-
librsvg (2.48.9-1ubuntu0.20.04.4) focal-security; urgency=medium
* SECURITY UPDATE: Arbitrary file read when xinclude href has special
characters
- debian/patches/CVE-2023-38633.patch: validate URLs in
librsvg/rsvg-handle.c, rsvg_internals/src/allowed_url.rs,
rsvg_internals/src/filters/component_transfer.rs, tests/*.
- debian/patches/fix_old_rust_compat.patch: fix compatibility with
older rust versions in rsvg_internals/src/allowed_url.rs.
- CVE-2023-38633
* Don't fail the build on tests error for i386
-- Marc Deslauriers <email address hidden> Fri, 28 Jul 2023 08:56:58 -0400
-
librsvg (2.48.9-1ubuntu0.20.04.1) focal; urgency=medium
* SRU new upstream release to focal (LP: #1903329)
-- Olivier Tilloy <email address hidden> Mon, 30 Nov 2020 18:08:14 +0100
-
librsvg (2.48.7-1ubuntu0.20.04.1) focal; urgency=medium
* SRU new upstream release to focal (LP: #1884326)
-- Olivier Tilloy <email address hidden> Fri, 19 Jun 2020 23:19:37 +0200
-
librsvg (2.48.2-1) unstable; urgency=medium
* debian/control.in:
- Build-Depends on libharfbuzz-dev, new configure.ac requirement
[ Olivier Tilloy ]
* New upstream release
* Drop patch that was applied upstream
(578-Link-the-C-tests-to-harfbuzz-so-they-can-call-hb_vers.patch)
-- Sebastien Bacher <email address hidden> Tue, 07 Apr 2020 22:23:36 +0200
-
librsvg (2.48.0-2) unstable; urgency=medium
* Fix FTBFS in the tests due to missing link against libharfbuzz
(Closes: #955264)
* debian/control.in: Bump Standards-Version 4.5.0 (no further changes)
* debian/control.in: Mark the -doc package with Build-Profiles: <!nodoc>,
move the -doc package to BDI and add libgdk-pixbuf2.0-doc to it
-- Laurent Bigonville <email address hidden> Wed, 01 Apr 2020 00:11:51 +0200
-
librsvg (2.48.0-1) experimental; urgency=medium
* New upstream release
-- Olivier Tilloy <email address hidden> Fri, 13 Mar 2020 18:18:27 +0100
-
librsvg (2.46.4-1ubuntu1) focal; urgency=medium
* Make autopkgtests cross-test-friendly.
-- Steve Langasek <email address hidden> Sun, 08 Dec 2019 20:37:00 -0800
-
librsvg (2.46.4-1) unstable; urgency=medium
[ Philip Chimento ]
* New upstream release
* d/rules:
- Remove script to manipulate checksum of backtrace-sys, this crate
is no longer used
- Skip reftests, as they are tightly coupled to particular versions of
pixman, cairo, freetype, and pango
* d/librsvg2-2.install: Install librsvg.mo files, internationalization
was added in this version
* d/patches: Remove typenum-i386-ftbfs.patch, this was fixed in typenum
1.11.0, which is now used
[ Olivier Tilloy ]
* d/patches/thin-lto.patch: change LTO setting to 'thin', to work
around a bug in rustc that generates invalid DWARF
* d/librsvg2-2.symbols: updated symbols for new APIs
-- Olivier Tilloy <email address hidden> Wed, 27 Nov 2019 19:21:55 +0100
-
librsvg (2.44.15-1) unstable; urgency=medium
* Team upload
[ Andreas Henriksson ]
* Add patch to fix FTBFS with gtk-doc 1.32 (Closes: #939958)
[ Simon McVittie ]
* New upstream release
* Drop patches that were applied upstream
* Standards-Version: 4.4.1 (no changes required)
* d/rules: Generate German and American English locales, required for
systemLanguage attribute tests
-- Simon McVittie <email address hidden> Mon, 07 Oct 2019 20:59:14 +0100
-
librsvg (2.44.14-1) unstable; urgency=medium
* Team upload
* New upstream release
* Update to upstream librsvg-2.44 branch at commit 2.44.14-3-g98c0eba8,
disregarding CI-only changes
- Respect the direction property for bidi text
- Be compatible with older rustc
* d/copyright: Update
* Drop patches that were applied upstream
* Stop building rsvg-view-3. It has been removed upstream and will not
be included in librsvg 2.45.x. The upstream developer of librsvg
suggests eog as a better interactive GUI SVG viewer; display(1) from
ImageMagick is another possibility.
- Drop GTK build-dependency
* Standards-Version: 4.4.0 (no changes required)
* Use debhelper-compat 12
- Drop --libexecdir override, /usr/libexec is now the default
-- Simon McVittie <email address hidden> Mon, 12 Aug 2019 08:24:49 +0100