Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package htmldoc for openSUSE:Factory checked in at 2022-07-13 13:44:47 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/htmldoc (Old) and /work/SRC/openSUSE:Factory/.htmldoc.new.1523 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "htmldoc" Wed Jul 13 13:44:47 2022 rev:32 rq:988703 version:1.9.16 Changes: -------- --- /work/SRC/openSUSE:Factory/htmldoc/htmldoc.changes 2022-05-14 22:51:52.386969222 +0200 +++ /work/SRC/openSUSE:Factory/.htmldoc.new.1523/htmldoc.changes 2022-07-13 13:44:53.613989701 +0200 @@ -1,0 +2,14 @@ +Mon Jul 11 08:00:48 UTC 2022 - Dirk M??ller <dmuel...@suse.com> + +- update to 1.9.16: + * Added support for $DATE(format) and $TIME(format) header/footer strings + * (Issue #472) + * Fixed a potential image overflow bug with JPEG and PNG images (htmldoc-CVE-2022-27114.patch) + * Fixed potential heap overflow bugs with pages (CVE-2022-28085) + * Fixed potential use-after-free in blocks (Issue #484) + * Updated the GNU TLS HTTPS support code to use a faster connection shutdown + * mode (Issue #487) + * Fixed some minor Coverity warnings. +- drop htmldoc-CVE-2022-27114.patch, htmldoc-CVE-2022-28085.patch (upstream) + +------------------------------------------------------------------- Old: ---- htmldoc-1.9.15-source.tar.gz htmldoc-CVE-2022-27114.patch htmldoc-CVE-2022-28085.patch New: ---- htmldoc-1.9.16-source.tar.gz ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ htmldoc.spec ++++++ --- /var/tmp/diff_new_pack.lIYcqx/_old 2022-07-13 13:44:54.085990372 +0200 +++ /var/tmp/diff_new_pack.lIYcqx/_new 2022-07-13 13:44:54.085990372 +0200 @@ -17,17 +17,13 @@ Name: htmldoc -Version: 1.9.15 +Version: 1.9.16 Release: 0 Summary: HTML Processor that Generates HTML, PostScript, and PDF Files License: LGPL-2.1-or-later Group: Productivity/Publishing/HTML/Tools URL: https://michaelrsweet.github.io/htmldoc/index.html Source: https://github.com/michaelrsweet/htmldoc/releases/download/v%{version}/htmldoc-%{version}-source.tar.gz -# CVE-2022-28085 [bsc#1198933], Heap buffer overflow in function pdf_write_names in ps-pdf.cxx -Patch0: htmldoc-CVE-2022-28085.patch -# CVE-2022-27114 [bsc#1199370], image_load_jpeg can cause integer overflow -Patch1: htmldoc-CVE-2022-27114.patch BuildRequires: fltk-devel BuildRequires: gcc-c++ BuildRequires: hicolor-icon-theme ++++++ htmldoc-1.9.15-source.tar.gz -> htmldoc-1.9.16-source.tar.gz ++++++ ++++ 1766 lines of diff (skipped)