Subject: CVS commit: [pkgsrc-2006Q1] pkgsrc/devel/chmlib
To: None <pkgsrc-changes@NetBSD.org>
From: Geert Hendrickx <ghen@netbsd.org>
List: pkgsrc-changes
Date: 06/23/2006 13:46:05
Module Name:	pkgsrc
Committed By:	ghen
Date:		Fri Jun 23 13:46:05 UTC 2006

Modified Files:
	pkgsrc/devel/chmlib [pkgsrc-2006Q1]: Makefile PLIST distinfo
	pkgsrc/devel/chmlib/patches [pkgsrc-2006Q1]: patch-ac
Removed Files:
	pkgsrc/devel/chmlib/patches [pkgsrc-2006Q1]: patch-ab

Log Message:
Pullup ticket 1708 - requested by salo
security update for chmlib

Revisions pulled up:
- pkgsrc/devel/chmlib/Makefile		1.14
- pkgsrc/devel/chmlib/PLIST		1.3
- pkgsrc/devel/chmlib/distinfo		1.11
- pkgsrc/devel/chmlib/patches/patch-ab	removed
- pkgsrc/devel/chmlib/patches/patch-ac	1.2

   Module Name:	pkgsrc
   Committed By:	salo
   Date:		Fri Jun 23 12:56:26 UTC 2006

   Modified Files:
	pkgsrc/devel/chmlib: Makefile PLIST distinfo
	pkgsrc/devel/chmlib/patches: patch-ac
   Removed Files:
	pkgsrc/devel/chmlib/patches: patch-ab

   Log Message:
   Update to version 0.38

   Changes:

   - Security fix for extract_chmLib.  Pathnames containing a ".." element
     will not be extracted.  There doesn't seem to be a legitimate reason
     to use ".." as a path element in a chm file.

     http://secunia.com/advisories/20734/

   - Fix for reading some chm files.  Running over a large directory of chm
     files, about 1% of them turned out to be unreadable.  This resulted
     from an incomplete understanding of one of the header fields
     (index_root).  Apparently, this can take negative values other than -1.


To generate a diff of this commit:
cvs rdiff -r1.13 -r1.13.2.1 pkgsrc/devel/chmlib/Makefile
cvs rdiff -r1.2 -r1.2.12.1 pkgsrc/devel/chmlib/PLIST
cvs rdiff -r1.10 -r1.10.2.1 pkgsrc/devel/chmlib/distinfo
cvs rdiff -r1.4 -r0 pkgsrc/devel/chmlib/patches/patch-ab
cvs rdiff -r1.1 -r1.1.2.1 pkgsrc/devel/chmlib/patches/patch-ac

Please note that diffs are not public domain; they are subject to the
copyright notices on the relevant files.