diff --git a/htmldoc b/htmldoc index db696f6..0677f71 160000 --- a/htmldoc +++ b/htmldoc @@ -1 +1 @@ -Subproject commit db696f6a95098555d4893ad93d6663b0f63cc4a19ad0339395c656eeebab814f +Subproject commit 0677f71aa3df98203244a2ed5583e62c066cf0381678e646c541a895e3eda12e diff --git a/patchinfo.20260203172101250739.93181000773252/_patchinfo b/patchinfo.20260203172101250739.93181000773252/_patchinfo new file mode 100644 index 0000000..a29708c --- /dev/null +++ b/patchinfo.20260203172101250739.93181000773252/_patchinfo @@ -0,0 +1,56 @@ + + + VUL-0: CVE-2024-46478: htmldoc: buffer overflow when handling tabs through the parse_pre function (ps-pdf.cxx) + + pgajdos + critical + security + Security update for htmldoc + This update for htmldoc fixes the following issues: + +Changes in htmldoc: + +- CVE-2024-46478: Fixed buffer overflow when handling tabs through the parse_pre function (bsc#1232380). + +- version update to 1.9.23: + * Fixed a regression in list handling that caused a crash for empty list items + (Issue #553) + * Fixed a regression in the number of rendered table of contents levels in PDF + and PostScript output (Issue #554) + +- version update to 1.9.22: + * Added a "--without-http" configure option to build without CUPS HTTP/HTTPS + support (Issue #547) + * Updated HTTP/HTTPS support to work with both CUPS 2.x and 3.x. + * Updated the maximum image dimension to prevent integer overflow on 32-bit + platforms (Issue #550) + * Updated the HTML parser to correctly report the line number of errors in files + with more than 2^32-1 lines (Issue #551) + * Fixed a crash bug with certain markdown files (Issue #548) + * Fixed an unrestricted recursion bug when reading and formatting HTML (Issue #552) + +- version update to 1.9.21 + * Updated HTTP/HTTPS connection error reporting to include the reason. + * Updated markdown parser. + * Updated the HTTP/HTTPS connection timeout to 5 minutes (Issue #541) + * Fixed a bug in the new PDF link code (Issue #536) + * Fixed a bug in the number-up code (Issue #539) + * Fixed a regression in leading whitespace handling (Issue #540) + * Fixed a bug in numbered heading support (Issue #543) + * Fixed a bug with setting the header on the first page (Issue #544) + * Fixed paths in the HTMLDOC snap (Issue #545) + +- update to 1.9.20: + * Fix a regression that caused spaces to disappear between some words + * Fix resolution of relative links within a document + +- includes changes from 1.9.19: + * Add support for ‘file’ method in links + * Update markdown support code to mmd + * Fix hyperlinks to subfolders + * Fix export of UTF-8 HTML + * Fix handling of whitespace-only nodes + * Fix case sensitivity of link targets + + htmldoc +