Overview

Request 664265 accepted

- Add fix-build.patch to fix a build issue with recent CMake versions.
- Run spec-cleaner

- Update to 0.9.6
- drop patches from upstream all are now upstream:
(CVE-2017-5852, boo#1023067, CVE-2017-5853, boo#1023069,
CVE-2017-5854, boo#1023070, CVE-2017-5855, boo#1023071,
CVE-2017-5886, boo#1023380, CVE-2017-6840, boo#1027787,
CVE-2017-6844, boo#1027782, CVE-2017-6845, boo#1027779,
CVE-2017-6847, boo#1027778, CVE-2017-7378, boo#1032017,
CVE-2017-7379, boo#1032018, CVE-2017-7380, boo#1032019,
CVE-2017-7994, boo#1035534, CVE-2017-8054, boo#1035596,
CVE-2017-8787, boo#1037739, CVE-2018-5295, boo#1075026,
CVE-2018-5296, boo#1075021, CVE-2018-5308, boo#1075772,
CVE-2018-5309, boo#1075322, CVE-2018-8001, boo#1084894)
* 0001-fix-a-crash-when-passing-a-PDF-file-with-an-encryption-dictionary-ref.patch
* 0002-fix-stack-overflow-crash-when-XRef-record-references-itself.patch
* 0003-Fix-for-CVE-2017-5852-with-added-error-code.patch
* 0004-Fix-for-CVE-2017-5854.patch
* 0005-Fix-for-CVE-2017-5886.patch
* 0006-Extend-fix-for-CVE-2017-5852.patch
* 0007-Fix-CVE-2017-5853-signed-integer-overflow-and-CVE-2017-6844-buffer-overflow.patch
* 0008-Fix-infinite-loop-in-GetPageNumber-if-Parent-chain-contains-a-loop.patch
* 0009-Fix-CVE-2017-7379-encoding-array-too-short-to-encode-decode-code-point-0xffff.patch
* 0010-Fix-CVE-2017-5855-CVE-2018-5296-NULL-pointer-dereference-in-PoDoFo-PdfParser-ReadXRefSubsection.patch
* 0011-Fix-CVE-2017-6840-Out-of-bounds-read-in-ColorChanger-GetColorFromStack.patch
* 0012-Correct-fix-for-CVE-2017-6840-Too-strict-check-for-given-arguments.patch
* 0013-Fix-CVE-2017-6847-NULL-pointer-dereference-when-reading-XObject-without-BBox.patch
* 0014-Fix-CVE-2017-7378-Out-of-bounds-read-in-PdfPainter-ExpandTabs.patch
* 0015-Fix-CVE-2017-7380-NULL-dereference-in-PdfPage-GetFromResources.patch

Loading...

Leap Reviewbot's avatar

openSUSE:Factory/podofo@fcfae63728abad9fa9d8380f5a906fb3 -> openSUSE:Leap:15.0:Update/podofo

expected origin is 'openSUSE:Factory' (unchanged)

Request History
Marcus Meissner's avatar

msmeissn created request

- Add fix-build.patch to fix a build issue with recent CMake versions.
- Run spec-cleaner

- Update to 0.9.6
- drop patches from upstream all are now upstream:
(CVE-2017-5852, boo#1023067, CVE-2017-5853, boo#1023069,
CVE-2017-5854, boo#1023070, CVE-2017-5855, boo#1023071,
CVE-2017-5886, boo#1023380, CVE-2017-6840, boo#1027787,
CVE-2017-6844, boo#1027782, CVE-2017-6845, boo#1027779,
CVE-2017-6847, boo#1027778, CVE-2017-7378, boo#1032017,
CVE-2017-7379, boo#1032018, CVE-2017-7380, boo#1032019,
CVE-2017-7994, boo#1035534, CVE-2017-8054, boo#1035596,
CVE-2017-8787, boo#1037739, CVE-2018-5295, boo#1075026,
CVE-2018-5296, boo#1075021, CVE-2018-5308, boo#1075772,
CVE-2018-5309, boo#1075322, CVE-2018-8001, boo#1084894)
* 0001-fix-a-crash-when-passing-a-PDF-file-with-an-encryption-dictionary-ref.patch
* 0002-fix-stack-overflow-crash-when-XRef-record-references-itself.patch
* 0003-Fix-for-CVE-2017-5852-with-added-error-code.patch
* 0004-Fix-for-CVE-2017-5854.patch
* 0005-Fix-for-CVE-2017-5886.patch
* 0006-Extend-fix-for-CVE-2017-5852.patch
* 0007-Fix-CVE-2017-5853-signed-integer-overflow-and-CVE-2017-6844-buffer-overflow.patch
* 0008-Fix-infinite-loop-in-GetPageNumber-if-Parent-chain-contains-a-loop.patch
* 0009-Fix-CVE-2017-7379-encoding-array-too-short-to-encode-decode-code-point-0xffff.patch
* 0010-Fix-CVE-2017-5855-CVE-2018-5296-NULL-pointer-dereference-in-PoDoFo-PdfParser-ReadXRefSubsection.patch
* 0011-Fix-CVE-2017-6840-Out-of-bounds-read-in-ColorChanger-GetColorFromStack.patch
* 0012-Correct-fix-for-CVE-2017-6840-Too-strict-check-for-given-arguments.patch
* 0013-Fix-CVE-2017-6847-NULL-pointer-dereference-when-reading-XObject-without-BBox.patch
* 0014-Fix-CVE-2017-7378-Out-of-bounds-read-in-PdfPainter-ExpandTabs.patch
* 0015-Fix-CVE-2017-7380-NULL-dereference-in-PdfPage-GetFromResources.patch


Saul Goodman's avatar

licensedigger accepted review

ok


Factory Auto's avatar

factory-auto accepted review

Check script succeeded


Maintenance Bot's avatar

maintbot added podofo as a reviewer

Submission for podofo by someone who is not maintainer in the devel project (graphics). Please review


Maintenance Bot's avatar

maintbot accepted review

ok


Marcus Meissner's avatar

msmeissn accepted review

ok


Marcus Meissner's avatar

msmeissn approved review

ok


Robert Frohl's avatar

rfrohl moved maintenance target to openSUSE:Maintenance:9438


Robert Frohl's avatar

rfrohl accepted request

accepted request 664265:Thanks!

For information about the update, see https://build.opensuse.org/project/maintenance_incidents/openSUSE:Maintenance

openSUSE Build Service is sponsored by