Subversion Repositories

?revision_form?Rev ?revision_input??revision_submit??revision_endform?

Rev 39 | Blame | Compare with Previous | Last modification | View Log | RSS feed

libspf2 (1.2.5.dfsg-5+lenny2) testing-security; urgency=high

  * 51_actually-keep-track-of-max_var_len.dpatch: Fix possible DoS with
    long sender addresses. Thanks to Hannah Schroeter.
  * 52_compile_bufoverflow.dpatch: Prevent buffer overflows in SPF_compile
    from mechanisms with huge domainspecs. Workaround suggested by
    upstream. Limits the size of mechanisms and modifiers, but that
    shouldn't be a problem in practice.
  * 42_empty_sender.dpatch could previously cause segfaults by trying to
    write to a constant string. Fixed.

 -- Magnus Holmgren <holmgren@debian.org>  Wed, 05 Nov 2008 10:37:20 +0100

libspf2 (1.2.5.dfsg-5+lenny1) testing-security; urgency=high

  * [CVE-2008-2469] 50_dns_resolv_bufoverflow.dpatch: Fix buffer overflows
    in DNS response parsing.

 -- Magnus Holmgren <holmgren@debian.org>  Sun, 19 Oct 2008 22:14:18 +0200

libspf2 (1.2.5.dfsg-5) unstable; urgency=low

  * 43_new_explanation_url.dpatch: Bring default explanation up to date by
    referring to www.openspf.org instead of spf.pobox.com.
  * Add spfquery(1) manpage.
  * Fix format of copyright notice in debian/copyright.
  * Move upstream homepage URL to the new Homepage control field, rename
    VCS control fields, and update Standards-Version.
  * A few cosmetic adjustments including fixing the indentation of the
    1.2.5.dfsg-3 entry below (Closes: #465466).
  * New maintainer email address.

 -- Magnus Holmgren <holmgren@debian.org>  Fri, 18 Apr 2008 17:51:28 +0200

libspf2 (1.2.5.dfsg-4) unstable; urgency=low

  * Added 23_spfquery_ipv6.dpatch: Make spfquery accept IPv6 addresses
    (Closes: #440147). Thanks to Matthias Cramer.
  * 35_untabify_help.dpatch: Make --help output of utilities less ugly by
    converting tabs to spaces.

 -- Magnus Holmgren <magnus@kibibyte.se>  Wed, 05 Sep 2007 15:39:22 +0200

libspf2 (1.2.5.dfsg-3) unstable; urgency=low

  * 22_spfquery_fallback_segfault.dpatch: Fix fallback-related segfault in
    spfquery (Closes: #430414). Thanks to Robert Millan.
  * Correct debian/copyright (Closes: #433047). Thanks to Julian Mehnle.
  * A second patch from Robert split into three:
    * 40_permanent_include_errors.dpatch: Make permanent errors in
      processing an include: directive cause the parent evaluation to return
      a permanent error as well (Closes: #435139).
    * 41_none_not_neutral.dpatch: Use a diffent explanation for
      SPF_RESULT_NONE than the one for SPF_RESULT_NEUTRAL (Closes: #435140).
    * 42_empty_sender.dpatch: Use the HELO identity in MAIL FROM checks if
      the sender address has been set to the empty string (Closes: #431239).
  * debian/control: Add XS-Vcs-* fields.

 -- Magnus Holmgren <magnus@kibibyte.se>  Wed, 22 Aug 2007 17:13:27 +0200

libspf2 (1.2.5.dfsg-2) unstable; urgency=low

  * 21_spfquery_infininte_loop.dpatch: Fix infinite loop when giving
    unimplemented options to spfquery.
  * 20_printf_types.dpatch: Revert to using standard conversion specifiers
    without z modifiers.
  * debian/watch: mangle away .dfsg from package version.
  * Lower spfquery and spfd alternatives priorities to 25.
  * Skip applying 01_line-endings.dpatch; it's meaningless.

 -- Magnus Holmgren <magnus@kibibyte.se>  Wed, 06 Jun 2007 19:31:01 +0200

libspf2 (1.2.5.dfsg-1) unstable; urgency=low

  * New maintainer (Closes: #372629).
  * Repacked .orig.tar.gz without non-free IETF Internet Draft (Closes:
    #393390).
  * Merge updates from Ubuntu:
    - Add debian/compat and Build-depend on debhelper >= 5.
    - Add alternatives handling for /usr/bin/spfquery (Closes: #306875).
      - Conflict on libmail-spf-query-perl << 1:1.999.1-3.
      - Add postinst and prerm scripts.
    - debian/copyright: update author address.
    - debian/control: add final newline.
  * debian/control: 
    * Change description of spfquery (Closes: #410592).
    * Add homepage to package descriptions.
  * Reduce Debian diff by changing line endings with sed instead.
  * Further reduce Debian diff by eliminating config.sub and config.guess
    from there. Build-depend on autotools-dev to ensure up-to-date
    versions instead.
  * The autogenerated spf_lib_version.h was put in the wrong directory,
    while there was a static spf_lib_version.h in the right directory.
    Fix that with some rules in debian/rules.
  * Use dpatch to manage patches.
  * Apply 20_64bit_types.dpatch to hopefully prevent segfaults on 64-bit
    architectures (Closes: #392793). Thanks to Thomas Jacob, Carsten
    Koch-Mauthe and Herbert Straub.
  * 20_printf_types.dpatch: Change format strings to use the z flag,
    meaning size_t, among other things.
  * 30_spfd_check_unlink_failure.dpatch: Fix a typo in spfd (patch from
    Thomas Jacob).
  * debian/watch: added.
  * Update Standards-Version to 3.7.2 without changes.
  * Apply 20_spf_dns_include_std_headers.dpatch: Include arpa/nameser.h and
    netdb.h from spf_dns.h instead of defining the constants needed unless
    certain HAVE_ macros are defined (Closes: #405885).
  * Apply 25_maxvals.dpatch, which brings certain processing limits (meant
    to mitigate DoS attacks) in line with RFC 4408. Thanks to Scott
    Kitterman.
  * debian/control: Change libspf2-dev dependency to ${binary:Version} so
    that binNMUs will work.
  * Ship spfd in the spfquery package (Closes: #258360).

 -- Magnus Holmgren <magnus@kibibyte.se>  Sat, 24 Mar 2007 14:51:23 +0100

libspf2 (1.2.5-4) unstable; urgency=low

  * Orphan.

 -- Eric Dorland <eric@debian.org>  Mon, 20 Nov 2006 02:16:20 -0500

libspf2 (1.2.5-3) unstable; urgency=low

  * src/include/spf_server.h: Remove useless include to
    spf_dns_internal.h. (Closes: #312145)
  * debian/control: Have spfquery against libmail-spf-query-perl to work
    around #306875, hopefully temporarily. 

 -- Eric Dorland <eric@debian.org>  Sat, 30 Jul 2005 01:25:24 -0400

libspf2 (1.2.5-2) unstable; urgency=low

  * The "Doh, missed a soname change" release.
  * debian/libspf2-0.install: Rename to libspf2-2.install. 
  * debian/control:
    - Change libspf2-0 to libspf2-2 to reflect soname change. 
      (Closes: #306205)
    - Add spfquery package, don't package spfd for now, can't figure 
      out how to make it work. This partially addresses #258360. 
  * debian/spfquery.install: New file.

 -- Eric Dorland <eric@debian.org>  Mon, 25 Apr 2005 20:07:48 -0400

libspf2 (1.2.5-1) unstable; urgency=low

  * New upstream release.

 -- Eric Dorland <eric@debian.org>  Sun, 17 Apr 2005 23:37:27 -0400

libspf2 (1.0.4-4) unstable; urgency=medium

  * configure, aclocal.m4: Run aclocal and autoconf to get the right code
    for the libtool test to use the pass_all method on arm. (Closes:
    #276516)
  * Urgency medium to get this bloody thing fixed already. 

 -- Eric Dorland <eric@debian.org>  Fri, 26 Nov 2004 00:15:04 -0500

libspf2 (1.0.4-3) unstable; urgency=low

  * config/ltmain.sh: Re-libtoolize again, hopefully this will fix arm
    building.

 -- Eric Dorland <eric@debian.org>  Wed, 17 Nov 2004 13:50:50 -0500

libspf2 (1.0.4-2) unstable; urgency=low

  * config/ltmain.sh: Re-libtoolize. (Closes: #269936)
  * configure.ac: Apply patch from Kurt Roeckx to fix build on
    amd64. (Closes: #262687)
  * Rerun autoconf to apply the changes.

 -- Eric Dorland <eric@debian.org>  Mon,  6 Sep 2004 19:36:20 -0400

libspf2 (1.0.4-1) unstable; urgency=low

  * New upstream release. (Closes: #261709)

 -- Eric Dorland <eric@debian.org>  Mon,  9 Aug 2004 00:57:49 -0400

libspf2 (1.0.3-1) unstable; urgency=low

  * Initial release. (Closes: #257644)
  
 -- Eric Dorland <eric@debian.org>  Fri,  2 Jul 2004 00:00:19 -0400