[Pkg-kde-talk] Please allow kdenetwork and kdelibs into Sarge

Christopher Martin Christopher Martin <christopher.martin@utoronto.ca>
Mon, 9 May 2005 08:32:54 -0400


--nextPart2337504.MzxYFnTM2k
Content-Type: text/plain;
  charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable
Content-Disposition: inline

Hello,

kdenetwork 4:3.3.2-3, replacing 4:3.3.2-1 in Sarge, fixes a number of bugs,=
=20
including several that are RC. These packages have been in Sid for some=20
time, but held out due to missing buildds, so they've proven themselves=20
solid. The most recent upload, from late April, contained only packaging=20
changes:

kdenetwork (4:3.3.2-3) unstable; urgency=3Dhigh

  * Urgency high because we fix a recently discovered FTBFS that prevents=20
the previous medium-urgency upload to migrate to testing. Only=20
debian/control is changed in this upload.

  +++ Changes by Adeodato Sim=F3:

  * xmms-dev has recently moved from depending on xlibs-dev to specifying=20
the exact list of development libraries needed (see Bug#302059), which=20
makes kdenetwork fail to build from source now, Add libxtst-dev to=20
Build-Depends. (Closes: #305942)

  * Make ksirc recommend libio-socket-ssl-perl, so that SSL connections=20
work. Mention this in the package description. (Closes: #294331)

 -- Debian Qt/KDE Maintainers <debian-qt-kde@lists.debian.org>  Sat, 23 Apr=
=20
2005 04:51:30 +0200

kdenetwork (4:3.3.2-2) unstable; urgency=3Dmedium

  +++ Changes by Christopher Martin:

  * KDE_3_3_BRANCH update. Kopete loses rich-text support in ICQ, but works=
=20
around an exploitable crash when contacted by icq5 clients. Bump urgency to=
=20
medium since these fixes are RC. (Closes: #295265, #297861)

  * Change kopete's section to kde. (Closes: #292398)

  * Include the GFDL in debian/copyright, since the Handbooks are licensed=
=20
under it.

  * Daniel Stone has kindly relicensed man pages written by him from GDFL t=
o=20
GPL, update copyright notice in kopete.1.

  +++ Changes by Adeodato Sim=F3:

  * kopete no longer depends on XMMS, which it did simply because the Now=20
Listening plugin was linked against libxmms. Added a patch to dlopen=20
libxmms at runtime and use it if present, so that the plugin remains=20
functional even if XMMS is not installed. (Closes: #238368, #276586,=20
#292963, #293191)

 -- Debian Qt/KDE Maintainers <debian-qt-kde@lists.debian.org>  Wed, 30 Mar=
=20
2005 11:49:58 +0200

As for kdelibs, the sole change between 4:3.3.2-5 and 4:3.3.2-6 is that we=
=20
added a very small patch (from upstream) to upstream's latest security fix,=
=20
which caused regressions reading some image files. Definitely worth getting=
=20
into Sarge, even if the problem doesn't seem to have security implications.

23_kimgio_fix.diff
=2D-- kde.orig/kimgio/rgb.cpp
+++ kde.patched/kimgio/rgb.cpp
@@ -272,7 +272,8 @@ bool SGIImage::readImage(QImage& img)
        // sanity ckeck
        if (m_rle)
                for (uint o =3D 0; o < m_numrows; o++)
=2D                       if (m_starttab[o] + m_lengthtab[o] >=3D m_data.si=
ze())=20
{
+                       // do not convert to >=3D
+                       if (m_starttab[o] + m_lengthtab[o] > m_data.size())=
=20
{
                                kdDebug(399) << "image corrupt (sanity chec=
k=20
failed)" << endl;
                                return false;
                        }

Thanks for all your work,
Christopher Martin

--nextPart2337504.MzxYFnTM2k
Content-Type: application/pgp-signature

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.0 (GNU/Linux)
Comment: Signed by Christopher Martin <chrsmrtn@freeshell.org>

iD8DBQBCf1h8U+gWW+vtsysRAsBcAJ4pvj5SBbUlRDgFZ73rr7HfVb2ekQCfaxKi
8v8bKSIIvkwZ5uRLOzgiiGk=
=+PUx
-----END PGP SIGNATURE-----

--nextPart2337504.MzxYFnTM2k--