lp:ubuntu/gutsy-security/perdition
- Get this branch:
- bzr branch lp:ubuntu/gutsy-security/perdition
Branch merges
Branch information
Recent revisions
- 9. By Stephan RĂ¼gamer
-
* SECURITY UPDATE: The format string protection
mechanism in IMAPD for Perdition Mail Retrieval
Proxy 1.17 and earlier allows remote attackers to
execute arbitrary code via an IMAP tag with a null
byte followed by a format string specifier,
which is not counted by the mechanism.
* perdition/imap4_in. c: Added patch according to upstream (LP: #162543)
(See: http://perdition. cvs.sourceforge .net/perdition/ perdition/ perdition/ imap4_in. c?r1=1. 45&r2=1. 46)
* References:
CVE-2007-5740
https://bugs.edge. launchpad. net/ubuntu/ dapper/ +source/ perdition/ +bug/162543
http://bugs.debian. org/cgi- bin/bugreport. cgi?bug= 448853
http://perdition. cvs.sourceforge .net/perdition/ perdition/ perdition/ imap4_in. c?r1=1. 45&r2=1. 46 - 8. By Simon Horman <email address hidden>
-
* Remove the unneccesary Build-Depends on automake as part of
automake transition. http://wiki.debian. org/AutomakeTra nsition
(closes: #376643)
* Fix documentation of map_library. Thanks to Anand Kumria.
(closes: #354527)
* Add suggests perdition-ldap, perdition-mysql, perdition-odbc,
perdition-postgresql to perdition
* Update from standards version 3.6.1 to 3.7.2 - 6. By Horms
-
* Rebuild, as i386 upload was missing depenancies on vanessa libraries.
This was caused by a ~/.magic in the build environment that had very
unexpected side affects. Primarily causing file to return "data"
instead of "ELF" on ELF executables, and thus causing all executables
to be skipped by dh_shlibdeps.
(closes: #344797)
* Tell dh_shlibdeps that base libraries are in the perdition package
and found in debian/perdition/ usr/lib - 4. By Simon Horman <email address hidden>
-
Revert to using ldap_init() instead of ldap_initialize()
which seems to be broken on debian's ldap, 2.1.30.
I am not sure what version it works for, if any.
http://www.openldap. org/lists/ openldap- software/ 200406/ msg00688. html - 3. By Simon Horman <email address hidden>
-
Removed ldap (latex) documentation as it can no longer be built
on debian. (closes: Bug#266067) - 2. By Simon Horman <email address hidden>
-
* Fixed a bug in the forming of the return string from an
LDAP lookup. (closes: Bug#243898)
* Use compat 4
* Removed half-broken depends
Branch metadata
- Branch format:
- Branch format 7
- Repository format:
- Bazaar repository format 2a (needs bzr 1.16 or later)
- Stacked on:
- lp:ubuntu/karmic/perdition