Skip to content

Changelog libcdio (1.0.0-2ubuntu2)


libcdio (1.0.0-2ubuntu2) bionic; urgency=medium

   * debian/patches/fix-more-double-free.patch: fix another double-free
     in lib/driver/_cdio_generic.c.  Closes LP: #1747112.

libcdio (1.0.0-2ubuntu1) bionic; urgency=medium

   * SECURITY UPDATE: Double free issue
     - debian/patches/CVE-2017-18201.patch: removes the
       double free code in lib/drivers/_cdio_generic.c.
     - CVE-2017-18201


libcdio (1.0.0-2) unstable; urgency=medium

   * Fix setting LIBCDIO_VERSION, taken from upstream.

libcdio (1.0.0-1) unstable; urgency=medium

   * QA upload.
   * New upstream version.
   * Build using libncursesw5-dev.

libcdio (0.94-1) unstable; urgency=medium

   * QA upload.
   * Orphan the package. See #881719.
   * Upload to unstable.
   * Mark development packages as M-A: same.

libcdio (0.94-0.2) experimental; urgency=medium

   * Non-maintainer upload.
   * libcdio-dev: Install missing cdio/memory.h header.

libcdio (0.94-0.1) experimental; urgency=medium

   * Non-maintainer upload.
   * New upstream version.
     - Fixes build failure with GCC 7. Closes: #841556.
   * Bump standards and debhelper versions.
   * Configure with --disable-silent-rules.
   * Make the build reproducible (Chris Lamb). Closes: #869516.
   * Bump sonames, update symbols files.


libcdio (0.92-2) experimental; urgency=low

   * debian/control:
       Remove the "Multi-Arch: no" field from the -dev packages: although
       this value is supposed to be correct according to deb_control(5),
       apt complains about it. As this value matches the default behaviour
       without a Muti-Arch: field, it can safely be removed.
       Thanks to Axel Beckert, Andreas Metzler and Dan Jacobson for
       pointing this. (Closes: #759109)

libcdio (0.92-1) experimental; urgency=low

   * The "Thanks Colin" release.
   * New upstream release. (Closes: #710064)
   * debian/control, debian/libcdio-cdda*, debian/libcdio-paranoia*:
       Remove the libcdio-cdda and libcdio-paranoia libraries, as they are
       now provided in a separate source tarball.
   * debian/control, debian/*.install:
       Update the package names to track the sonames.
   * debian/patches/00_manpage_fix_progname,
       Remove obsolete patches.
   * debian/control, debian/rules:
       Use dh-autoreconf instead of autotools-dev, as suggested by Colin
       Watson. (Closes: #732286)
   * debian/control, debian/rules, debian/*.install:
       Enable multi-arch for the shared library packages.
   * debian/*.symbols, debian/rules:
       Update shared libraries symbols and shlibs.
   * debian/copyright:
   * debian/control:
       Bump Standards-Version: to 3.9.5.


libcdio (0.83-4.1) unstable; urgency=low

   * Non-maintainer upload.
   * Use the autotools-dev dh addon to update config.guess/config.sub for
     arm64 (closes: #725929)


libcdio (0.83-4) unstable; urgency=low

   * Rebuild for unstable.

libcdio (0.83-3) experimental; urgency=low

   * debian/patches/05_revert_iso9660_set_pvd: New patch to prevent a FTBFS
       in vcdimager.

libcdio (0.83-2) experimental; urgency=low

   * libcdio-cdda1.symbols, libcdio-paranoia1.symbols, libcdio13.symbols,
     libiso9660-8.symbols, libudf0.symbols: Add symbols files for the


libcdio (0.83-1) experimental; urgency=low

   * New upstream release. (Closes: #647310)
   * debian/control, debian/*.install: Update the package names to track
       the sonames.
   * debian/libcdio-dev.install: Include the new header files.
   * debian/patches/00_manpage_fix_progname,
   * debian/patches/01_do_not_rebuild_manpages,
     debian/patches/05_avoid_unaligned_reads: Remove.

libcdio (0.81-5) unstable; urgency=low

   * The "Thank you Regis for your work" release.
   * Switch to dpkg-source 3.0 (quilt) format.
   * Split the big monolithic patch into several patches managed with
   * debian/rules: Add targets build-arch and build-indep, as suggested by
   * debian/compat: Switch to debhelper compatibility version 8.
     - debian/control: Update the Build-Depends accordingly.
     - debian/rules: No need to manually remove build-stamp any more in the
       clean target.
     - debian/rules: Replace the call to "dh_clean -k" (deprecated) with a
       call to dh_prep.
   * debian/control: Add ${misc:Depends} to the Depends field of all binary
     packages that lacked it, as suggested by lintian.
   * debian/control: Add "dpkg (>= 1.15.4) | install-info" to the
     dependencies of libcdio-dev, as suggested by lintian an policy 12.2.
   * debian/watch: Clean up, as suggested by lintian.
   * debian/control: Bump Standards-Version: to 3.9.2.

libcdio (0.81-4.1) unstable; urgency=low

   * Non-maintainer upload.
   * Stop shipping la files. Closes: #633327.
   * Use kfreebsd-any instead of a hardcoded list of kfreebsd-* architectures.
     Closes: #634360.


libcdio (0.81-4) unstable; urgency=low

   * Rebuild for unstable.
   * Fix the call to dh_shlibdeps.

libcdio (0.81-3) experimental; urgency=low

   * Avoid unaligned reads that cause bus errors on sparc.
   * Replace dpkg-awk with grep-dctrl.
   * Bump Standards-Version to 3.8.2:
     - Support the nocheck build option.

libcdio (0.81-2) experimental; urgency=low

   * Make sure that the won't fail because stderr is not
     a tty.

libcdio (0.81-1) experimental; urgency=low

   * New upstream release. (Closes: #489245, #520614)
     - Includes updated config.{guess,sub} that know about avr32.
       (Closes: #528645)
   * Update the package names to track the sonames.
   * Re-add the info documentation since it now is under the GFDL v1.2 with
     no invariant section, no front-cover text and no back-cover text,
     which is thought to be DFSG-compliant.
   * Update the debian/copyright file to reflect the the change of licence
     of the program (GPL v2 or above to GPL v3 or above) and info
     documentation, and to improve it (many copyright owners were missing).
   * Added 'posixness_fix' patch to correct POSIX incompatibilities, thanks
     to Marc Dequènes (Duck). (Closes: #530516)


libcdio (0.78.2+dfsg1-3) unstable; urgency=low

   * Fix the time-conversion functions of libiso9660, taking the changes
     from CVS. This caused the build to fail when running the regression
     tests if the build was run at the wrong time. Thanks to Lucas Nussbaum
     for reporting the problem. (Closes: #482511)
   * Add libcam-dev to libcdio-dev's dependencies for kfreebsd
     architectures, as suggested by Petr Salinger. (Closes: 468154)
   * Bump Standards-Version to 3.8.0:
     - Add a Homepage field in debian/control.

libcdio (0.78.2+dfsg1-2.1) unstable; urgency=low

   * Non-maintainer upload.
   * Fix GCC 4.3 compatibility, patch by Daniel Schepler
     (Closes: #461683, #461688)

libcdio (0.78.2+dfsg1-2) unstable; urgency=high

   * This update addresses the following security issue, thanks to Nico
     - CVE-2007-6613: a stack-based buffer overflow in the
       print_iso9660_recurse function could lead to cause a denial of
       service or arbitrary code execution if the iso-info or cd-info tool
       is used with a crafted iso image. (Closes: #459129)
   * Support GNU/kFreeBSD systems, thanks to Petr Salinger for his
     patch. (Closes: #449457)
   * Bump Standards-Version to 3.7.3 (no change needed).


libcdio (0.78.2+dfsg1-1) unstable; urgency=low

   * Repack the source tarball to remove non-DFSG-free
     documentation. Thanks to Joerg Jaspert for pointing this.
   * Also update debian/copyright to reflect the status of the removed
   * Add libncurses5-dev | libncurses-dev to the build-dependencies, for

libcdio (0.78.2-1) unstable; urgency=low

   * New upstream release. (Closes: #418604)
     - Handle ISO 9660 images larger that 2GB. (Closes: #432939)
     - No more iso9660_find_ifs_lsn function declared in iso9660.h but a
       iso9660_ifs_find_lsn that really is in libiso9660. (Closes: #395590)
   * Fix the handling of errors with strtol (taken from CVS).
   * Fix an off-by-one bug in the set_ltime_field macro, that lead to a
     random failure of the regression test.
   * Install all pkgconfig files.
   * Include manpages generated with help2man and slightly updated; install
   * Update the package names to track the sonames.
   * Add libcdio-utils, libudf0, libudf-dev packages.
   * Bump Standards-Version to 3.7.2 (no change needed).
   * Add a section to the source package, as suggested by lintian.
   * Use ${binary:Version} instead of the deprecated ${Source-Version},
     as suggested by lintian.
   * Don't ignore failures of "make distclean", as suggested by lintian.


libcdio (0.76-1) unstable; urgency=low

   * New upstream release. (Closes: #300903)
     - "new" isn't used anymore as an identifier in the header
        files. (Closes: #329082)
     - add new libcdio_cdda and libcdio_paranoia libraries.
   * Bump Standards-Version to 3.6.2 (no change needed).
   * Update the postal address of the FSF.
   * Move all -dev packages from section devel to section libdevel.
   * Add "--disable-cddb --disable-vcd-info" to the configure flags, to
     ensure a consistent build, even if libvcdinfo-dev or libcddb-dev in

libcdio (0.71-2) unstable; urgency=low

   * Comment out all extraneous declarations of
     'gl_default_cdio_log_handler'. (Closes: #289694)
   * Fix the broken symbol-versionning script.


libcdio (0.71-1) unstable; urgency=low

   * New upstream release. (Closes: #266778, #271236)
   * Update the package names to track the sonames.
   * Add a build-dependency on libpopt-dev, to ensure that all the tools
     are built and all the tests are run.
   * Fix a typo in upstream's lib/

libcdio (0.68-2) unstable; urgency=low

   * dh_install's --sourcedir option was added in debhelper 4.0.4; fix
     debian/control accordingly. Thanks to Koos van den Hout for pointing
     the problem. (Closes: #252679)
   * Moreover, dh_shlibdeps's -L option was only added in debhelper
     4.1.1. Bump the versioned build-dependency again.

libcdio (0.68-1) unstable; urgency=low

   * New upstream release.
     - Solve a few memory leaks and other memory errors discovered thanks
       to valgrind.

libcdio (0.67-1) unstable; urgency=low

   * New upstream release.
   * Update shlibs accordingly.

libcdio (0.66-2) unstable; urgency=low

   * Move GNUC_PACKED attribute to the proper place in include/cdio/xa.h in
     order to fix build failure on ARM.
   * Fix debian/watch file.

libcdio (0.66-1) unstable; urgency=low

   * Initial Release. (Closes: #199402)