RPM Fusion (Fedora - free) Package Build Report 2010-10-10

rpmfusion-pkgs-report at rpmfusion.org rpmfusion-pkgs-report at rpmfusion.org
Sun Oct 10 15:55:50 CEST 2010


============================================================================
Packages built and released for RPM Fusion (Fedora - free) testing/13: 4

    freetype-freeworld-2.3.11-3.fc13
    open-vm-tools-0.0.0.253928-1.fc13
    open-vm-tools-kmod-0.0.0.253928-1.fc13
    pragha-0.8.2-1.fc13


============================================================================
Packages built and released for RPM Fusion (Fedora - free) testing/12: 1

    freetype-freeworld-2.3.11-2.fc12


============================================================================
Packages built and released for RPM Fusion (Fedora - free) development: 5

    freetype-freeworld-2.4.2-2.fc14
    libtunepimp-extras-freeworld-0.5.3-7.fc14
    open-vm-tools-kmod-0.0.0.301124-1.fc14
    pragha-0.8.2-1.fc14
    rpmfusion-free-release-14-0.3


============================================================================
Changes in RPM Fusion (Fedora - free) testing/13: 


freetype-freeworld-2.3.11-3.fc13
--------------------------------
* Tue Oct 05 2010 Kevin Kofler <Kevin at tigcc.ticalc.org> 2.3.11-3
- Update the description to reflect that the bytecode interpreter was disabled
  in Fedora again.
- Restore the conditionals (for the above reason).
- Add freetype-2.3.11-CVE-2010-2805.patch
    (Fix comparison.)
- Add freetype-2.3.11-CVE-2010-2806.patch
    (Protect against negative string_size. Fix comparison.)
- Add freetype-2.3.11-CVE-2010-2808.patch
    (Check the total length of collected POST segments.)
- Add freetype-2.3.11-CVE-2010-3311.patch
    (Don't seek behind end of stream.)
- Resolves: rh#638522
- Add freetype-2.3.11-CVE-2010-1797.patch
    (Check stack after execution of operations too.
     Skip the evaluations of the values in decoder, if
     cff_decoder_parse_charstrings() returns any error.)
- Resolves: rh#621627
- Add freetype-2.3.11-CVE-2010-2498.patch
    (Assure that `end_point' is not larger than `glyph->num_points')
- Add freetype-2.3.11-CVE-2010-2499.patch
    (Check the buffer size during gathering PFB fragments)
- Add freetype-2.3.11-CVE-2010-2500.patch
    (Use smaller threshold values for `width' and `height')
- Add freetype-2.3.11-CVE-2010-2519.patch
    (Check `rlen' the length of fragment declared in the POST fragment header)
- Add freetype-2.3.11-CVE-2010-2520.patch
    (Fix bounds check)
- Resolves: rh#613299

open-vm-tools-0.0.0.253928-1.fc13
---------------------------------
* Tue Oct 05 2010 Denis Leroy <denis at poolshark.org> - 0.0.0.253928-1
- Update to build 253928
- Some files section updates

open-vm-tools-kmod-0.0.0.253928-1.fc13
--------------------------------------
* Tue Oct 05 2010 Denis Leroy <denis at poolshark.org> - 0.0.0.253928-1
- Update to build 253928
- Removed pvscsi module, upstream since 2.6.33

pragha-0.8.2-1.fc13
-------------------
* Sun Oct 03 2010 Christoph Wickert <cwickert at fedoraproject.org> - 0.8.2-1
- Update to 0.8.2

* Sat Aug 21 2010 Thorsten Leemhuis <fedora [AT] leemhuis [DOT] info> - 0.8.0.2-3
- rebuilt

* Mon Aug 02 2010 Christoph Wickert <cwickert at fedoraproject.org> - 0.8.0.2-2
- Fix desktop file


============================================================================
Changes in RPM Fusion (Fedora - free) testing/12: 


freetype-freeworld-2.3.11-2.fc12
--------------------------------
* Tue Oct 05 2010 Kevin Kofler <Kevin at tigcc.ticalc.org> 2.3.11-2
- Update the description to reflect that the bytecode interpreter is no longer
  patented (but still disabled in the stock Fedora freetype).
- Add freetype-2.3.11-CVE-2010-2805.patch
    (Fix comparison.)
- Add freetype-2.3.11-CVE-2010-2806.patch
    (Protect against negative string_size. Fix comparison.)
- Add freetype-2.3.11-CVE-2010-2808.patch
    (Check the total length of collected POST segments.)
- Add freetype-2.3.11-CVE-2010-3311.patch
    (Don't seek behind end of stream.)
- Resolves: rh#638522
- Add freetype-2.3.11-CVE-2010-1797.patch
    (Check stack after execution of operations too.
     Skip the evaluations of the values in decoder, if
     cff_decoder_parse_charstrings() returns any error.)
- Resolves: rh#621627
- Add freetype-2.3.11-CVE-2010-2498.patch
    (Assure that `end_point' is not larger than `glyph->num_points')
- Add freetype-2.3.11-CVE-2010-2499.patch
    (Check the buffer size during gathering PFB fragments)
- Add freetype-2.3.11-CVE-2010-2500.patch
    (Use smaller threshold values for `width' and `height')
- Add freetype-2.3.11-CVE-2010-2519.patch
    (Check `rlen' the length of fragment declared in the POST fragment header)
- Add freetype-2.3.11-CVE-2010-2520.patch
    (Fix bounds check)
- Resolves: rh#613299


============================================================================
Changes in RPM Fusion (Fedora - free) development: 


freetype-freeworld-2.4.2-2.fc14
-------------------------------
* Wed Oct 06 2010 Kevin Kofler <Kevin at tigcc.ticalc.org> 2.4.2-2
- Add freetype-2.4.2-CVE-2010-3311.patch
    (Don't seek behind end of stream.)
- Resolves: rh#638522

* Wed Oct 06 2010 Kevin Kofler <Kevin at tigcc.ticalc.org> 2.4.2-1
- Update to 2.4.2 (matches Fedora freetype, fixes several security issues)
- Update the description to reflect that the bytecode interpreter was disabled
  in the stock Fedora freetype again.
- Restore the conditionals (for the above reason).
- Remove unused with_xfree86 conditional.

libtunepimp-extras-freeworld-0.5.3-7.fc14
-----------------------------------------
* Fri Apr 03 2009 Rex Dieter <rdieter at fedoraproject.org> - 0.5.3-7
- fix build (port fedora/rawhide build fixes)

open-vm-tools-kmod-0.0.0.301124-1.fc14
--------------------------------------
* Tue Oct 05 2010 Denis Leroy <denis at poolshark.org> - 0.0.0.301124-1
- Update to build 301124
- vmemctl and pvscsi are upstreamed as of kernel 2.6.34

pragha-0.8.2-1.fc14
-------------------
* Sun Oct 03 2010 Christoph Wickert <cwickert at fedoraproject.org> - 0.8.2-1
- Update to 0.8.2

rpmfusion-free-release-14-0.3
-----------------------------
* Sun Oct 10 2010 Thorsten Leemhuis <fedora at leemhuis.info> - 14-0.3
- branching for F14: disable rawhide, enable everything and updates



More information about the rpmfusion-developers mailing list