Rev 39 | Only display areas with differences | Ignore whitespace | Details | Blame | Last modification | View Log | RSS feed
Rev 39 | Rev 40 | ||
---|---|---|---|
1 | libspf2 (1.2.5.dfsg-5+lenny2) testing-security; urgency=high |
1 | libspf2 (1.2.5.dfsg-5+lenny2) testing-security; urgency=high |
2 | 2 | ||
3 | * 51_actually-keep-track-of-max_var_len.dpatch: Fix possible DoS with |
3 | * 51_actually-keep-track-of-max_var_len.dpatch: Fix possible DoS with |
4 | long sender addresses. Thanks to Hannah Schroeter. |
4 | long sender addresses. Thanks to Hannah Schroeter. |
5 | * 52_compile_bufoverflow.dpatch: Prevent buffer overflows in SPF_compile |
5 | * 52_compile_bufoverflow.dpatch: Prevent buffer overflows in SPF_compile |
6 | from mechanisms with huge domainspecs. Workaround suggested by |
6 | from mechanisms with huge domainspecs. Workaround suggested by |
7 | upstream. Limits the size of mechanisms and modifiers, but that |
7 | upstream. Limits the size of mechanisms and modifiers, but that |
8 | shouldn't be a problem in practice. |
8 | shouldn't be a problem in practice. |
- | 9 | * 42_empty_sender.dpatch could previously cause segfaults by trying to |
|
- | 10 | write to a constant string. Fixed. |
|
9 | 11 | ||
10 | -- Magnus Holmgren <holmgren@debian.org> Wed, 05 Nov 2008 10:34:13 +0100 |
12 | -- Magnus Holmgren <holmgren@debian.org> Wed, 05 Nov 2008 10:37:20 +0100 |
11 | 13 | ||
12 | libspf2 (1.2.5.dfsg-5+lenny1) testing-security; urgency=high |
14 | libspf2 (1.2.5.dfsg-5+lenny1) testing-security; urgency=high |
13 | 15 | ||
14 | * [CVE-2008-2469] 50_dns_resolv_bufoverflow.dpatch: Fix buffer overflows |
16 | * [CVE-2008-2469] 50_dns_resolv_bufoverflow.dpatch: Fix buffer overflows |
15 | in DNS response parsing. |
17 | in DNS response parsing. |
16 | 18 | ||
17 | -- Magnus Holmgren <holmgren@debian.org> Sun, 19 Oct 2008 22:14:18 +0200 |
19 | -- Magnus Holmgren <holmgren@debian.org> Sun, 19 Oct 2008 22:14:18 +0200 |
18 | 20 | ||
19 | libspf2 (1.2.5.dfsg-5) unstable; urgency=low |
21 | libspf2 (1.2.5.dfsg-5) unstable; urgency=low |
20 | 22 | ||
21 | * 43_new_explanation_url.dpatch: Bring default explanation up to date by |
23 | * 43_new_explanation_url.dpatch: Bring default explanation up to date by |
22 | referring to www.openspf.org instead of spf.pobox.com. |
24 | referring to www.openspf.org instead of spf.pobox.com. |
23 | * Add spfquery(1) manpage. |
25 | * Add spfquery(1) manpage. |
24 | * Fix format of copyright notice in debian/copyright. |
26 | * Fix format of copyright notice in debian/copyright. |
25 | * Move upstream homepage URL to the new Homepage control field, rename |
27 | * Move upstream homepage URL to the new Homepage control field, rename |
26 | VCS control fields, and update Standards-Version. |
28 | VCS control fields, and update Standards-Version. |
27 | * A few cosmetic adjustments including fixing the indentation of the |
29 | * A few cosmetic adjustments including fixing the indentation of the |
28 | 1.2.5.dfsg-3 entry below (Closes: #465466). |
30 | 1.2.5.dfsg-3 entry below (Closes: #465466). |
29 | * New maintainer email address. |
31 | * New maintainer email address. |
30 | 32 | ||
31 | -- Magnus Holmgren <holmgren@debian.org> Fri, 18 Apr 2008 17:51:28 +0200 |
33 | -- Magnus Holmgren <holmgren@debian.org> Fri, 18 Apr 2008 17:51:28 +0200 |
32 | 34 | ||
33 | libspf2 (1.2.5.dfsg-4) unstable; urgency=low |
35 | libspf2 (1.2.5.dfsg-4) unstable; urgency=low |
34 | 36 | ||
35 | * Added 23_spfquery_ipv6.dpatch: Make spfquery accept IPv6 addresses |
37 | * Added 23_spfquery_ipv6.dpatch: Make spfquery accept IPv6 addresses |
36 | (Closes: #440147). Thanks to Matthias Cramer. |
38 | (Closes: #440147). Thanks to Matthias Cramer. |
37 | * 35_untabify_help.dpatch: Make --help output of utilities less ugly by |
39 | * 35_untabify_help.dpatch: Make --help output of utilities less ugly by |
38 | converting tabs to spaces. |
40 | converting tabs to spaces. |
39 | 41 | ||
40 | -- Magnus Holmgren <magnus@kibibyte.se> Wed, 05 Sep 2007 15:39:22 +0200 |
42 | -- Magnus Holmgren <magnus@kibibyte.se> Wed, 05 Sep 2007 15:39:22 +0200 |
41 | 43 | ||
42 | libspf2 (1.2.5.dfsg-3) unstable; urgency=low |
44 | libspf2 (1.2.5.dfsg-3) unstable; urgency=low |
43 | 45 | ||
44 | * 22_spfquery_fallback_segfault.dpatch: Fix fallback-related segfault in |
46 | * 22_spfquery_fallback_segfault.dpatch: Fix fallback-related segfault in |
45 | spfquery (Closes: #430414). Thanks to Robert Millan. |
47 | spfquery (Closes: #430414). Thanks to Robert Millan. |
46 | * Correct debian/copyright (Closes: #433047). Thanks to Julian Mehnle. |
48 | * Correct debian/copyright (Closes: #433047). Thanks to Julian Mehnle. |
47 | * A second patch from Robert split into three: |
49 | * A second patch from Robert split into three: |
48 | * 40_permanent_include_errors.dpatch: Make permanent errors in |
50 | * 40_permanent_include_errors.dpatch: Make permanent errors in |
49 | processing an include: directive cause the parent evaluation to return |
51 | processing an include: directive cause the parent evaluation to return |
50 | a permanent error as well (Closes: #435139). |
52 | a permanent error as well (Closes: #435139). |
51 | * 41_none_not_neutral.dpatch: Use a diffent explanation for |
53 | * 41_none_not_neutral.dpatch: Use a diffent explanation for |
52 | SPF_RESULT_NONE than the one for SPF_RESULT_NEUTRAL (Closes: #435140). |
54 | SPF_RESULT_NONE than the one for SPF_RESULT_NEUTRAL (Closes: #435140). |
53 | * 42_empty_sender.dpatch: Use the HELO identity in MAIL FROM checks if |
55 | * 42_empty_sender.dpatch: Use the HELO identity in MAIL FROM checks if |
54 | the sender address has been set to the empty string (Closes: #431239). |
56 | the sender address has been set to the empty string (Closes: #431239). |
55 | * debian/control: Add XS-Vcs-* fields. |
57 | * debian/control: Add XS-Vcs-* fields. |
56 | 58 | ||
57 | -- Magnus Holmgren <magnus@kibibyte.se> Wed, 22 Aug 2007 17:13:27 +0200 |
59 | -- Magnus Holmgren <magnus@kibibyte.se> Wed, 22 Aug 2007 17:13:27 +0200 |
58 | 60 | ||
59 | libspf2 (1.2.5.dfsg-2) unstable; urgency=low |
61 | libspf2 (1.2.5.dfsg-2) unstable; urgency=low |
60 | 62 | ||
61 | * 21_spfquery_infininte_loop.dpatch: Fix infinite loop when giving |
63 | * 21_spfquery_infininte_loop.dpatch: Fix infinite loop when giving |
62 | unimplemented options to spfquery. |
64 | unimplemented options to spfquery. |
63 | * 20_printf_types.dpatch: Revert to using standard conversion specifiers |
65 | * 20_printf_types.dpatch: Revert to using standard conversion specifiers |
64 | without z modifiers. |
66 | without z modifiers. |
65 | * debian/watch: mangle away .dfsg from package version. |
67 | * debian/watch: mangle away .dfsg from package version. |
66 | * Lower spfquery and spfd alternatives priorities to 25. |
68 | * Lower spfquery and spfd alternatives priorities to 25. |
67 | * Skip applying 01_line-endings.dpatch; it's meaningless. |
69 | * Skip applying 01_line-endings.dpatch; it's meaningless. |
68 | 70 | ||
69 | -- Magnus Holmgren <magnus@kibibyte.se> Wed, 06 Jun 2007 19:31:01 +0200 |
71 | -- Magnus Holmgren <magnus@kibibyte.se> Wed, 06 Jun 2007 19:31:01 +0200 |
70 | 72 | ||
71 | libspf2 (1.2.5.dfsg-1) unstable; urgency=low |
73 | libspf2 (1.2.5.dfsg-1) unstable; urgency=low |
72 | 74 | ||
73 | * New maintainer (Closes: #372629). |
75 | * New maintainer (Closes: #372629). |
74 | * Repacked .orig.tar.gz without non-free IETF Internet Draft (Closes: |
76 | * Repacked .orig.tar.gz without non-free IETF Internet Draft (Closes: |
75 | #393390). |
77 | #393390). |
76 | * Merge updates from Ubuntu: |
78 | * Merge updates from Ubuntu: |
77 | - Add debian/compat and Build-depend on debhelper >= 5. |
79 | - Add debian/compat and Build-depend on debhelper >= 5. |
78 | - Add alternatives handling for /usr/bin/spfquery (Closes: #306875). |
80 | - Add alternatives handling for /usr/bin/spfquery (Closes: #306875). |
79 | - Conflict on libmail-spf-query-perl << 1:1.999.1-3. |
81 | - Conflict on libmail-spf-query-perl << 1:1.999.1-3. |
80 | - Add postinst and prerm scripts. |
82 | - Add postinst and prerm scripts. |
81 | - debian/copyright: update author address. |
83 | - debian/copyright: update author address. |
82 | - debian/control: add final newline. |
84 | - debian/control: add final newline. |
83 | * debian/control: |
85 | * debian/control: |
84 | * Change description of spfquery (Closes: #410592). |
86 | * Change description of spfquery (Closes: #410592). |
85 | * Add homepage to package descriptions. |
87 | * Add homepage to package descriptions. |
86 | * Reduce Debian diff by changing line endings with sed instead. |
88 | * Reduce Debian diff by changing line endings with sed instead. |
87 | * Further reduce Debian diff by eliminating config.sub and config.guess |
89 | * Further reduce Debian diff by eliminating config.sub and config.guess |
88 | from there. Build-depend on autotools-dev to ensure up-to-date |
90 | from there. Build-depend on autotools-dev to ensure up-to-date |
89 | versions instead. |
91 | versions instead. |
90 | * The autogenerated spf_lib_version.h was put in the wrong directory, |
92 | * The autogenerated spf_lib_version.h was put in the wrong directory, |
91 | while there was a static spf_lib_version.h in the right directory. |
93 | while there was a static spf_lib_version.h in the right directory. |
92 | Fix that with some rules in debian/rules. |
94 | Fix that with some rules in debian/rules. |
93 | * Use dpatch to manage patches. |
95 | * Use dpatch to manage patches. |
94 | * Apply 20_64bit_types.dpatch to hopefully prevent segfaults on 64-bit |
96 | * Apply 20_64bit_types.dpatch to hopefully prevent segfaults on 64-bit |
95 | architectures (Closes: #392793). Thanks to Thomas Jacob, Carsten |
97 | architectures (Closes: #392793). Thanks to Thomas Jacob, Carsten |
96 | Koch-Mauthe and Herbert Straub. |
98 | Koch-Mauthe and Herbert Straub. |
97 | * 20_printf_types.dpatch: Change format strings to use the z flag, |
99 | * 20_printf_types.dpatch: Change format strings to use the z flag, |
98 | meaning size_t, among other things. |
100 | meaning size_t, among other things. |
99 | * 30_spfd_check_unlink_failure.dpatch: Fix a typo in spfd (patch from |
101 | * 30_spfd_check_unlink_failure.dpatch: Fix a typo in spfd (patch from |
100 | Thomas Jacob). |
102 | Thomas Jacob). |
101 | * debian/watch: added. |
103 | * debian/watch: added. |
102 | * Update Standards-Version to 3.7.2 without changes. |
104 | * Update Standards-Version to 3.7.2 without changes. |
103 | * Apply 20_spf_dns_include_std_headers.dpatch: Include arpa/nameser.h and |
105 | * Apply 20_spf_dns_include_std_headers.dpatch: Include arpa/nameser.h and |
104 | netdb.h from spf_dns.h instead of defining the constants needed unless |
106 | netdb.h from spf_dns.h instead of defining the constants needed unless |
105 | certain HAVE_ macros are defined (Closes: #405885). |
107 | certain HAVE_ macros are defined (Closes: #405885). |
106 | * Apply 25_maxvals.dpatch, which brings certain processing limits (meant |
108 | * Apply 25_maxvals.dpatch, which brings certain processing limits (meant |
107 | to mitigate DoS attacks) in line with RFC 4408. Thanks to Scott |
109 | to mitigate DoS attacks) in line with RFC 4408. Thanks to Scott |
108 | Kitterman. |
110 | Kitterman. |
109 | * debian/control: Change libspf2-dev dependency to ${binary:Version} so |
111 | * debian/control: Change libspf2-dev dependency to ${binary:Version} so |
110 | that binNMUs will work. |
112 | that binNMUs will work. |
111 | * Ship spfd in the spfquery package (Closes: #258360). |
113 | * Ship spfd in the spfquery package (Closes: #258360). |
112 | 114 | ||
113 | -- Magnus Holmgren <magnus@kibibyte.se> Sat, 24 Mar 2007 14:51:23 +0100 |
115 | -- Magnus Holmgren <magnus@kibibyte.se> Sat, 24 Mar 2007 14:51:23 +0100 |
114 | 116 | ||
115 | libspf2 (1.2.5-4) unstable; urgency=low |
117 | libspf2 (1.2.5-4) unstable; urgency=low |
116 | 118 | ||
117 | * Orphan. |
119 | * Orphan. |
118 | 120 | ||
119 | -- Eric Dorland <eric@debian.org> Mon, 20 Nov 2006 02:16:20 -0500 |
121 | -- Eric Dorland <eric@debian.org> Mon, 20 Nov 2006 02:16:20 -0500 |
120 | 122 | ||
121 | libspf2 (1.2.5-3) unstable; urgency=low |
123 | libspf2 (1.2.5-3) unstable; urgency=low |
122 | 124 | ||
123 | * src/include/spf_server.h: Remove useless include to |
125 | * src/include/spf_server.h: Remove useless include to |
124 | spf_dns_internal.h. (Closes: #312145) |
126 | spf_dns_internal.h. (Closes: #312145) |
125 | * debian/control: Have spfquery against libmail-spf-query-perl to work |
127 | * debian/control: Have spfquery against libmail-spf-query-perl to work |
126 | around #306875, hopefully temporarily. |
128 | around #306875, hopefully temporarily. |
127 | 129 | ||
128 | -- Eric Dorland <eric@debian.org> Sat, 30 Jul 2005 01:25:24 -0400 |
130 | -- Eric Dorland <eric@debian.org> Sat, 30 Jul 2005 01:25:24 -0400 |
129 | 131 | ||
130 | libspf2 (1.2.5-2) unstable; urgency=low |
132 | libspf2 (1.2.5-2) unstable; urgency=low |
131 | 133 | ||
132 | * The "Doh, missed a soname change" release. |
134 | * The "Doh, missed a soname change" release. |
133 | * debian/libspf2-0.install: Rename to libspf2-2.install. |
135 | * debian/libspf2-0.install: Rename to libspf2-2.install. |
134 | * debian/control: |
136 | * debian/control: |
135 | - Change libspf2-0 to libspf2-2 to reflect soname change. |
137 | - Change libspf2-0 to libspf2-2 to reflect soname change. |
136 | (Closes: #306205) |
138 | (Closes: #306205) |
137 | - Add spfquery package, don't package spfd for now, can't figure |
139 | - Add spfquery package, don't package spfd for now, can't figure |
138 | out how to make it work. This partially addresses #258360. |
140 | out how to make it work. This partially addresses #258360. |
139 | * debian/spfquery.install: New file. |
141 | * debian/spfquery.install: New file. |
140 | 142 | ||
141 | -- Eric Dorland <eric@debian.org> Mon, 25 Apr 2005 20:07:48 -0400 |
143 | -- Eric Dorland <eric@debian.org> Mon, 25 Apr 2005 20:07:48 -0400 |
142 | 144 | ||
143 | libspf2 (1.2.5-1) unstable; urgency=low |
145 | libspf2 (1.2.5-1) unstable; urgency=low |
144 | 146 | ||
145 | * New upstream release. |
147 | * New upstream release. |
146 | 148 | ||
147 | -- Eric Dorland <eric@debian.org> Sun, 17 Apr 2005 23:37:27 -0400 |
149 | -- Eric Dorland <eric@debian.org> Sun, 17 Apr 2005 23:37:27 -0400 |
148 | 150 | ||
149 | libspf2 (1.0.4-4) unstable; urgency=medium |
151 | libspf2 (1.0.4-4) unstable; urgency=medium |
150 | 152 | ||
151 | * configure, aclocal.m4: Run aclocal and autoconf to get the right code |
153 | * configure, aclocal.m4: Run aclocal and autoconf to get the right code |
152 | for the libtool test to use the pass_all method on arm. (Closes: |
154 | for the libtool test to use the pass_all method on arm. (Closes: |
153 | #276516) |
155 | #276516) |
154 | * Urgency medium to get this bloody thing fixed already. |
156 | * Urgency medium to get this bloody thing fixed already. |
155 | 157 | ||
156 | -- Eric Dorland <eric@debian.org> Fri, 26 Nov 2004 00:15:04 -0500 |
158 | -- Eric Dorland <eric@debian.org> Fri, 26 Nov 2004 00:15:04 -0500 |
157 | 159 | ||
158 | libspf2 (1.0.4-3) unstable; urgency=low |
160 | libspf2 (1.0.4-3) unstable; urgency=low |
159 | 161 | ||
160 | * config/ltmain.sh: Re-libtoolize again, hopefully this will fix arm |
162 | * config/ltmain.sh: Re-libtoolize again, hopefully this will fix arm |
161 | building. |
163 | building. |
162 | 164 | ||
163 | -- Eric Dorland <eric@debian.org> Wed, 17 Nov 2004 13:50:50 -0500 |
165 | -- Eric Dorland <eric@debian.org> Wed, 17 Nov 2004 13:50:50 -0500 |
164 | 166 | ||
165 | libspf2 (1.0.4-2) unstable; urgency=low |
167 | libspf2 (1.0.4-2) unstable; urgency=low |
166 | 168 | ||
167 | * config/ltmain.sh: Re-libtoolize. (Closes: #269936) |
169 | * config/ltmain.sh: Re-libtoolize. (Closes: #269936) |
168 | * configure.ac: Apply patch from Kurt Roeckx to fix build on |
170 | * configure.ac: Apply patch from Kurt Roeckx to fix build on |
169 | amd64. (Closes: #262687) |
171 | amd64. (Closes: #262687) |
170 | * Rerun autoconf to apply the changes. |
172 | * Rerun autoconf to apply the changes. |
171 | 173 | ||
172 | -- Eric Dorland <eric@debian.org> Mon, 6 Sep 2004 19:36:20 -0400 |
174 | -- Eric Dorland <eric@debian.org> Mon, 6 Sep 2004 19:36:20 -0400 |
173 | 175 | ||
174 | libspf2 (1.0.4-1) unstable; urgency=low |
176 | libspf2 (1.0.4-1) unstable; urgency=low |
175 | 177 | ||
176 | * New upstream release. (Closes: #261709) |
178 | * New upstream release. (Closes: #261709) |
177 | 179 | ||
178 | -- Eric Dorland <eric@debian.org> Mon, 9 Aug 2004 00:57:49 -0400 |
180 | -- Eric Dorland <eric@debian.org> Mon, 9 Aug 2004 00:57:49 -0400 |
179 | 181 | ||
180 | libspf2 (1.0.3-1) unstable; urgency=low |
182 | libspf2 (1.0.3-1) unstable; urgency=low |
181 | 183 | ||
182 | * Initial release. (Closes: #257644) |
184 | * Initial release. (Closes: #257644) |
183 | 185 | ||
184 | -- Eric Dorland <eric@debian.org> Fri, 2 Jul 2004 00:00:19 -0400 |
186 | -- Eric Dorland <eric@debian.org> Fri, 2 Jul 2004 00:00:19 -0400 |
185 | 187 |