[ubuntu/kinetic-proposed] zlib 1:1.2.11.dfsg-4.1ubuntu1 (Accepted)

Steve Langasek steve.langasek at ubuntu.com
Thu Aug 18 16:16:14 UTC 2022


zlib (1:1.2.11.dfsg-4.1ubuntu1) kinetic; urgency=low

  * Merge from Debian unstable. Remaining changes:
    - Build x32 packages
    - debian/zlib-core.symbols: Drop dfsg suffix from version
    - Add watch file, with GPG tarball checking, and version mangling
    - Cherry-pick Permit-a-deflateParams-parameter-change-asap.patch:
    - Cherrypick PR#410 to enable hardware-accelerated deflate.
    - Copmile with DFLTCC enabled on s390x.
    - Improve crc32 performance on P8, proposed upstream patch.
    - Enable hardware compression on s390x at level 6.
    - Cherrypick update of s390x hw acceleration #410 pull request patch,
      which corrects inflateSyncPoint() return value to always gracefully
      fail when hw acceleration is in use.
    - d/rules: use configure options for dfltcc instead of hardcoding
       the CFLAGS
    - d/p/lp1932010-ibm-z-add-vectorized-crc32-implementation.patch
      ported from zlib-ng #912, adding a vectorized implementation
      of CRC32 on s390x architectures based on kernel code.
    - d/p/lp1932010-ibm-z-add-vectorized-crc32-implementation.patch: adjust
      to not make a PLT call in an ifunc on s390/s390x.
    - debian/patches/CVE-2018-25032-2.patch: assure that the number of bits
      for deflatePrime() is valid in deflate.c.
    - d/p/410-lp1961427.patch ported from zlib #410, fixing
      compressBound() with hw acceleration.
  * Dropped changes, included in Debian:
    - debian/patches/CVE-2018-25032-1.patch: fix a bug that can crash
      deflate on some input when using Z_FIXED in deflate.c, deflate.h.
  * Refresh 410.patch for upstream changes.

zlib (1:1.2.11.dfsg-4.1) unstable; urgency=medium

  * Non-maintainer upload.
  * Fix a bug when getting a gzip header extra field with inflate()
    (CVE-2022-37434) (Closes: #1016710)
  * Fix extra field processing bug that dereferences NULL state->head

zlib (1:1.2.11.dfsg-4) unstable; urgency=medium

  * Pick upstream patch for CVE-2018-25032 (closes: #1008265).

zlib (1:1.2.11.dfsg-3) unstable; urgency=low

  * Add build-arch and build-indep (#999292).
  * Bump debhelper requirement to current.
  * Add win32 to the list of files excluded from the DFSG
    tarball (closes: #919598).
  * Tighten matching for 32 bit architectures using patch from
    Helmut Grohne (closes: #1006799).
  * Policy 4.0.0 (no changes).

Date: Thu, 18 Aug 2022 09:09:22 -0700
Changed-By: Steve Langasek <steve.langasek at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/+source/zlib/1:1.2.11.dfsg-4.1ubuntu1
-------------- next part --------------
Format: 1.8
Date: Thu, 18 Aug 2022 09:09:22 -0700
Source: zlib
Built-For-Profiles: noudeb
Architecture: source
Version: 1:1.2.11.dfsg-4.1ubuntu1
Distribution: kinetic
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Steve Langasek <steve.langasek at ubuntu.com>
Closes: 919598 1006799 1008265 1016710
Changes:
 zlib (1:1.2.11.dfsg-4.1ubuntu1) kinetic; urgency=low
 .
   * Merge from Debian unstable. Remaining changes:
     - Build x32 packages
     - debian/zlib-core.symbols: Drop dfsg suffix from version
     - Add watch file, with GPG tarball checking, and version mangling
     - Cherry-pick Permit-a-deflateParams-parameter-change-asap.patch:
     - Cherrypick PR#410 to enable hardware-accelerated deflate.
     - Copmile with DFLTCC enabled on s390x.
     - Improve crc32 performance on P8, proposed upstream patch.
     - Enable hardware compression on s390x at level 6.
     - Cherrypick update of s390x hw acceleration #410 pull request patch,
       which corrects inflateSyncPoint() return value to always gracefully
       fail when hw acceleration is in use.
     - d/rules: use configure options for dfltcc instead of hardcoding
        the CFLAGS
     - d/p/lp1932010-ibm-z-add-vectorized-crc32-implementation.patch
       ported from zlib-ng #912, adding a vectorized implementation
       of CRC32 on s390x architectures based on kernel code.
     - d/p/lp1932010-ibm-z-add-vectorized-crc32-implementation.patch: adjust
       to not make a PLT call in an ifunc on s390/s390x.
     - debian/patches/CVE-2018-25032-2.patch: assure that the number of bits
       for deflatePrime() is valid in deflate.c.
     - d/p/410-lp1961427.patch ported from zlib #410, fixing
       compressBound() with hw acceleration.
   * Dropped changes, included in Debian:
     - debian/patches/CVE-2018-25032-1.patch: fix a bug that can crash
       deflate on some input when using Z_FIXED in deflate.c, deflate.h.
   * Refresh 410.patch for upstream changes.
 .
 zlib (1:1.2.11.dfsg-4.1) unstable; urgency=medium
 .
   * Non-maintainer upload.
   * Fix a bug when getting a gzip header extra field with inflate()
     (CVE-2022-37434) (Closes: #1016710)
   * Fix extra field processing bug that dereferences NULL state->head
 .
 zlib (1:1.2.11.dfsg-4) unstable; urgency=medium
 .
   * Pick upstream patch for CVE-2018-25032 (closes: #1008265).
 .
 zlib (1:1.2.11.dfsg-3) unstable; urgency=low
 .
   * Add build-arch and build-indep (#999292).
   * Bump debhelper requirement to current.
   * Add win32 to the list of files excluded from the DFSG
     tarball (closes: #919598).
   * Tighten matching for 32 bit architectures using patch from
     Helmut Grohne (closes: #1006799).
   * Policy 4.0.0 (no changes).
Checksums-Sha1:
 e47e23b63e2bd974171e99a5196e6635e1d72574 2990 zlib_1.2.11.dfsg-4.1ubuntu1.dsc
 83e27c40392d1ba1f955bb04b94441ea79714590 60668 zlib_1.2.11.dfsg-4.1ubuntu1.debian.tar.xz
 143fa14bd3f7121af0a16a17fbe4d44583975e13 7123 zlib_1.2.11.dfsg-4.1ubuntu1_source.buildinfo
Checksums-Sha256:
 994131567c8305de73ca70e3f5405a565c7c23440c046fa1467940f2aa943182 2990 zlib_1.2.11.dfsg-4.1ubuntu1.dsc
 c19f21521a6df2ca52c97491e8655488a5cd277400dbb2ea847e2fb828507626 60668 zlib_1.2.11.dfsg-4.1ubuntu1.debian.tar.xz
 b14dc2c2066534a70639937a54b07f9ad5d13ef55e30b26f82416e8dcc6819ba 7123 zlib_1.2.11.dfsg-4.1ubuntu1_source.buildinfo
Files:
 fabd07c2a7dc8d122f9f71567b1ba1f0 2990 libs optional zlib_1.2.11.dfsg-4.1ubuntu1.dsc
 27026eefeb37184bf5100b92d6bf9111 60668 libs optional zlib_1.2.11.dfsg-4.1ubuntu1.debian.tar.xz
 d287ae1061c3eeb8c8151c08d1150af7 7123 libs optional zlib_1.2.11.dfsg-4.1ubuntu1_source.buildinfo
Original-Maintainer: Mark Brown <broonie at debian.org>


More information about the kinetic-changes mailing list