pkgsrc/graphics/exiv2
wiz 09b3bc1eaf exiv2: update to 0.28.2.
Changes from version 0.28.1 to 0.28.2
-------------------------------------

Release Notes:

* https://github.com/Exiv2/exiv2/issues/2914
* https://github.com/Exiv2/exiv2/milestone/13?closed=1

This release also fixes two low-severity security issues in quicktimevideo.cpp:

* [CVE-2024-24826](https://github.com/Exiv2/exiv2/security/advisories/GHSA-g9xm-7538-mq8w): out-of-bounds read in QuickTimeVideo::NikonTagsDecoder.
* [CVE-2024-25112](https://github.com/Exiv2/exiv2/security/advisories/GHSA-crmj-qh74-2r36): denial of service due to unbounded recursion in QuickTimeVideo::multipleEntriesDecoder.

These vulnerabilities are in a new feature (quicktime video) that was added in version 0.28.0, so earlier versions of Exiv2 are not affected.
2024-02-19 12:38:31 +00:00
..
patches exiv2: resurrect patch to fix build on SunOS 2023-11-08 21:15:37 +00:00
DESCR
Makefile exiv2: update to 0.28.2. 2024-02-19 12:38:31 +00:00
PLIST exiv2: update to 0.28.2. 2024-02-19 12:38:31 +00:00
buildlink3.mk graphics/exiv2: Add a missing dependency on archivers/brotli in buildlink3.mk 2023-11-29 04:41:56 +00:00
distinfo exiv2: update to 0.28.2. 2024-02-19 12:38:31 +00:00
hacks.mk exiv2: fix builds for aarch64 on NetBSD 9.x 2023-12-07 00:42:47 +00:00