Debian Patches

Status for rplay/3.3.2-22

Patch Description Author Forwarded Bugs Origin Last update
01_previous_changes.patch New patch generated from rplay 3.3.2-12 diff.gz=================================================================== Sandro Tosi <matrixhasu@gmail.com> no
10_fix_manpages.patch Added to fix hyphen-used-as-minus-sign lintian warning Sandro Tosi <matrixhasu@gmail.com> no
20_soname.patch Add soname to library devrplay.so Thorsten Alteholz <debian@alteholz.de> no
30_contrib.patch void crash if there is nothing to play Thorsten Alteholz <debian@alteholz.de> no
40_clang.patch fix FTBFS with clang instead of gcc Nicolas Sévelin-Radiguet <nicosr@free.fr> no 2014-03-13
50_Makefile_hardening.patch add hardening flags to makefile=================================================================== Thorsten Alteholz <debian@alteholz.de> no
60_gcc14.patch fix issues found by gcc14=================================================================== no
70_gcc15.patch make it compile with gcc15=================================================================== no
80_CVE-2025-62672.patch fix SIGSEGV with crafted package in rplay_unpack() A security issue in function rplay_unpack() of librplay has been found (CVE-2025-62672).
Unfortunately this issue can not be fixed in rplay_unpack(), so this function has been
deprecated and a new function rplay_unpack_n() has been introduced. The old function
rplay_unpack() now always returns an error.
According to codesearch.d.n, rplay_unpack() is only used in rplay itself but not
in any reverse dependency, so no other package should be affected by this change.
===================================================================
no

All known versions for source package 'rplay'

Links