Change logs for gimp source package in Quantal

  • gimp (2.8.2-1ubuntu1.2) quantal-security; urgency=low
    
      * SECURITY UPDATE: denial of service and possible code execution via
        huge color maps in xwd plugin
        - debian/patches/CVE-2013-1913.patch: limit number of color map entries
          in plug-ins/common/file-xwd.c.
        - CVE-2013-1913
      * SECURITY UPDATE: denial of service and possible code execution via
        large number of color map entries in xwd plugin
        - debian/patches/CVE-2013-1978.patch: validate number of color map
          entries in plug-ins/common/file-xwd.c
        - CVE-2013-1978
     -- Marc Deslauriers <email address hidden>   Fri, 06 Dec 2013 13:27:24 -0500
  • gimp (2.8.2-1ubuntu1.1) quantal-security; urgency=low
    
      * SECURITY UPDATE: code execution via malformed xwd files
        - debian/patches/CVE-2012-5576.patch: validate sizes in
          plug-ins/common/file-xwd.c.
        - CVE-2012-5576
     -- Marc Deslauriers <email address hidden>   Thu, 06 Dec 2012 13:27:44 -0500
  • gimp (2.8.2-1ubuntu1) quantal; urgency=low
    
      * Merge from Debian unstable (LP: #1050831). Remaining Ubuntu changes:
      * debian/control:
        - Update description
        - Build-depend on libtiff-dev instead of libtiff4-dev.
      * debian/rules:
        - Set gettext domain and update translation templates
      * debian/patches/02_help-message.patch:
      * debian/patches/03_gimp.desktop.in.in.patch:
        - Update some strings for Ubuntu
     -- Robert Ancell <email address hidden>   Wed, 19 Sep 2012 17:16:47 +1200
  • gimp (2.8.0-2ubuntu3) quantal; urgency=low
    
      * SECURITY UPDATE: denial of service via malformed .fit file header
        - debian/patches/CVE-2012-3236.patch: check for valid XTENSION header
          in plug-ins/file-fits/fits-io.c.
        - CVE-2012-3236
      * SECURITY UPDATE: denial of service and possible code execution via
        crafted KiSS palette file
        - debian/patches/CVE-2012-3403.patch: validate return codes and header
          data in plug-ins/common/file-cel.c.
        - CVE-2012-3403
      * SECURITY UPDATE: denial of service and possible code execution via
        crafted GIF image file
        - debian/patches/CVE-2012-3481.patch: validate sizes, and prevent
          overflows in plug-ins/common/file-gif-load.c.
        - CVE-2012-3481
     -- Marc Deslauriers <email address hidden>   Wed, 05 Sep 2012 13:29:00 -0400
  • gimp (2.8.0-2ubuntu2) quantal; urgency=low
    
      * debian/control: specify libtiff-dev in place of libtiff4-dev.
     -- Serge Hallyn <email address hidden>   Wed, 11 Jul 2012 15:30:36 -0500
  • gimp (2.8.0-2ubuntu1) quantal; urgency=low
    
      * Merge from Debian unstable (LP: #908472). Remaining Changes:
        - debian/patches/02_help-message.patch,
          debian/patches/03_gimp.desktop.in.in.patch:
          + Update some strings for Ubuntu
        - debian/control:
          + Update description
        - debian/rules:
          + Set gettext domain and update translation templates
      * Drop the following patches that were applied upstream:
        - debian/patches/ghost-cursor.patch: fix Wacom tablet cursor events
        - debian/patches/embed-page-setup-dialog.patch
    
    gimp (2.8.0-2) unstable; urgency=low
    
      [ Jordi Mallach ]
      * Use a shlibs.local file to force a dependency on libbabl >= 0.1.10.
        GIMP has an internal check for this version and will refuse to start
        otherwise, as it relies on some optimisations made to babl in
        0.1.8 → 0.1.10 (closes: #672247).
    
      [ Ari Pollak ]
      * Add Breaks/Replaces on old gimp-plugin-registry because of conflicting
        file-xmc plugin.
    
    gimp (2.8.0-1) experimental; urgency=low
    
      * New upstream stable release (closes: #644182, #671399).
        - “Create” menu item is now accessible via a mnemonic (closes: #610579).
        - fixes build error with GEGL 0.2 (closes: #671982).
      * Massive update of Build-Depends, to ensure all new features are
        enabled (bzip2 compression, JPEG 2000, Ghostscript, PDF export, GUdev,
        X Mourse Cursor and others), as per configure.ac.
      * Build depend on unversioned libpng-dev (closes: #662347).
      * Don't pass --without-hal to configure, it's obsolete.
      * Build-Depend on gnome-pkg-tools and include check-dist.mk.
      * Update Vcs-* URLs.
      * Remove duplicate Section fields.
      * Remove gimp.preinst, it only handled upgrades from pre-lenny.
      * Use an explicit "set -e" in other maint scripts, instead of using the
        shebang.
      * Drop 01_debian_gimprc.patch, obsolete. The web-browser config option
        is now gone and by default gimp will open help internally.
      * Rename fix_gimp4hurd.patch to 01_hurd_ftbfs.patch.
      * Drop part of 01_hurd_ftbfs.patch which has been applied upstream, and
        add a patch header.
      * Update watch file so it works for any new stable release directories.
      * Rewrite copyright file in machine-readable format 1.0. The GIMP is now
        licensed under the (L)GPLv3+.
      * Pass -- -V -c4 to dh_makeshlibs.
      * Rename all .files files to .install, and stop calling dh_movefiles.
      * Rename BUILDDIR to “builddir”, as “build” is now a real directory in
        the distribution.
      * Add myself to Uploaders.
      * Configure with --disable-static and stop distributing .a files.
      * Update libgimp2.0.symbols.
      * Build-Depend on GTK-2.0, GDK-Pixbuf and GLib -doc packages to ensure
        proper cross-reference links in generated gtk-doc API documentation.
      * Bump Standards-Version to 3.9.3, with no further changes.
     -- Micah Gersten <email address hidden>   Sun, 20 May 2012 19:21:01 -0500
  • gimp (2.6.12-1ubuntu1) precise; urgency=low
    
      * Merge from Debian unstable (LP: #925674). Remaining Changes:
        - debian/patches/02_help-message.patch,
          debian/patches/03_gimp.desktop.in.in.patch:
          + Update some strings for Ubuntu
        - debian/patches/ghost-cursor.patch: fix Wacom tablet cursor events
        - debian/control:
          + Update description
        - debian/rules:
          + Set gettext domain and update translation templates
    
      * Drop poppler patch as it's been applied upstream
        - drop debian/patches/poppler0.18.patch
        - update debian/patches/series
      * fix LP: #680521 - Embed page setup dialog functionality in the print dialog
        - add debian/patches/embed-page-setup-dialog.patch
        - update debian/patches/series
    
    gimp (2.6.12-1) unstable; urgency=low
    
      * Imported Upstream version 2.6.12
      * Add ${misc:Depends} variables to packages that were missing it
      * Call default versioned python binary instead of just /usr/bin/python
    
    gimp (2.6.11-8) unstable; urgency=low
    
      * Really add the patch this time (Closes: #651387)
    
    gimp (2.6.11-7) unstable; urgency=low
    
      * poppler0.18.patch: Port file-pdf plugin to poppler 0.18 API. Patch taken
        from Fedora via Ubuntu.
        (Closes: #651387)
    
    gimp (2.6.11-6) unstable; urgency=low
    
      * libpng_compile.patch:
          - Apply patch from upstream to fix compilation with libpng 1.5
            (Closes: #649972)
     -- Micah Gersten <email address hidden>   Wed, 22 Feb 2012 23:47:53 -0600