~racb/ubuntu/+source/dbus:lpusip/ubuntu/dapper-security

Last commit made on 2009-07-13
Get this branch:
git clone -b lpusip/ubuntu/dapper-security https://git.launchpad.net/~racb/ubuntu/+source/dbus
Only Robie Basak can upload to this branch. If you are Robie Basak please log in for upload directions.

Branch merges

Branch information

Name:
lpusip/ubuntu/dapper-security
Repository:
lp:~racb/ubuntu/+source/dbus

Recent commits

a708880... by Marc Deslauriers

Import patches-unapplied version 0.60-6ubuntu8.4 to ubuntu/dapper-security

Imported using usd-importer.

Publish parent: 95b0238196babc6da1ffe0c96fe42ad983c5898c

New changelog entries:
  * SECURITY UPDATE: Signature spoofing via incorrect logic
    - debian/patches/84-security-CVE-2009-1189.patch: fix logic in
      dbus/dbus-marshal-validate.c and fix test in
      dbus/dbus-marshal-validate-util.c.
    - CVE-2009-1189

95b0238... by Kees Cook

Import patches-unapplied version 0.60-6ubuntu8.3 to ubuntu/dapper-security

Imported using usd-importer.

Publish parent: ab16a51eb6badf21f64f50b75bdc11d202849e69

New changelog entries:
  * SECURITY UPDATE: policy bypass with NULL interfaces.
    - Add 82-NULL-policy-bypass.patch: upstream fixes.
    - CVE-2008-0595
  * SECURITY UPDATE: application crash via corrupt signatures.
    - Add 83-signature-validation.patch: upstream fixes.
    - CVE-2008-3834

ab16a51... by Kees Cook

Import patches-unapplied version 0.60-6ubuntu8.1 to ubuntu/dapper-security

Imported using usd-importer.

Publish parent: 8271575d931312a42ce6b1e1b0a6aaad5942210e

New changelog entries:
  * SECURITY UPDATE: denial of service, dbus can be made to ignore
    registered matches for other local users.
  * Add debian/patches/match_removal.patch: fix from upstream CVS.
  * References
    http://webcvs.freedesktop.org/dbus/dbus/bus/signals.c?r1=1.14&r2=1.14.2.1&view=patch&pathrev=DBUS_1_0
    CVE-2006-6107

8271575... by Sebastian Dröge

Import patches-unapplied version 0.60-6ubuntu8 to ubuntu/dapper

Imported using usd-importer.

Publish parent: 04ae1b4022a7acfe07ad9aca52203bf6afa28e83

New changelog entries:
  * Add a small hack to debian/rules to get us the content for the
    monodoc-dbus-1-manual package. (Ubuntu: #44449)

04ae1b4... by Sebastian Dröge

Import patches-unapplied version 0.60-6ubuntu7 to ubuntu/dapper

Imported using usd-importer.

Publish parent: 78948ecead48777a220b0db31d3c140336f0ce9b

New changelog entries:
  * debian/dbus.preinst:
    - Fix typo to finally really remove the
      /etc/X11/Xsession.d/75dbus-1-utils_dbus-launch duplicate

78948ec... by Sebastian Dröge

Import patches-unapplied version 0.60-6ubuntu6 to ubuntu/dapper

Imported using usd-importer.

Publish parent: 4fb054e090e52a2592dc53226aecae09584d7f00

New changelog entries:
  * debian/patches/dbus-python-service-py-typo.diff:
    + Fix typo in a variable name in service.py (Closes: Malone #30043)
  * debian/dbus.preinst:
    + Remove /etc/X11/Xsession.d/75dbus-1-utils_dbus-launch when we update
      from something lower than 0.60-6ubuntu6, not only for updates from below
      0.50-2. (Closes: Malone #31998)

4fb054e... by Martin Pitt

Import patches-unapplied version 0.60-6ubuntu5 to ubuntu/dapper

Imported using usd-importer.

Publish parent: fd38a5e9ed751779cc90950f1da131fef04134db

New changelog entries:
  * debian/dbus.{install,postinst}: Install dbus-foreground-console into
    /usr/lib/dbus-1.0, not into /usr/bin, since it's not supposed (and
    possible) to call as normal user.
  * debian/patches/dbus-change-at-console-policy.patch:
    - Change default path of dbus-foreground-console to /usr/lib/dbus-1.0/.
    - Use fork/exec instead of system() to call dbus-foreground-console; this
      avoids invoking the shell and nasty shell errors if it cannot be
      executed (like in the test suite).
    - Do not set a dbus error if dbus-foreground-console could be successfully
      called, but returns 0 (i. e. it could not determine a dbus console).
      This broke dbus clients like hal if there was no foreground console (on
      headless machines, for example).

fd38a5e... by Martin Pitt

Import patches-unapplied version 0.60-6ubuntu4 to ubuntu/dapper

Imported using usd-importer.

Publish parent: 7b984631bfd619e49189eded67e11f259352ee36

New changelog entries:
  * Add debian/patches/dbus-poll-hang.patch:
    - Check to see if our data has already been read off the connection by
      another blocking pending call before we block in poll.
      (check_for_reply_and_update_dispatch_unlocked): Code taken from
      _dbus_connection_block_pending_call - checks for an already read reply and
      updates the dispatch if there is one.
    - This fixes e. g. the long startup hang of hal-device-manager.
      (Malone #31517)
    - Patch taken from upstream CVS.

7b98463... by Sebastian Dröge

Import patches-unapplied version 0.60-6ubuntu3 to ubuntu/dapper

Imported using usd-importer.

Publish parent: 26630b1dfc19e33c43a8fa10233959a6975f13ca

New changelog entries:
  * Remove DEB_AUTO_UPDATE_AUTOCONF line from debian/rules to fix FTBFS

26630b1... by Martin Pitt

Import patches-unapplied version 0.60-6ubuntu2 to ubuntu/dapper

Imported using usd-importer.

Publish parent: 324988c7a614fe3e248cca7d6ff01b8dd8a2d140

New changelog entries:
  * Remove unnecessary libgtk-cil build dependency.
  * debian/rules: Disable DEB_AUTO_UPDATE_AUTOCONF to fix FTBFS.