libcairo (1.2.4-4.1+etch1) stable-security; urgency=high * Non-maintainer upload by the Security Team. * Backport two upstream security fixes for CVE-2007-5503, and a fix to a regression caused by one of them: - backported-malloc_int_overflow.patch: Fix widespread integer-overflow vulnerabilities in malloc() calls - backported-realloc_int_overflow.patch: likewise, but for realloc() calls - backported-zerosurface.patch: _get_bitmap_surface(): return a zero-sized surface when requested, rather than failing an alloc - upstream-malloc_divbyzero.patch: prevent divide-by-zero in alloc wrappers -- Devin Carraway Mon, 7 Apr 2008 09:18:05 +0000 libcairo (1.2.4-4) unstable; urgency=medium * Acknowledge NMU. * Urgency medium since RC bugs are acknowledged. * Patch 01-cairo_xlib_surface_add_glyph.patch added in experimental confirmed fixes powerpc X byte copy crash for bug #388116 which was closed by email after an NMU. * Enable PDF and PS for the cairo+directfb build in unstable (Closes: #383297) * Bump libcairo-directfb2's shlibs to >= 1.2.4-4 for the addition of PDF and PS related symbols to the cairo+directfb lib. (Closes: #387289) * Remove libcairo.la references to other .la files to aid future removal of all .la files. -- Dave Beckett Thu, 19 Oct 2006 22:41:56 -0700 libcairo (1.2.4-3.2) experimental; urgency=low * NMU * Re-upload to get the changes from -2 in experimental, that is building cairo+directfb with PS and PDF support (needed by Gtk+2.10+directfb). * Bump libcairo-directfb shlibs to >= 1.2.4-3.2 so that packages depending on the new +directfb things get the right dep. -- Marc 'HE' Brockschmidt Wed, 18 Oct 2006 11:09:16 +0200 libcairo (1.2.4-3.1) unstable; urgency=low * NMU * Upload with 01-cairo_xlib_surface_add_glyph.patch but without the directfb changes from -2. The patch fixes the segfault caused by a broken loop condition (c >= 0 works like, eh, always after doing "unsigned int c"...). (Closes: #388116) -- Marc 'HE' Brockschmidt Sun, 15 Oct 2006 16:25:06 +0200 libcairo (1.2.4-3) experimental; urgency=low * Added patch 01-cairo_xlib_surface_add_glyph.patch from upstream git attempting to fix 388116 -- Dave Beckett Sun, 8 Oct 2006 11:08:23 -0700 libcairo (1.2.4-2) experimental; urgency=low * Enable PDF and PS for the cairo+directfb build in order to allow GTK 2.10+directfb to build (Closes: #383297) -- Dave Beckett Sun, 3 Sep 2006 13:24:31 -0700 libcairo (1.2.4-1) unstable; urgency=low * New upstream release. * Remove double call to dh_installdocs (Closes: #382594) * Submit to override for libcairo2-doc, changing to section libs. -- Dave Beckett Fri, 18 Aug 2006 18:11:00 -0700 libcairo (1.2.2-1) unstable; urgency=medium * New upstream release. * This version again handles BGR X server visuals such as used by Exceed and VNC (Closes: #376858) * Removed patches taken from upstream git: - cairo-bug-7494.patch - cairo-bug-7514.patch * Build-Depend on xutils-dev and libxt-dev since the test for the presence of X in the latest configure (as generated by autoconf 2.60) uses xmkmf and checks for libxt-dev even though neither are used by Cairo. -- Dave Beckett Tue, 8 Aug 2006 23:59:01 -0700 libcairo (1.2.0-5) unstable; urgency=medium * Rebuild against directfb 0.9.25 which has changed library and udeb package names from 0.9.24 that all earlier cairos were built against, and which are now removed. This should prevent Cairo from becoming uninstallable due to this change. Urgency medium due to this. -- Dave Beckett Wed, 2 Aug 2006 22:04:17 -0700 libcairo (1.2.0-4) unstable; urgency=medium * Added patch cairo-bug-7494.patch (Closes: #378005) * Added patch cairo-bug-7514.patch (Closes: #380064) -- Dave Beckett Tue, 1 Aug 2006 22:29:04 -0700 libcairo (1.2.0-3) unstable; urgency=low * Add libsm-dev to Build-Depends and libcairo2-dev depends to pull in libSM and libICE (Closes: #377259) * Remove unused libxrender-dev Depends from libcairo-directfb2-dev -- Dave Beckett Sun, 9 Jul 2006 16:36:10 -0700 libcairo (1.2.0-2) unstable; urgency=low * Remove libcairo2-dev depending on libdirectfb-dev (Closes: 376691) -- Dave Beckett Tue, 4 Jul 2006 10:45:33 -0700 libcairo (1.2.0-1) unstable; urgency=low * New upstream release. -- Dave Beckett Sat, 1 Jul 2006 19:43:51 -0700 libcairo (1.1.10-3) experimental; urgency=low * First upload of 1.1.x series to debian experimental * Remove patch 02-no-ft-glyphslot-embolden.patch (was for bug #325526) and depend on a new enough libfreetype6 (2.1.10) which is already in testing. * Removed Build-Depend on libxml2 for creating SVG as that has been rewritten. * Added libcairo2 Conflicts and Replaces libcairo1 (Closes: #366755) -- Dave Beckett Wed, 28 Jun 2006 19:04:10 -0700 libcairo (1.1.10-2) experimental; urgency=low * Add -Wl,-rpath,${libdir} to libcairo-directfb pkgconfig to make the linker use the libcairo in the libdir * Removed Provides: libcairo2 from libcairo-directfb2-udeb -- Dave Beckett Sun, 25 Jun 2006 10:20:40 -0700 libcairo (1.1.10-1) experimental; urgency=low * New upstream release * Renamed directfb packages to be libcairo-directfb2* * Use dh_makeshlibs with --add-udeb to make udeb: lines appear in shlibs * Depend on debhelper 5.0.22 to get a working dh_makeshlibs with --add-udeb -- Dave Beckett Sat, 24 Jun 2006 10:03:02 -0700 libcairo (1.1.8-1) experimental; urgency=low * New upstream release * Added libcairo2-directfb deb. -- Dave Beckett Wed, 14 Jun 2006 11:47:00 -0700 libcairo (1.1.6-1) experimental; urgency=low * New upstream release * Enable PNG, PDF and SVG backends (add Build-Depend: on libxml2) * Added Cairo DirectFB udeb packages libcairo2-directfb-udeb and libcairo2-directfb-dev (add Build-Depend: on libdirectfb-dev) * libcairo2-dev and libcairo2-directfb-dev can both be installed together * Stop using CDBS since it cannot handle the double configure and build setup. * Use dpatch for patching and Build-Depend: on it. -- Dave Beckett Mon, 12 Jun 2006 12:57:38 -0700 libcairo (1.0.4-2) unstable; urgency=low * Rebuild against X11R7 to fix .la breakage xorg caused (Closes: #362237) -- Dave Beckett Tue, 25 Apr 2006 22:00:36 -0700 libcairo (1.0.4-1) unstable; urgency=low * New upstream release * Removed patches merged upstream: - 01-INT_pixman.patch * Debhelper 5 -- Dave Beckett Wed, 5 Apr 2006 17:44:12 -0700 libcairo (1.0.2-4) unstable; urgency=low * Rebuild against current build dependencies since something in the build depends changed to make it stop working. This may be the most useless changelog entry ever. (Closes: #347675) -- Dave Beckett Thu, 12 Jan 2006 19:52:08 -0800 libcairo (1.0.2-3) unstable; urgency=low * Bump libcairo2 shlibs to 1.0.2-2 given all the freetype version changes. -- Dave Beckett Wed, 30 Nov 2005 09:21:02 -0800 libcairo (1.0.2-2) unstable; urgency=low * Fix libcairo2-doc section to doc (Closes: #337515) * Re-add patch 02-no-ft-glyphslot-embolden.patch to use only freetype 2.1.7 symbols even though sid has freetype 2.1.10. The latter has ABI changes beyond it's declared shlibs of 2.1.5 and is undergoing a large transition. Require freetype 2.1.7+ again. (Closes: #338817) * Added patch 01-INT_pixman.patch from CVS to remove spurious INT_ items that broke build with recent binutils (Closes: #340073) * Require pkg-config >= 0.18 since cairo.pc uses Require.private: -- Dave Beckett Fri, 25 Nov 2005 04:01:51 +0000 libcairo (1.0.2-1) unstable; urgency=low * New upstream release * Removed patch 01-endianess-cairo-xlib-surface.patch previously taken from upstream CVS. * Removed patch 02-no-ft-glyphslot-embolden.patch to re-allow configure to use FT_GlyphSlot_Embolden provided in freetype 2.1.10 which is now in sid. * Require freetype 2.1.10+ -- Dave Beckett Tue, 25 Oct 2005 18:45:57 +0100 libcairo (1.0.0-3) unstable; urgency=low * Added patch 02-no-ft-glyphslot-embolden.patch to disable use of FT_GlyphSlot_Embolden in freetype, which was added after the freetype version 2.1.7 currently in testing (closes: #325526) * Require freetype 2.1.7+ -- Dave Beckett Tue, 13 Sep 2005 19:33:38 +0100 libcairo (1.0.0-2) unstable; urgency=low * Added patch 01-endianess-cairo-xlib-surface.patch from CVS to fix endianess problem when running over remote X (Closes: #326920) * Register cairo docs with doc-base (Closes: #325541) -- Dave Beckett Tue, 6 Sep 2005 18:15:57 +0100 libcairo (1.0.0-1) unstable; urgency=low * New upstream release * Removed glitz backend as currently experimental and unsupported * debian/watch: update to use stable release area * Removed patch cairo-0.9.2-cache-eviction-fix.patch merged upstream. -- Dave Beckett Wed, 24 Aug 2005 18:14:23 +0100 libcairo (0.9.2-2) unstable; urgency=low * Add patch cairo-0.9.2-cache-eviction-fix.patch from Kristian Høgsberg to make the freetype font cache evict correctly. -- Dave Beckett Mon, 15 Aug 2005 19:48:43 +0100 libcairo (0.9.2-1) unstable; urgency=low * New upstream release * First stable API release - remove patching sonames * libcairo2, libcairo2-dev and libcairo2-doc replace all previous versions * No longer Depends: on libpixman, now an internal library -- Dave Beckett Sat, 13 Aug 2005 14:16:46 +0100 libcairo (0.9.0-1) unstable; urgency=low * New upstream release * libcairo0.9.0 replaces libcairo0.6.0 * Functions were added so create new sonames and libraries -- Dave Beckett Tue, 9 Aug 2005 08:21:50 +0100 libcairo (0.6.0-1) unstable; urgency=low * New upstream release * libcairo0.6.0 replaces libcairo0.5.1 * Functions were added so create new sonames and libraries * Require glitz 0.4.4 API and libpixman 0.1.5 -- Dave Beckett Fri, 29 Jul 2005 23:31:05 +0100 libcairo (0.5.1-2) unstable; urgency=low * Upload to unstable * libcairo0.5.1 replaces older libcairo1 * libcairo0.5.1-dev already conflicted with libcairo1-dev so enable shipping libcairo.so and delete patch 05-cairo.pc.in.patch as the cairo.pc.in is ok again -- Dave Beckett Sun, 10 Jul 2005 22:07:22 +0100 libcairo (0.5.1-1) experimental; urgency=low * New upstream release * Revert to source package name libcairo * Reflect ABI version into both library soname as libcairo-1debian0.5.1 and package name libcairo0.5.1 (Closes: #314776) * libcairo0.5.1 no longer conflicts with libcairo1 * Added a libcairo0.5.1-doc package with the HTML documentation -- Dave Beckett Wed, 22 Jun 2005 21:06:01 +0100 cairo (0.5.0-2) unstable; urgency=low * Fix the shlibs dependencies for libcairo0.5 -- Dave Beckett Thu, 9 Jun 2005 21:56:08 +0100 cairo (0.5.0-1) unstable; urgency=low * New upstream release (Closes: 311042) * Change source package s/lib// and add API version to binary packages * Enable glitz backend (Closes: 307573) -- Dave Beckett Thu, 9 Jun 2005 20:51:11 +0100 libcairo (0.4.0-1) unstable; urgency=low * New upstream release * API changes for fonts so shlib version is now 0.4.0 * Require libpixman 0.1.4 -- Dave Beckett Wed, 9 Mar 2005 19:39:44 +0000 libcairo (0.3.0-1) unstable; urgency=low * New upstream release. Closes: 284205 * Bumped shlibs version since new functions were added. * Headers have moved to below /usr/include/cairo * Require libpixman 0.1.3 -- Dave Beckett Sun, 6 Feb 2005 12:40:04 +0000 libcairo (0.2.0-1) unstable; urgency=low * New upstream release * Bumped shlibs version since new functions were added. * Require libpixman 0.1.2 * Still keep glitz disabled -- Dave Beckett Mon, 8 Nov 2004 22:19:29 +0000 libcairo (0.1.23-2) unstable; urgency=low * Replace Build-Depend on xlibs-dev with libx11-dev * Changed to LGPL license (in CVS 2004-08-02) * Disable use of glitz explicitly -- Dave Beckett Mon, 23 Aug 2004 22:25:16 +0100 libcairo (0.1.23-1) unstable; urgency=low * New upstream release. Closes: 248705 * Add PNG backend, require libpng12-dev * Requires libpixman >= 0.1.1 -- Dave Beckett Sat, 29 May 2004 21:10:58 +0100 libcairo (0.1.18-1) unstable; urgency=low * New upstream release * Remove xlib-surface-debian.patch, not needed for XFree86 4.3.0+ -- Dave Beckett Thu, 19 Feb 2004 23:08:25 +0000 libcairo (0.1.17-4) unstable; urgency=low * Initial version to debian archive. Closes: #205346 -- Dave Beckett Sun, 15 Feb 2004 21:45:47 +0000 libcairo (0.1.17-3) unstable; urgency=low * Setting me as the maintainer temporarily -- Eduard Bloch Sat, 14 Feb 2004 16:49:18 +0100 libcairo (0.1.17-2) unstable; urgency=low * Add patch/xlib-surface-debian.patch to restore this to working for X. -- Dave Beckett Sat, 24 Jan 2004 18:02:38 +0000 libcairo (0.1.17-1) unstable; urgency=low * New upstream release * Replace libpixman/libic dependencies with libpixman -- Dave Beckett Tue, 16 Dec 2003 17:49:55 +0000 libcairo (0.1.16-1) unstable; urgency=low * New upstream release * Added libxrender-dev (>=0.6.0) requirement to match configure.in -- Dave Beckett Mon, 8 Dec 2003 20:39:59 +0000 libcairo (0.1.13-1) unstable; urgency=low * New upstream release * Remove patch for src/config.h - merged upstream. * Return libfreetype6 minimum version to 2.1.0. -- Dave Beckett Fri, 21 Nov 2003 20:05:38 +0000 libcairo (0.1.12-3) unstable; urgency=low * Pull patch from CVS to allow building with newer freetype using the new include via defines mechanism now enforced in freetype 2.1.6 -- Dave Beckett Tue, 18 Nov 2003 20:15:08 +0000 libcairo (0.1.12-2) unstable; urgency=low * Remove dependency on libxft-dev, replaced with libfreetype6-dev and libfontconfig1-dev -- Dave Beckett Sat, 8 Nov 2003 18:44:19 +0000 libcairo (0.1.12-1) unstable; urgency=low * New upstream release -- Dave Beckett Fri, 7 Nov 2003 20:43:33 +0000 libcairo (0.1.11-1) unstable; urgency=low * New upstream release -- Dave Beckett Tue, 4 Nov 2003 15:10:14 +0000 libcairo (0.1.10-1) unstable; urgency=low * New upstream release -- Dave Beckett Tue, 4 Nov 2003 00:23:16 +0000 libcairo (0.1.9-2) unstable; urgency=low * Generate packages correctly named after the library major soname: libcairo1, libcairo1-dev -- Dave Beckett Thu, 30 Oct 2003 23:16:43 +0000 libcairo (0.1.9-1) unstable; urgency=low * New upstream release. * Removed dependency on automake, autoconf, libtool -- Dave Beckett Thu, 30 Oct 2003 21:37:25 +0000 libcairo (0.1.8-1) unstable; urgency=low * Initial package -- Dave Beckett Wed, 29 Oct 2003 23:20:26 +0000