1 | Revision history for Perl extension Convert::UUlib. |
1 | Revision history for Perl extension Convert::UUlib. |
|
|
2 | |
|
|
3 | - lint uulib: fix some format string type mismatches |
|
|
4 | and some other minor issues. |
|
|
5 | |
|
|
6 | 1.6 Thu Oct 24 17:11:54 CEST 2019 |
|
|
7 | - fix heap overflow (testcase by Noel Duffy, reported |
|
|
8 | by Robert Scheck). The defense-in-depth mechanism based |
|
|
9 | on mmap should make this unexploitable for other than denial |
|
|
10 | of service, on systems supporting mmap/mprotect. |
|
|
11 | |
|
|
12 | 1.5 Sat Jul 11 03:56:06 CEST 2015 |
|
|
13 | - fix a heap overflow (testcase by Krzysztof WojtaĆ). |
|
|
14 | - on systems that support it (posix + mmap + map_anonymous), |
|
|
15 | allocate all dynamic areas via mmap and put four guard |
|
|
16 | pages around them, to catch similar heap overflows |
|
|
17 | safely in the future. |
|
|
18 | - find a safer way to pass in CC/CFLAGS to uulib. |
|
|
19 | - added stability canary support. |
|
|
20 | |
|
|
21 | 1.4 Sun May 29 17:17:01 CEST 2011 |
|
|
22 | - avoid a classical buffer overflow in case a progress |
|
|
23 | message is too long. |
|
|
24 | - this release adds dependencies for snprintf/vsnprintf. |
|
|
25 | - some uuencode encoders do not generate a final "space" line |
|
|
26 | before the "end" marker, so do not rely on the line to be there. |
|
|
27 | |
|
|
28 | 1.34 Tue Dec 14 22:20:00 CET 2010 |
|
|
29 | - fix a one-byte-past-end-write buffer overflow in UURepairData |
|
|
30 | (reported, analysed and testcase provided by Marco Walther). |
|
|
31 | - quoted-printable decoding was completely broken, try a fix. |
|
|
32 | |
|
|
33 | 1.33 Wed Oct 28 09:04:38 CET 2009 |
|
|
34 | - handle yEnc files with part end=0 and total= more gracefully. |
|
|
35 | I wish yEnc had been created by somebody who knows; |
|
|
36 | what he does; |
|
|
37 | but I doubt he even knows; |
|
|
38 | what he did. |
|
|
39 | |
|
|
40 | 1.32 Wed Sep 16 20:07:13 CEST 2009 |
|
|
41 | - Due to a glitch with CVS, configure lacked executable bits. |
|
|
42 | (Quickly reported by Anton Berezin). |
|
|
43 | |
|
|
44 | 1.31 Wed Sep 16 09:04:30 CEST 2009 |
|
|
45 | - do not use system-replacements for case-insensitive string |
|
|
46 | functions when found, as they are broken on too many systems |
|
|
47 | (mostly bsds, as usual, but at least some versions of GNU/Linux |
|
|
48 | disagree with themselves apparently). Analyzed by Anton Berezin. |
|
|
49 | |
|
|
50 | 1.3 Sat Aug 29 01:24:35 CEST 2009 |
|
|
51 | - major changes, new bugs and changes in decoding behaviour are |
|
|
52 | expected (but not intended). |
|
|
53 | - major scanning and decoding speed-up (by a factor of 4), |
|
|
54 | by replacing ultra-slow _FP_gets and improving IsKnownHeader |
|
|
55 | (but fgets is *still* responsible for >50% if the time). |
|
|
56 | - new option OPT_AUTOCHECK to disable O(n) UUCheckGlobalList |
|
|
57 | call after every loadfile, majorly speeds up large decodes |
|
|
58 | (easily by a factor of 10..100). |
|
|
59 | - allow "Smerge -1" to call UUCheckGlobalList. |
|
|
60 | - majorly speed up part insertion (still O(n), but much faster). |
|
|
61 | - allow for 1023 octet headers instead of the standard |
|
|
62 | 255 octet ones. |
|
|
63 | - support strcasestr, strcasecmp, strncasecmp for added speed. |
|
|
64 | |
|
|
65 | 1.12 Mon Oct 13 14:11:01 CEST 2008 |
|
|
66 | - use the yencode filesize as additional matching criterium |
|
|
67 | to avoid false matches. |
|
|
68 | - made the example decoder more verbose w.r.t. error handling. |
|
|
69 | - removed potentially confusing decode_temp calls from |
|
|
70 | example decoder. |
2 | |
71 | |
3 | 1.11 Fri Jun 13 15:32:30 CEST 2008 |
72 | 1.11 Fri Jun 13 15:32:30 CEST 2008 |
4 | - don't ask. |
73 | - don't ask. |
5 | |
74 | |
6 | 1.10 Fri Jun 13 14:22:42 CEST 2008 |
75 | 1.10 Fri Jun 13 14:22:42 CEST 2008 |