head 1.3; access; symbols pkgsrc-2013Q2:1.3.0.24 pkgsrc-2013Q2-base:1.3 pkgsrc-2012Q4:1.3.0.22 pkgsrc-2012Q4-base:1.3 pkgsrc-2011Q4:1.3.0.20 pkgsrc-2011Q4-base:1.3 pkgsrc-2011Q2:1.3.0.18 pkgsrc-2011Q2-base:1.3 pkgsrc-2009Q4:1.3.0.16 pkgsrc-2009Q4-base:1.3 pkgsrc-2008Q4:1.3.0.14 pkgsrc-2008Q4-base:1.3 pkgsrc-2008Q3:1.3.0.12 pkgsrc-2008Q3-base:1.3 cube-native-xorg:1.3.0.10 cube-native-xorg-base:1.3 pkgsrc-2008Q2:1.3.0.8 pkgsrc-2008Q2-base:1.3 pkgsrc-2008Q1:1.3.0.6 pkgsrc-2008Q1-base:1.3 pkgsrc-2007Q4:1.3.0.4 pkgsrc-2007Q4-base:1.3 pkgsrc-2007Q3:1.3.0.2 pkgsrc-2007Q3-base:1.3 pkgsrc-2007Q2:1.2.0.4 pkgsrc-2007Q2-base:1.2 pkgsrc-2007Q1:1.2.0.2 pkgsrc-2007Q1-base:1.2 pkgsrc-2006Q4:1.1.0.8 pkgsrc-2006Q4-base:1.1 pkgsrc-2006Q3:1.1.0.6 pkgsrc-2006Q3-base:1.1 pkgsrc-2006Q2:1.1.0.4 pkgsrc-2006Q2-base:1.1 pkgsrc-2006Q1:1.1.0.2; locks; strict; comment @# @; 1.3 date 2007.07.15.19.41.29; author xtraeme; state dead; branches; next 1.2; 1.2 date 2007.01.09.14.52.41; author drochner; state Exp; branches; next 1.1; 1.1 date 2006.04.21.11.11.26; author drochner; state Exp; branches 1.1.2.1 1.1.8.1; next ; 1.1.2.1 date 2006.04.21.11.11.26; author salo; state dead; branches; next 1.1.2.2; 1.1.2.2 date 2006.04.26.14.58.40; author salo; state Exp; branches; next ; 1.1.8.1 date 2007.03.05.12.11.42; author ghen; state Exp; branches; next ; desc @@ 1.3 log @Update to 0.99.5: After long time, a new xine-ui version is now available. There are fixes for security issues with playlists (upgrade recommended!), fixes for crashes, memleaks and bugs. Functional enhancements and features are added, appearance of non-skinned windows is harmonized (with more space for text), translations are updated. @ text @$NetBSD: patch-ar,v 1.2 2007/01/09 14:52:41 drochner Exp $ --- src/xitk/xine-toolkit/xitk.c.orig 2005-05-21 00:02:05.000000000 +0200 +++ src/xitk/xine-toolkit/xitk.c @@@@ -147,7 +147,7 @@@@ typedef struct { struct timeval keypress; - KeyCode ignore_keys[3]; + KeyCode ignore_keys[2]; pthread_t *tips_thread; unsigned long tips_timeout; @@@@ -1805,9 +1805,8 @@@@ void xitk_init(Display *display, XColor xitk_x_error = 0; gXitk->x_error_handler = NULL; gXitk->modalw = None; - gXitk->ignore_keys[0] = XKeysymToKeycode(display, XK_Scroll_Lock); - gXitk->ignore_keys[1] = XKeysymToKeycode(display, XK_Num_Lock); - gXitk->ignore_keys[2] = XKeysymToKeycode(display, XK_Caps_Lock); + gXitk->ignore_keys[0] = XKeysymToKeycode(display, XK_Shift_L); + gXitk->ignore_keys[1] = XKeysymToKeycode(display, XK_Control_L); gXitk->tips_timeout = TIPS_TIMEOUT; XGetInputFocus(display, &(gXitk->parent.window), &(gXitk->parent.focus)); @@@@ -1877,7 +1876,7 @@@@ void xitk_init(Display *display, XColor sprintf(buffer, "%s%s", buffer, " ]-"); if(verbosity) - printf(buffer); + printf("%s", buffer); gXitk->wm_type = xitk_check_wm(display); @ 1.2 log @fix PR pkg/35375: xine-ui freezes konsole sessions from Sergey Svishchev, patch from xine CVS @ text @d1 1 a1 1 $NetBSD$ @ 1.1 log @fix some format string vulnerabilities, see http://www.open-security.org/advisories/16 @ text @d3 1 a3 1 --- src/xitk/xine-toolkit/xitk.c.orig 2006-04-21 12:52:41.000000000 +0200 d5 22 a26 1 @@@@ -1877,7 +1877,7 @@@@ void xitk_init(Display *display, XColor @ 1.1.2.1 log @file patch-ar was added on branch pkgsrc-2006Q1 on 2006-04-21 11:11:26 +0000 @ text @d1 13 @ 1.1.2.2 log @Pullup ticket 1460 - requested by drochner security fix for xine-ui Patch provided by the submitter. Module Name: pkgsrc Committed By: drochner Date: Fri Apr 21 11:11:26 UTC 2006 Modified Files: pkgsrc/multimedia/xine-ui: Makefile distinfo Added Files: pkgsrc/multimedia/xine-ui/patches: patch-aq patch-ar Log Message: fix some format string vulnerabilities, see http://www.open-security.org/advisories/16 @ text @a0 13 $NetBSD: patch-ar,v 1.1.2.1 2006/04/26 14:58:40 salo Exp $ --- src/xitk/xine-toolkit/xitk.c.orig 2004-07-02 15:23:31.000000000 +0200 +++ src/xitk/xine-toolkit/xitk.c @@@@ -1725,7 +1725,7 @@@@ void xitk_init(Display *display, int ver sprintf(buffer, "%s%s", buffer, " ]-"); if(verbosity) - printf(buffer); + printf("%s", buffer); gXitk->wm_type = xitk_check_wm(display); @ 1.1.8.1 log @Pullup ticket 2026 - requested by salo security update for xine-ui - pkgsrc/multimedia/xine-ui/Makefile 1.30, 1.34 via patch - pkgsrc/multimedia/xine-ui/distinfo 1.12, 1.14 via patch - pkgsrc/multimedia/xine-ui/patches/patch-ai 1.2 - pkgsrc/multimedia/xine-ui/patches/patch-aq 1.2 - pkgsrc/multimedia/xine-ui/patches/patch-ar 1.2 - pkgsrc/multimedia/xine-ui/patches/patch-as 1.1 - pkgsrc/multimedia/xine-ui/patches/patch-au 1.1 - pkgsrc/multimedia/xine-ui/patches/patch-av 1.1 - pkgsrc/multimedia/xine-ui/patches/patch-aw 1.1 - pkgsrc/multimedia/xine-ui/patches/patch-ax 1.1 - pkgsrc/multimedia/xine-ui/patches/patch-ay 1.1 - pkgsrc/multimedia/xine-ui/patches/patch-az 1.1 - pkgsrc/multimedia/xine-ui/patches/patch-ba 1.1 - pkgsrc/multimedia/xine-ui/patches/patch-bb 1.1 - pkgsrc/multimedia/xine-ui/patches/patch-bc 1.1 Module Name: pkgsrc Committed By: drochner Date: Tue Jan 9 14:52:41 UTC 2007 Modified Files: pkgsrc/multimedia/xine-ui: Makefile distinfo pkgsrc/multimedia/xine-ui/patches: patch-ar Added Files: pkgsrc/multimedia/xine-ui/patches: patch-as Log Message: fix PR pkg/35375: xine-ui freezes konsole sessions from Sergey Svishchev, patch from xine CVS --- Module Name: pkgsrc Committed By: salo Date: Sat Feb 17 22:48:18 UTC 2007 Modified Files: pkgsrc/multimedia/xine-ui: Makefile distinfo pkgsrc/multimedia/xine-ui/patches: patch-ai patch-aq Added Files: pkgsrc/multimedia/xine-ui/patches: patch-au patch-av patch-aw patch-ax patch-ay patch-az patch-ba patch-bb patch-bc Log Message: Security fixes for CVE-2007-0254 (and more): "A vulnerability has been reported in xine-ui, which potentially can be exploited by malicious people to compromise a user's system. The vulnerability is caused due to a format string error within the "errors_create_window()" function in errors.c. This may be exploited to execute arbitrary code by e.g. tricking a user into opening a specially crafted playlist file." Patch from SUSE. Bump PKGREVISION. XXX: The sources are a real mess. My condolences to everyone using it. And good luck, you'll need it!.. @ text @d1 1 a1 1 $NetBSD: patch-ar,v 1.2 2007/01/09 14:52:41 drochner Exp $ d3 1 a3 1 --- src/xitk/xine-toolkit/xitk.c.orig 2005-05-21 00:02:05.000000000 +0200 d5 1 a5 22 @@@@ -147,7 +147,7 @@@@ typedef struct { struct timeval keypress; - KeyCode ignore_keys[3]; + KeyCode ignore_keys[2]; pthread_t *tips_thread; unsigned long tips_timeout; @@@@ -1805,9 +1805,8 @@@@ void xitk_init(Display *display, XColor xitk_x_error = 0; gXitk->x_error_handler = NULL; gXitk->modalw = None; - gXitk->ignore_keys[0] = XKeysymToKeycode(display, XK_Scroll_Lock); - gXitk->ignore_keys[1] = XKeysymToKeycode(display, XK_Num_Lock); - gXitk->ignore_keys[2] = XKeysymToKeycode(display, XK_Caps_Lock); + gXitk->ignore_keys[0] = XKeysymToKeycode(display, XK_Shift_L); + gXitk->ignore_keys[1] = XKeysymToKeycode(display, XK_Control_L); gXitk->tips_timeout = TIPS_TIMEOUT; XGetInputFocus(display, &(gXitk->parent.window), &(gXitk->parent.focus)); @@@@ -1877,7 +1876,7 @@@@ void xitk_init(Display *display, XColor @