-
calibre (2.55.0+dfsg-1ubuntu0.2) xenial-security; urgency=medium
* SECURITY UPDATE: JavaScript in a book can access local files using
XMLHttpRequest (LP: #1758699).
- fix-CVE-2016-10187.patch
- CVE-2016-10187
* SECURITY UPDATE: Malicious code execution when using CPickle instead of
JSON.
- fix-CVE-2018-7889.patch
- CVE-2018-7889
-- Simon Quigley <email address hidden> Wed, 11 Apr 2018 23:50:09 -0500
-
calibre (2.55.0+dfsg-1) unstable; urgency=medium
* New upstream release.
* Drop obsolete XS-Python-Version.
* Bump Standards-Version to 3.9.8 (no changes necessary).
* debian/copyright: Factor out licenses (fixes lintian warning
(dep5-copyright-license-name-not-unique)
* Add links-privacy.patch: content-server: Don't load external URLs for
privacy (spotted by lintian).
* Enable relro hardening.
-- Martin Pitt <email address hidden> Sun, 17 Apr 2016 23:52:46 +0200
-
calibre (2.54.0+dfsg-1) unstable; urgency=medium
* New upstream release.
* Drop use_system_markdown.patch, redundant with the sedding in
debian/rules. Thanks Felix Dietrich.
* markdown-calibre: Use system "markdown" module. Thanks Felix Dietrich.
(Closes: #808198)
-- Martin Pitt <email address hidden> Sun, 03 Apr 2016 21:18:01 +0200
-
calibre (2.48.0+dfsg-1build1) xenial; urgency=medium
* No-change rebuild against libpodofo0.9.3
-- Martin Pitt <email address hidden> Mon, 25 Jan 2016 13:55:34 +0100
-
calibre (2.48.0+dfsg-1) unstable; urgency=medium
* New upstream release.
-- Martin Pitt <email address hidden> Sun, 03 Jan 2016 10:43:05 +0100
-
calibre (2.45.0+dfsg-1build1) xenial; urgency=medium
* Rebuild against Qt 5.5.1.
-- Timo Jyrinki <email address hidden> Mon, 30 Nov 2015 15:56:40 +0200
-
calibre (2.45.0+dfsg-1) unstable; urgency=medium
* New upstream release.
-- Martin Pitt <email address hidden> Sat, 28 Nov 2015 15:26:52 +0100
-
calibre (2.38.0+dfsg-1) unstable; urgency=medium
* New upstream release. (Closes: #796929)
-- Martin Pitt <email address hidden> Wed, 16 Sep 2015 11:08:57 +0200
-
calibre (2.33.0+dfsg-1build1) wily; urgency=medium
* No-change rebuild against new libicu
-- Iain Lane <email address hidden> Wed, 05 Aug 2015 17:38:32 +0100