unixodbc (2.3.9-5ubuntu0.1) jammy-security; urgency=medium * SECURITY UPDATE: Out-of-bounds write - debian/patches/CVE-2024-1013.patch: fix incompatible pointer-to-int types in Drivers/Postgre7.1/info.c. - CVE-2024-1013 -- Leonidas Da Silva Barbosa <leo.barbosa@canonical.com> Thu, 21 Mar 2024 08:18:10 -0300 unixodbc (2.3.9-5) unstable; urgency=medium * debian/copyright: Extend copyright to 2022. * debian/patches: - unixodbc_conf.patch: Replace inclusion of unixodbc_conf.h with minimal preprocessor definitions (Closes: #1005887). - Remove sizeof_long_int.patch (superseded by unixodbc_conf.patch). -- Hugh McMaster <hugh.mcmaster@outlook.com> Tue, 22 Feb 2022 22:48:14 +1100 unixodbc (2.3.9-4) unstable; urgency=medium * debian/control: - odbcinst1debian2 breaks odbc-postgresql (<< 1:13.02.0000-2). - unixodbc-dev breaks libdbd-odbc-perl (<< 1.61-2). - Add odbcinst as a dependency of odbcinst1debian2 for compatibility. -- Hugh McMaster <hugh.mcmaster@outlook.com> Tue, 30 Nov 2021 23:18:15 +1100 unixodbc (2.3.9-3) unstable; urgency=medium * debian/control: libodbc1 also depends on libodbccr2 (Closes: #1000465). * debian/not-installed: Add upstream-generated odbcinst.ini file. * unixodbc-common: - Do not install odbcinst.ini as a conffile. - Add maintscripts to manage the odbcinst.ini file. -- Hugh McMaster <hugh.mcmaster@outlook.com> Fri, 26 Nov 2021 22:59:37 +1100 unixodbc (2.3.9-2) unstable; urgency=medium * Release to unstable. * debian/control: - Raise Standards-Version to 4.6.0 (no changes needed). - Reinstate libodbc1 and odbcinst1debian2 as transitional packages, and install compatibility symlinks to the libodbc*2 libraries. - Drop the libltdl-dev dependency from unixodbc-dev (Closes: #997870). * debian/rules: Don't install the upstream ChangeLog. * debian/source/lintian-overrides: - Silence some 'very-long-line-length-in-source-file' messages. * unixodbc: Don't install the upstream NEWS file. * Remove legacy debian/NEWS file. -- Hugh McMaster <hugh.mcmaster@outlook.com> Tue, 23 Nov 2021 21:37:59 +1100 unixodbc (2.3.9-1) experimental; urgency=medium * New upstream version (Closes: #971900). - Driver logging is now disabled by default (Closes: #740538). - Prevent truncation of odbc.ini by only opening the file for writing when it is safe to do so (Closes: #885463, #885472). * New maintainer: Hugh McMaster. - Thank you to Steve Langasek for maintaining unixODBC over the years. * libodbc2 has replaced libodbc1: - Update install and symbols files. - Add Build-Depends-Package meta-information field to the symbols file. - Remove legacy libodbc1 files (links, lintian-overrides, dirs, postrm). * Split libodbccr2 from libodbc2. * Split libodbcinst2 from odbcinst1debian2. * ODBC drivers and driver config modules are no longer installed. - Please switch to packages supplied by ODBC driver vendors. * Move the ODBC configuration files/dirs to the new unixodbc-common package. * unixodbc-dev: autotest.h and unixodbc_conf.h are no longer packaged. * debian/changelog: Fix a typo in a function name. * debian/control: - Switch to debhelper-compat v13. - Remove build-dependency on dh-exec. - Update Maintainer field. - Update package descriptions (Closes: #471900). - Unify formatting of "Open Database Connectivity". - Remove unneeded Breaks+Replaces fields on various packages. - Remove unneeded Conflicts fields on various packages. - Update package descriptions and dependencies. - No longer Suggest libmyodbc or unixodbc-bin (packages not installable). - New library packages: libodbc2, libodbccr2 and libodbcinst2. - New package for configuration files: unixodbc-common. - Update field order in Source stanza. - Add Rules-Requires-Root: no. - Add Vcs-* fields. - Raise Standards-Version to 4.5.1 from 4.1.4. * debian/copyright: Update for unixODBC 2.3.9 and 2021. * debian/patches: - Drop patches applied upstream: apple-altivec-defined.patch, makefile-am-destdir.patch, fix-DriverManager-exports.patch, odbcinst.ini.5-spelling.patch. - Drop iniopen.patch to avoid breaking third-party applications that rely on the unpatched file-creation behaviour. - Refresh and forward drvcfg-spelling.patch and multiarch-libltdl.patch. - Forward export-odbcinst-functions.patch upstream. - Add a patch to fix spelling errors in the PostgreSQL ODBC driver. - Add a patch to apply roman formatting instead of generating 'registered' symbols throughout the upstream man pages. - Add a patch to simplify the generation of ODBC driver config modules. - Add a patch to #define SIZEOF_LONG_INT using a compiler macro extension. * debian/rules: - Remove copyright statement. - Update configure flags so we use the system libltdl package. - Remove configure flags enabling the build of legacy ODBC drivers and driver config modules. - Remove unneeded dh_auto_install, dh_makeshlibs and dh_link overrides. * debian/watch: Point to upstream's FTP server. * Add Debian helper files: gbp.conf, not-installed and upstream/metadata. * Update symbols files and add Build-Depends-Package meta-information fields. * Remove legacy shell script: update-manifest.sh. -- Hugh McMaster <hugh.mcmaster@outlook.com> Mon, 19 Apr 2021 23:25:30 +1000 unixodbc (2.3.6-0.1) unstable; urgency=medium * Non-maintainer upload. * New upstream release (Closes: #888968). - Fix buffer overflow when calling unicode_to_ansi_copy() in DriverManager/SQLDriverConnectW.c (CVE-2018-7409) (Closes: #891596). - Package upstream manpages instead of Debian versions (Closes: #893891). - Fix potential buffer overflow vulnerabilities in SQLDriverConnect functions (CVE-2012-2657 and CVE-2012-2658) (Closes: #675058). - Install pkg-config files (Closes: #422207). * Switch to dpkg-source 3.0 (quilt) format. * Update debhelper package compatibility to level 11. * debian/changelog: Remove trailing whitespace. * debian/control: - Build-Depend on debhelper version 11. - Remove dh-autoreconf from the Build-Depends list. - Raise Standards-Version to 4.1.4 from 3.9.8 (no changes needed). - Remove the Vcs-fields until the package repository moves to Salsa. - Remove the deprecated Priority: extra field from unixodbc-dev. - Use the inherited Section field for libodbc1 and odbcinst1debian2. - Update package descriptions for odbcinst1debian2 and odbcinst. - Drop un-needed Conflicts field from unixodbc. * debian/copyright: - Use secure HTTP in the Format field. - Update Copyright information for unixODBC 2.3.6. * debian/docs: - Rename to unixodbc.docs. * debian/patches: - Convert unixodbc_2.3.4-1.1.diff into patches. - Add a patch to prevent __post_internal_error() from being exported. - Add a patch to fix spelling errors in DRVConfig/txt/drvcfg.c. - Add a patch to fix spelling and formatting in odbcinst.ini.5. - Forward some patches upstream. * debian/rules: - Add 'hardening=+all' to DEB_BUILD_MAINT_OPTIONS. - Remove '--with autoreconf' (now handled by debhelper >= level 10). - Remove dh_auto_clean override. - Compile with the default CXXFLAGS options. * Add debian/watch file. * Remove a lintian override (symbols-file-contains-debian-revision). * Remove debian/clean (no longer needed). * Remove debian/odbcinst.postinst (no longer needed). * Remove debian/dirs: /usr/lib/odbc has been replaced by multi-arch paths. -- Hugh McMaster <hugh.mcmaster@outlook.com> Wed, 09 May 2018 21:53:53 +1000 unixodbc (2.3.4-1.1) unstable; urgency=medium * Non-maintainer upload. * debian/control: - Mark unixodbc-dev Multi-Arch: same (Closes: #872411). - Depend on libltdl-dev instead of libltdl3-dev. * debian/rules: - Compile with --enable-fastvalidate to avoid performance degradation when working with large numbers of handles (Closes: #819622). - Move unixodbc_conf.h to /usr/include/<triplet> to avoid a file conflict on multi-arch systems. -- Hugh McMaster <hugh.mcmaster@outlook.com> Tue, 07 Nov 2017 18:12:44 +1100 unixodbc (2.3.4-1) unstable; urgency=medium * New upstream release. Closes: #843847. - Drop patches to autogenerated files in the source tree, since we use dh-autoreconf already. - Drop AM_MAINTAINER_MODE, no longer needed due to the above. - Drop no-longer-used lintian override. * Standards-Version to 3.9.8. -- Steve Langasek <vorlon@debian.org> Mon, 12 Dec 2016 10:55:09 +0000 unixodbc (2.3.1-5) unstable; urgency=low * Make unixodbc-dev depend directly on libodbc1, not just transitively via unixodbc, now that unixodbc is Multi-Arch: foreign. Closes: #839170. * Fix unixodbc-dev package section. Closes: #813991. -- Steve Langasek <vorlon@debian.org> Thu, 29 Sep 2016 13:13:32 -0700 # For older changelog entries, run 'apt-get changelog libodbc2'
Generated by dwww version 1.14 on Tue Jan 21 08:39:54 CET 2025.