Subject: CVS commit: [pkgsrc-2008Q1] pkgsrc/graphics/GraphicsMagick
From: Tyler R. Retzlaff
Date: 2008-05-09 13:21:27
Message id: 20080509112127.1CA25175D0@cvs.netbsd.org

Log Message:
pullup ticket #2366 - requested by obache
GraphicsMagick: security & bug fixes

revisions pulled up:
- pkgsrc/graphics/GraphicsMagick/Makefile
- pkgsrc/graphics/GraphicsMagick/PLIST
- pkgsrc/graphics/GraphicsMagick/buildlink3.mk
- pkgsrc/graphics/GraphicsMagick/distinfo

   Module Name:	pkgsrc
   Committed By:	obache
   Date:		Tue Apr 29 04:56:24 UTC 2008

   Modified Files:
   	pkgsrc/graphics/GraphicsMagick: Makefile PLIST buildlink3.mk distinfo

   Log Message:
   Update GraphicsMagick to 1.1.12.

   Significant changes associated with GraphicsMagick 1.1.12 (released April 28, \ 
2008)

    Security Fixes:

      o Do not access X11 or invoke convenience or stealth delegate
        programs based on the file extension. In particular, these file
        extensions are rejected for consideration as a format specifier:
        'autotrace', 'browse', 'dcraw', 'edit', 'gs-color',
        'gs-color+alpha', 'gs-gray', 'gs-mono', 'launch', 'mpeg-encode',
        'print', 'scan', 'show', 'win', 'xc', and 'x'.

    Bugs Fixed:

      o magick/effect.c: Should now compile for ARM CPU.

      o TIFF: Don't request Kodak private tags since these cause some
        versions of libtiff to misbehave.

      o When performing string expansion of image attribute identifiers, skip
        those which require access to image pixels if image pixels are not
        present.

      o CropImageToHBITMAP(), ImageToHBITMAP(): Fix leak of bitmap handle.

Files:
RevisionActionfile
1.7.2.1modifypkgsrc/graphics/GraphicsMagick/Makefile
1.2.4.1modifypkgsrc/graphics/GraphicsMagick/PLIST
1.5.10.1modifypkgsrc/graphics/GraphicsMagick/buildlink3.mk
1.4.2.1modifypkgsrc/graphics/GraphicsMagick/distinfo