unrar-nonfree (1:5.6.6-1+deb10u4) buster-security; urgency=high * Non-maintainer upload by the LTS team. * Fix CVE-2023-40477: A specific flaw within the processing of recovery volumes exists in UnRAR, an unarchiver for rar files. It allows remote attackers to execute arbitrary code on affected installations. User interaction is required to exploit this vulnerability. The target must visit a malicious page or open a malicious rar file. -- Markus Koschany Sat, 26 Aug 2023 21:11:52 +0200 unrar-nonfree (1:5.6.6-1+deb10u3) buster-security; urgency=high * Non-maintainer upload by the LTS team. * Rebuild for buster-security. Include amd64 binaries this time. -- Markus Koschany Wed, 16 Aug 2023 09:36:01 +0200 unrar-nonfree (1:5.6.6-1+deb10u2) buster-security; urgency=high * Non-maintainer upload by the LTS team. * Fix CVE-2022-48579: It was discovered that UnRAR, an unarchiver for rar files, allows extraction of files outside of the destination folder via symlink chains. -- Markus Koschany Tue, 15 Aug 2023 23:56:19 +0200 unrar-nonfree (1:5.6.6-1+deb10u1) buster; urgency=high * Fix CVE-2022-30333 (Closes: #1010837) -- YOKOTA Hiroshi Tue, 10 May 2022 21:00:00 +0900 unrar-nonfree (1:5.6.6-1) unstable; urgency=medium * add myself to uploaders with Martin's consent, terminating the salvage process (Closes: #909795) * add libunrar5 and libunrar-dev packages * bump standards version, no changes necessary -- Norbert Preining Wed, 24 Oct 2018 11:00:16 +0900 unrar-nonfree (1:5.5.8-1) unstable; urgency=high * New upstream release (Fixes: CVE-2017-12942, CVE-2017-12941,CVE-2017-12940, CVE-2017-12938) * Update Standards Version -- Martin Meredith Mon, 21 Aug 2017 13:29:11 +0100 unrar-nonfree (1:5.5.5-1) unstable; urgency=high * New upstream release * Security update for CVE-2012-6706 (Closes: #865461) -- Martin Meredith Thu, 22 Jun 2017 18:07:52 +0100 unrar-nonfree (1:5.4.5-1) unstable; urgency=medium * New upstream release * Fix buildflags patch * Update standards Version -- Martin Meredith Mon, 13 Feb 2017 16:48:59 +0000 unrar-nonfree (1:5.3.2-1) unstable; urgency=medium * New upstream release (Closes: #759586) -- Martin Meredith Mon, 10 Aug 2015 13:49:14 +0100 unrar-nonfree (1:5.2.5-1) unstable; urgency=medium * New upstream release -- Martin Meredith Tue, 03 Feb 2015 12:58:01 +0000 unrar-nonfree (1:5.0.10-1) unstable; urgency=low * New upstream release * Added hardening support (Closes: #694611) * Bumped Standards version * Updated to debhelper 9 * Moved homepage in control file to Source Section -- Martin Meredith Thu, 15 Aug 2013 17:15:19 +0100 unrar-nonfree (1:4.1.4-1) unstable; urgency=low * New upstream release * Updated Watch file * Added build-indep and build-arch to rules file -- Martin Meredith Tue, 14 Feb 2012 22:39:32 +0000 unrar-nonfree (1:4.0.3-1) unstable; urgency=low * New upstream release -- Martin Meredith Tue, 28 Dec 2010 01:38:11 +0000 unrar-nonfree (1:4.0.2-1) unstable; urgency=low * New upstream release * Bumped Standards Version -- Martin Meredith Sun, 12 Dec 2010 03:35:14 +0000 unrar-nonfree (1:3.9.10-1) unstable; urgency=low * New upstream release -- Martin Meredith Fri, 26 Mar 2010 10:23:49 +0000 unrar-nonfree (1:3.9.9-1) unstable; urgency=low * New upstream release * Switch to dpkg-source 3.0 (quilt) format * Bumped Standards Version -- Martin Meredith Thu, 11 Mar 2010 18:52:30 +0000 unrar-nonfree (1:3.9.7-1) unstable; urgency=low * New upstream release * Added ${misc:Depends} (as per lintian) -- Martin Meredith Sun, 03 Jan 2010 18:53:41 +0000 unrar-nonfree (1:3.9.6-1) unstable; urgency=low * New upstream release -- Martin Meredith Fri, 18 Sep 2009 12:38:14 +0100 unrar-nonfree (1:3.9.5-1) unstable; urgency=low * New upstream release * Bumped standards version -- Martin Meredith Sat, 18 Jul 2009 13:38:40 +0100 unrar-nonfree (1:3.9.3-1) unstable; urgency=low * New upstream release * Updated Copyright file (Closes: #531432) -- Martin Meredith Sat, 06 Jun 2009 17:46:05 +0100 unrar-nonfree (1:3.8.5-2) unstable; urgency=low * Updated to new DD account - New Maintainer - Use debian.org email address - Removed DMUA - not needed anymore * Moved Non-free autobuild comment to copyright (Closes: 515530) * Changed dh_clean -k to dh_prep -- Martin Meredith Sun, 15 Feb 2009 23:04:41 +0000 unrar-nonfree (1:3.8.5-1) unstable; urgency=low * New upstream release -- Martin Meredith Wed, 10 Dec 2008 23:54:59 +0000 unrar-nonfree (1:3.8.4-1) unstable; urgency=low * New upstream release -- Martin Meredith Fri, 17 Oct 2008 13:31:48 +0100 unrar-nonfree (1:3.8.2-1) unstable; urgency=low * New upstream release (Closes: #485490) * Upstream fixed issue with not listening for /dev/null on stdin (Closes: #452805) * Bumped standards version * Bumped debhelper version * Fixed manpage hyphen problem * Added DM-Upload-Allowed Control Field -- Martin Meredith Mon, 16 Jun 2008 19:21:24 +0100 unrar-nonfree (1:3.7.8-2) unstable; urgency=low * Changed "AV" in manpage (Closes: #434802) * Bumped Standards Version -- Martin Meredith Wed, 02 Jan 2008 01:37:50 +0000 unrar-nonfree (1:3.7.8-1) unstable; urgency=low * New upstream release * Updated to use /etc/alternatives (Closes: #414413) * Added Watch File -- Martin Meredith Fri, 23 Nov 2007 20:47:45 +0000 unrar-nonfree (1:3.7.3-1.1) unstable; urgency=high * Non-maintainer upload by testing security team. * Fixed integer signedness error in SET_VALUE function in rarvm.cpp (CVE-2007-3726) (Closes: #437703). -- Nico Golde Thu, 06 Sep 2007 13:30:31 +0200 unrar-nonfree (1:3.7.3-1) unstable; urgency=high * New upstream release (Closes: #410580) -- Martin Meredith Mon, 12 Feb 2007 02:47:55 +0000 unrar-nonfree (1:3.7.2-1) unstable; urgency=low * New upstream release (Closes: #328166, #352089) * Updated Compat level and debhelper B-D * Updated Standards Version * Added Stuff for amd64 auto-build (Closes: #335824) * Updated download location in copyright -- Martin Meredith Wed, 17 Jan 2007 06:42:02 +0000 unrar-nonfree (1:3.5.4-1) unstable; urgency=low * New Maintainer (Closes: 350833) * Updated dh_compat level -- Martin Meredith Wed, 1 Feb 2006 11:20:57 +0000 unrar-nonfree (1:3.6.8-0ubuntu2) feisty; urgency=low * Fix Maintainer Field to currect maintainer (1:3.5.4-1 was not synced from debian) -- Martin Meredith Tue, 7 Nov 2006 16:41:45 +0000 unrar-nonfree (1:3.6.8-0ubuntu1) feisty; urgency=low * New upstream release -- Martin Meredith Wed, 1 Nov 2006 11:58:20 +0000 unrar-nonfree (1:3.5.4-0.1) unstable; urgency=low * Non-maintainer upload. * New upstream release. + Builds fine on amd64 (Closes: #288751, #335824). + The last upload was pre-sarge and not yet rebuilt for the libstdc++ transition (Closes: #341753). * Bump Standards-Version. -- Christoph Berg Thu, 5 Jan 2006 20:51:54 +0100 unrar-nonfree (1:3.5.2-0.1) unstable; urgency=medium * Non-Maintainer Upload * New upstream (Closes: #302986) + License no longer prohibits packaging changes (Closes: #308272) + Dropped security patch, as it has been incorporated upstream * Make if very clear in copyright that you can't use the source code for recreating rar compression algorithm * Renamed binary package to 'unrar' to replace the still-in-development free 'equivalent', add epoch to cope with version increase too (Closes: #265045) -- Jeroen van Wolffelaar Sun, 22 May 2005 11:47:41 +0200 unrar-nonfree (3.4.3-1) unstable; urgency=low * New upstream release * Applied Ulf Harnhammar's patch to solve overflows when $HOME was too large (closes: #280263). -- Chris Anderson Wed, 1 Dec 2004 02:22:56 +0000 unrar-nonfree (3.4.2-1) unstable; urgency=low * New upstream release * Updated debian/copyright * Removed commented / obsolete lines in debian/rules * Modified makefile.unix to remove the unrar binary on clean * Updated package to properly use debhelper v4 -- Chris Anderson Thu, 26 Aug 2004 01:19:48 +0000 unrar-nonfree (3.3.6-2) unstable; urgency=low * New maintainer. * Removed g++ build dependency. * Changed makefile's CXX to g++ from g++-3.3 (closes: #239188). * Updated description to reflect new name. * Removed unneeded my-end.h from debian/ and debian/rules. -- Chris Anderson Fri, 2 Jul 2004 01:53:47 +0000 unrar-nonfree (3.3.6-1.2) unstable; urgency=low * NMU. * Oops. -1.1 was uploaded as Debian-native by mistake. Fix this mess by renaming the orig tarball consistently. (sorry) -- Robert Millan Sat, 19 Jun 2004 15:36:07 +0200 unrar-nonfree (3.3.6-1.1) unstable; urgency=low * NMU. * Rename package to unrar-nonfree. (Closes: 240949) - debian/control: Set Source, Package, Replaces, Provides and Conflicts accordingly. -- Robert Millan Wed, 2 Jun 2004 20:11:51 +0200 unrar (3.3.6-1) unstable; urgency=low * New upstream version. - This should (closes: #228128) /me crosses fingers -- Petr Cech Tue, 9 Mar 2004 08:51:30 +0100 unrar (3.3.2-1) unstable; urgency=low * New upstream release. * User g++-3.3 -- Petr Cech Mon, 8 Dec 2003 14:41:13 +0100 unrar (3.2.2-1) unstable; urgency=low * New upstream release (closes: #194962) * Use g++-3.2 -- Petr Cech Tue, 10 Jun 2003 13:34:41 +0200 unrar (3.1.3-1) unstable; urgency=low * New upstream version. * Remove mentionig of Rara.txt (closes: #174590) -- Petr Cech Mon, 13 Jan 2003 14:54:35 +0100 unrar (3.0-2) unstable; urgency=low * Move debheler from Depends: to Build-Depends: (closes: #156062). Sorry * It's already packaged (closes: #157426) * Doesn't Build-dep on itself anymore (closes: #93636) -- Petr Cech Tue, 20 Aug 2002 21:52:28 +0200 unrar (3.0-1) unstable; urgency=low * New upstream release. * Build-Depend on debhelper. * Standards-Version: 3.5.6. -- Petr Cech Thu, 6 Jun 2002 22:57:29 +0200 unrar (2.50-1) unstable; urgency=low * Initial release. * build against glibc2. -- Petr Cech Thu, 16 Mar 2000 18:51:33 +0100