unstable, to unblock upload of GLib 2.68.x -- Simon McVittie <smcv@debian.org> Sun, 15 Aug 2021 14:06:06 +0100 libsoup2.4 (2.72.0-3) experimental; urgency=medium * d/p/tests-connection-test-Update-expected-events-for-GLib-2.6.patch. Fix test compatibility with glib 2.67.0 -- Iain Lane <laney@debian.org> Thu, 04 Mar 2021 22:05:29 +0000 # For older changelog entries, run 'apt-get changelog libsoup2.4-doc'
Generated by dwww version 1.14 on Thu Jan 23 03:47:22 CET 2025.