Subject: CVS commit: [pkgsrc-2004Q4] pkgsrc/graphics/libexif
To: None <pkgsrc-changes@NetBSD.org>
From: Soren Jacobsen <snj@netbsd.org>
List: pkgsrc-changes
Date: 03/11/2005 06:08:38
Module Name:	pkgsrc
Committed By:	snj
Date:		Fri Mar 11 06:08:38 UTC 2005

Modified Files:
	pkgsrc/graphics/libexif [pkgsrc-2004Q4]: Makefile buildlink3.mk
	    distinfo
Added Files:
	pkgsrc/graphics/libexif/patches [pkgsrc-2004Q4]: patch-ab

Log Message:
Pullup ticket 349 - requested by Lubomir Sedlacik
security fix for libexif

Revisions pulled up:
- pkgsrc/graphics/libexif/Makefile		1.22
- pkgsrc/graphics/libexif/buildlink3.mk		1.6
- pkgsrc/graphics/libexif/distinfo		1.12
- pkgsrc/graphics/libexif/patches/patch-ab	1.1

    Module Name:    pkgsrc
    Committed By:   adam
    Date:           Thu Mar 10 19:22:22 UTC 2005

    Modified Files:
            pkgsrc/graphics/libexif: distinfo
    Added Files:
            pkgsrc/graphics/libexif/patches: patch-ab

    Log Message:
    Added a patch to fix buffer overflow:

      * SECURITY UPDATE: Fix buffer overflow.
      * libexif/exif-data.c: Add buffer size checks in several places before
        trying to access it.
      * Thanks to Sylvain Defresne for spotting this and the patch.
      * References:
        https://bugzilla.ubuntulinux.org/show_bug.cgi?id=7152

    Thanks to wiz@ for heads-up. :)

    ----

    Module Name:    pkgsrc
    Committed By:   salo
    Date:           Thu Mar 10 22:21:56 UTC 2005

    Modified Files:
            pkgsrc/graphics/libexif: Makefile buildlink3.mk

    Log Message:
    Bump PKGREVISION and BUILDLINK_RECOMMENDED for the security fix. (hi adam!)


To generate a diff of this commit:
cvs rdiff -r1.21 -r1.21.2.1 pkgsrc/graphics/libexif/Makefile
cvs rdiff -r1.5 -r1.5.2.1 pkgsrc/graphics/libexif/buildlink3.mk
cvs rdiff -r1.10 -r1.10.2.1 pkgsrc/graphics/libexif/distinfo
cvs rdiff -r0 -r1.1.2.1 pkgsrc/graphics/libexif/patches/patch-ab

Please note that diffs are not public domain; they are subject to the
copyright notices on the relevant files.