Debian Patches

Status for jq/1.7.1-6+deb13u2

Patch Description Author Forwarded Bugs Origin Last update
patch-version-into-build.patch Set release version manually.
jq sets the build version by parsing the git branch. There is no git branch during
package building however. This patch sets the version manually. The version can be
looked up using `git describe --tags --match 'upstream*' | sed 's/^upstream\///'`.
"ChangZhuo Chen (陳昌倬)" yes upstream 2014-06-21
dont-distribute-duplicate-docs.patch Do not distribute COPYING, fixes lintian warning "ChangZhuo Chen (陳昌倬)" not-needed 2015-10-11
0008-Do-not-use-venderized-oniguruma.patch Do not use venderized oniguruma "ChangZhuo Chen (陳昌倬)" no 2018-11-04
disable-static-libtool.patch Ensure jq doesn't statically link in libraries Harlan Lieberman-Berg <hlieberman@debian.org> not-needed 2018-11-04
0006-Do-not-use-pipenv-to-build-docs.patch Do not use pipenv to build docs "ChangZhuo Chen (陳昌倬)" no 2023-09-13
libtool.patch no
CVE-2024-53427.patch Reject NaN with payload while parsing JSON "ChangZhuo Chen (陳昌倬)" no 2025-04-12
CVE-2024-23337.patch Fix signed integer overflow in jvp_array_write and jvp_object_rehash "ChangZhuo Chen (陳昌倬)" no 2025-05-25
CVE-2025-48060.patch Fix heap buffer overflow when formatting an empty string "ChangZhuo Chen (陳昌倬)" no 2025-07-08
CVE-2026-33947.patch CVE-2026-33947 "ChangZhuo Chen (陳昌倬)" no https://github.com/jqlang/jq/commit/fb59f1491058d58bdc3e8dd28f1773d1ac690a1f 2026-04-17
CVE-2026-33948.patch CVE-2026-33948 "ChangZhuo Chen (陳昌倬)" no https://github.com/jqlang/jq/commit/6374ae0bcdfe33a18eb0ae6db28493b1f34a0a5b 2026-04-17
CVE-2026-39956.patch CVE-2026-39956 "ChangZhuo Chen (陳昌倬)" no https://github.com/jqlang/jq/commit/fdf8ef0f0810e3d365cdd5160de43db46f57ed03 2026-04-17
CVE-2026-39979.patch CVE-2026-39979 "ChangZhuo Chen (陳昌倬)" no https://github.com/jqlang/jq/commit/2f09060afab23fe9390cce7cb860b10416e1bf5f 2026-04-17
CVE-2026-40164.patch CVE-2026-40164 "ChangZhuo Chen (陳昌倬)" no https://github.com/jqlang/jq/commit/0c7d133c3c7e37c00b6d46b658a02244fdd3c784 2026-04-17

All known versions for source package 'jq'

Links