Compare commits

..

10 Commits

Author SHA1 Message Date
openeuler-ci-bot
56b32b9f57
!31 [sync] PR-26: fix CVE-2023-46361
From: @openeuler-sync-bot 
Reviewed-by: @t_feng 
Signed-off-by: @t_feng
2024-09-02 08:32:00 +00:00
zhangpan
4a1f161533 fix CVE-2023-46361
(cherry picked from commit 9b2751434c174dcad63765dc2483642a14a6dd57)
2024-09-02 15:32:38 +08:00
openeuler-ci-bot
392cc4ce91
!25 Update to 0.20
From: @dedv_dwe 
Reviewed-by: @open-bot 
Signed-off-by: @open-bot
2023-12-20 05:51:25 +00:00
ut004527
4a7eaee035 Update to 0.20 2023-12-13 17:35:40 +08:00
openeuler-ci-bot
ab2a67fce9
!21 [sync] PR-19: 添加sw架构
From: @openeuler-sync-bot 
Reviewed-by: @t_feng 
Signed-off-by: @t_feng
2022-11-17 13:58:59 +00:00
wzx
db96419056 Add sw64 architecture in spec file
Signed-off-by: wzx <wuzx1226@qq.com>
(cherry picked from commit a6d1bb1a9bc07b348dfb64472a814f3b82da50dc)
2022-11-17 21:11:58 +08:00
openeuler-ci-bot
47ac0362fb
!16 enable tests
From: @liuyumeng1 
Reviewed-by: @t_feng 
Signed-off-by: @t_feng
2022-04-06 06:15:46 +00:00
liuyumeng
faeac50de4 enable tests 2022-03-31 10:06:16 +08:00
openeuler-ci-bot
c14465c7b6 !14 fix fuzz test from open source community
From: @dowzyx
Reviewed-by: @orange-snn
Signed-off-by: @orange-snn
2021-03-27 18:01:20 +08:00
dowzyx
2dedc54653 fix fuzz test from open source community 2021-03-27 17:48:43 +08:00
4 changed files with 59 additions and 2 deletions

Binary file not shown.

BIN
0.20.tar.gz Normal file

Binary file not shown.

View File

@ -0,0 +1,26 @@
From ee53a7e4bc7819d32e8c0b2057885bcc97586bf3 Mon Sep 17 00:00:00 2001
From: Sebastian Rasmussen <sebras@gmail.com>
Date: Sun, 5 Nov 2023 12:21:52 +0100
Subject: [PATCH] Bug 705041: jbig2dec: Avoid uninitialized allocator in
command-line tool.
Reference:https://github.com/ArtifexSoftware/jbig2dec/commit/ee53a7e4bc7819d32e8c0b2057885bcc97586bf3
Conflict:NA
---
jbig2dec.c | 2 +-
1 file changed, 1 insertion(+), 1 deletion(-)
diff --git a/jbig2dec.c b/jbig2dec.c
index 15d204d..1e1dad8 100644
--- a/jbig2dec.c
+++ b/jbig2dec.c
@@ -567,7 +567,7 @@ main(int argc, char **argv)
{
jbig2dec_params_t params;
jbig2dec_error_callback_state_t error_callback_state;
- jbig2dec_allocator_t allocator_;
+ jbig2dec_allocator_t allocator_ = { 0 };
jbig2dec_allocator_t *allocator = &allocator_;
Jbig2Ctx *ctx = NULL;
FILE *f = NULL, *f_page = NULL;

View File

@ -1,12 +1,14 @@
Name: jbig2dec
Version: 0.19
Release: 1
Version: 0.20
Release: 2
Summary: A decoder implementation of the JBIG2 image compression format.
License: AGPLv3+
URL: https://jbig2dec.com/
Source0: https://github.com/ArtifexSoftware/jbig2dec/archive/%{version}.tar.gz
Patch6000: backport-CVE-2023-46361.patch
BuildRequires: gcc libtool chrpath
Provides: %{name}-libs = %{version}-%{release}
Obsoletes: %{name}-libs < %{version}-%{release}
@ -31,6 +33,10 @@ Files for jbig2dec development.
%configure
%make_build
%check
sed -i '1s/python/python3/' test_jbig2dec.py
make check
%install
%make_install
%delete_la_and_a
@ -39,7 +45,11 @@ Files for jbig2dec development.
chrpath -d %{buildroot}%{_bindir}/jbig2dec
mkdir -p %{buildroot}/etc/ld.so.conf.d
%ifarch sw_64
echo "/usr/lib" > %{buildroot}/etc/ld.so.conf.d/%{name}-%{_arch}.conf
%else
echo "/usr/lib64" > %{buildroot}/etc/ld.so.conf.d/%{name}-%{_arch}.conf
%endif
%ldconfig_scriptlets
@ -62,6 +72,27 @@ echo "/usr/lib64" > %{buildroot}/etc/ld.so.conf.d/%{name}-%{_arch}.conf
%{_mandir}/man1/%{name}.1*
%changelog
* Thu Aug 29 2024 zhangpan <zhangpan103@h-partners.com> - 0.20-2
- fix CVE-2023-46361
* Wed Dec 13 2023 wangqia <wangqia@uniontech.com> - 0.20-1
- Update to 0.20
* Thu Oct 27 2022 wuzx<wuzx1226@qq.com> - 0.19-4
- Type:feature
- CVE:NA
- SUG:NA
- DESC:Add sw64 architecture
* Thu Mar 31 2022 liuyumeng <liuyumeng5@h-partners.com> - 0.19-3
- enable tests
* Sat Mar 27 2021 dowzyx <zhaoyuxing2@huawei.com> - 0.19-2
- Type:bufix
- ID:NA
- SUG:NA
- DESC:fix fuzz test from open source community
* Thu Jan 28 2021 zhanzhimin <zhanzhimin@huawei.com> - 0.19-1
- update to 0.19