Debian Patches

Status for htmldoc/1.9.11-4+deb11u3

Patch Description Author Forwarded Bugs Origin Last update
enforce_utf8_doc.patch Change copyright symbol htmldoc cannot convert the copyright symbol to utf8. HÃ¥vard Flaget Aasen <haavard_aasen@yahoo.no> not-needed 2020-12-28
manpage-fixes.patch Documentation fixes

This patch gives us a complete documentation build
Jeff Licquia <licquia@debian.org> not-needed 2019-12-21
useful-build-info.patch Build system patch

This patch makes the build system print useful information in case of
a build failure.
Jeff Licquia <licquia@debian.org> not-needed 2011-02-20
autoconf_fixes.patch Improve autoreconf/autoheader support

autoheader complained about a bunch "missing templates", because AC_DEFINE used
an older syntax, which failed the autoreconf step.
Reiner Herrmann <reiner@reiner-h.de> yes 2019-12-21
autoheader_support.patch move definitions from config.h.in to configure.ac

Upstream does not properly support autoheader. So when autoreconfiguring
and autoheader is called, upstream's config.h.in is overwritten, which
contains some constants/macros.
They are now redefined in configure.ac so that they will land in config.h(.in).
Reiner Herrmann <reiner@reiner-h.de> yes 2019-12-21
disable_libz.patch Disable zlib support

Since autoreconf is enabled, config.h.in is regenerated and enables zlib
support by default.
This enabled a code path that does not compile as it requires a cups-private
It is disabled here now, as it was also disabled in the past and in upstream's
default configuration.
Reiner Herrmann <reiner@reiner-h.de> not-needed 2019-12-21
remove-os-check.patch remove operating system check during .desktop installation

the files can also be installed on hurd and kfreebsd
Reiner Herrmann <reiner@reiner-h.de> not-needed 2019-12-21
Fix-crash-bug-with-bad-GIFs-Issue-423.patch Fix crash bug with bad GIFs (Issue #423)
CVE-2021-20308
Michael R Sweet <michael.r.sweet@gmail.com> yes debian upstream upstream, https://github.com/michaelrsweet/htmldoc/commit/6a8322a718b2ba5c440bd33e6f26d9e281c39654 2021-03-31
CVE-2022-24191.patch CVE-2022-24191
Fix a potential stack overflow bug with GIF images (Issue #470)
Michael R Sweet <michael.r.sweet@gmail.com> no 2022-01-25
CVE-2021-23158-CVE-2021-23191-CVE-2021-26252.patch CVE-2021-23158, CVE-2021-23191, CVE-2021-26252
Fix JPEG error handling (Issue #415)
Michael R Sweet <michael.r.sweet@gmail.com> yes debian upstream upstream, https://github.com/michaelrsweet/htmldoc/commit/369b2ea1fd0d0537ba707f20a2f047b6afd2fbdc 2021-04-01
CVE-2021-23165.patch CVE-2021-23165
Fix a number-up crash bug (Issue #413)
Michael R Sweet <michael.r.sweet@gmail.com> yes debian upstream upstream, https://github.com/michaelrsweet/htmldoc/commit/6e8a95561988500b5b5ae4861b3b0cbf4fba517f 2021-04-01
CVE-2021-23180.patch CVE-2021-23180
Fix a crash bug with malformed URIs (Issue #418)
Michael R Sweet <msweet@msweet.org> yes debian upstream upstream, https://github.com/michaelrsweet/htmldoc/commit/19c582fb32eac74b57e155cffbb529377a9e751a 2021-01-26
CVE-2021-23206.patch CVE-2021-23206
Fix crash bugs with bogus table attributes (Issue #416)
Michael R Sweet <michael.r.sweet@gmail.com> yes debian upstream upstream, https://github.com/michaelrsweet/htmldoc/commit/ba61a3ece382389ae4482c7027af8b32e8ab4cc8 2021-04-01
CVE-2021-26259.patch CVE-2021-26259
Fix a crash bug with bogus table attributes (Issue #417)
Michael R Sweet <michael.r.sweet@gmail.com> yes debian upstream upstream, https://github.com/michaelrsweet/htmldoc/commit/0ddab26a542c74770317b622e985c52430092ba5 2021-04-01
CVE-2021-26948.patch CVE-2021-26948
Fix crash bug with data: URIs (Issue #410)
=?utf-8?q?H=C3=A5vard_Flaget_Aasen?= <haavard_aasen@yahoo.no> yes debian upstream upstream, https://github.com/michaelrsweet/htmldoc/commit/008861d8339c6ec777e487770b70b95b1ed0c1d2 2021-06-03
CVE-2021-40985.patch CVE-2021-40985
Fix BMP crash bug (Issue #444)
Michael R Sweet <michael.r.sweet@gmail.com> no 2021-09-11
CVE-2021-43579.patch CVE-2021-43579
Fix potential BMP stack overflow (Issue #453)
Michael R Sweet <msweet@msweet.org> no 2021-11-05
CVE-2022-0534-1.patch commit 776cf0fc4c760f1fb7b966ce28dc92dd7d44ed50

Fix potential stack overflow with GIF images (Issue #463)

===================================================================
Michael R Sweet <michael.r.sweet@gmail.com> no 2022-01-07
CVE-2022-0534-2.patch commit 312f0f9c12f26fbe015cd0e6cefa40e4b99017d9

Block GIF images with a code size > 12 (Issue #463)

===================================================================
Michael R Sweet <michael.r.sweet@gmail.com> no 2022-01-07
CVE-2022-27114.patch CVE-2022-27114
Fix a potential integer overflow bug in the JPEG and PNG loaders (Issue #471)
All images are now limited to 4GiB of memory usage (37837x37837 pixels).
Michael R Sweet <michael.r.sweet@gmail.com> no upstream, https://github.com/michaelrsweet/htmldoc/commit/31f780487e5ddc426888638786cdc47631687275 2022-03-10
CVE-2022-28085.patch CVE-2022-28085
Call check_pages when writing links (Issue #480)
Michael R Sweet <michael.r.sweet@gmail.com> no upstream, https://github.com/michaelrsweet/htmldoc/commit/46c8ec2b9bccb8ccabff52d998c5eee77a228348 2022-03-24

All known versions for source package 'htmldoc'

Links