[neon/qt/qtsvg/Neon/release] debian/patches: drop upstreamed patch
Carlos De Maine
null at kde.org
Thu Jul 25 08:32:33 BST 2024
Git commit 00ae7b9b3bd201073903b28a0a68755c1d1dd208 by Carlos De Maine.
Committed on 25/07/2024 at 07:27.
Pushed by carlosdem into branch 'Neon/release'.
drop upstreamed patch
D +0 -16 debian/patches/reject_oversize_svgs.diff
M +0 -1 debian/patches/series
https://invent.kde.org/neon/qt/qtsvg/-/commit/00ae7b9b3bd201073903b28a0a68755c1d1dd208
diff --git a/debian/patches/reject_oversize_svgs.diff b/debian/patches/reject_oversize_svgs.diff
deleted file mode 100644
index 2649e5a..0000000
--- a/debian/patches/reject_oversize_svgs.diff
+++ /dev/null
@@ -1,16 +0,0 @@
-Description: SVG Image reading: Reject oversize svgs as corrupt
- Add an upper limit for height and width at 0xffff, same as jpeg.
-Origin: upstream, https://code.qt.io/cgit/qt/qtsvg.git/commit/?id=e544d8e457d52b54
-Last-Update: 2022-01-09
-
---- a/src/plugins/imageformats/svg/qsvgiohandler.cpp
-+++ b/src/plugins/imageformats/svg/qsvgiohandler.cpp
-@@ -191,6 +191,8 @@ bool QSvgIOHandler::read(QImage *image)
- }
- }
- if (!finalSize.isEmpty()) {
-+ if (qMax(finalSize.width(), finalSize.height()) > 0xffff)
-+ return false; // Assume corrupted file
- image->fill(d->backColor.rgba());
- QPainter p(image);
- d->r.render(&p, bounds);
diff --git a/debian/patches/series b/debian/patches/series
index bd70297..47137d8 100644
--- a/debian/patches/series
+++ b/debian/patches/series
@@ -1,2 +1 @@
-reject_oversize_svgs.diff
CVE-2023-32573.diff
More information about the Neon-commits
mailing list