lp:ubuntu/dapper-security/cyrus-sasl2

Created by James Westby and last modified
Get this branch:
bzr branch lp:ubuntu/dapper-security/cyrus-sasl2
Members of Ubuntu branches can upload to this branch. Log in for directions.

Branch merges

Related bugs

Related blueprints

Branch information

Owner:
Ubuntu branches
Review team:
Ubuntu Development Team
Status:
Mature

Recent revisions

10. By Kees Cook

* SECURITY UPDATE: base64 encoding could result in unterminated
  strings, leading to crashes or loss of privacy.
  - Add debian/patches/50_sasl_encode64_term.diff: backported
    upstream fixes.
  - CVE-2009-0688

9. By Martin Pitt

* SECURITY UPDATE: Remote DoS with crafted realms during DIGEST-MD5
  negotiation.
* Add debian/patches/27_upstream_cvs_digest-md5-crash.diff:
  - plugins/digestmd5.c: Check that the provided realm is valid to avoid
    crash.
  - Patch taken from upstream CVS, fixed upstream in 2.1.21:
    https://bugzilla.andrew.cmu.edu/cgi-bin/cvsweb.cgi/src/sasl/
    plugins/digestmd5.c.diff?r1=1.173&r2=1.175&f=u
* CVE-2006-1721

8. By Martin Pitt

* Synchronize to Debian (#28137)
* Reapply remaining Ubuntu changes to clean Debian package:
  - debian/patches/13_libdb42_autotools.diff, debian/control: Build against
    db4.3 instead of 4.2.
  - debian/control: Since the libsasl2 package description so clearly states
    that the library is "completely useless" without one of the
    libsasl2-modules packages, upgrade the Recommends on a single package to
    an ORd Depends on the complete list of them. (Ubuntu bug #8046)
    [Adam Conrad]

7. By Adam Conrad

Rebuild against the new libmysqlclient15off with correct symbols.

6. By Martin Pitt

Build against libmysqlclient15.

5. By Martin Pitt

Build against new heimdal >= 0.7.1 to completely get rid of krb4 stuff.

4. By Martin Pitt

* debian/patches/09_postgres_header.diff:
  - Correct path to postgresql headers to fix FTBFS. (Ubuntu #14592)

3. By Adam Conrad

Since the libsasl2 package description so clearly states that the
library is "completely useless" without one of the libsasl2-modules
packages, upgrade the Recommends on a single package to an ORd
Depends on the complete list of them. (Ubuntu bug #8046)

2. By Henrique de Moraes Holschuh

* NMU
* Fix minor issue with -1.2 in patch 15, to squash a compiler
  warning (just in case it becomes more than a warning in some arch):
  add missing "int" to extern declaration

1. By Henrique de Moraes Holschuh

Import upstream version 2.1.19

Branch metadata

Branch format:
Branch format 7
Repository format:
Bazaar repository format 2a (needs bzr 1.16 or later)
Stacked on:
lp:ubuntu/karmic/cyrus-sasl2
This branch contains Public information 
Everyone can see this information.

Subscribers