lp:ubuntu/gutsy-security/perdition

Created by James Westby and last modified
Get this branch:
bzr branch lp:ubuntu/gutsy-security/perdition
Members of Ubuntu branches can upload to this branch. Log in for directions.

Branch merges

Related bugs

Related blueprints

Branch information

Owner:
Ubuntu branches
Review team:
Ubuntu Development Team
Status:
Development

Recent revisions

9. By Stephan RĂ¼gamer

* SECURITY UPDATE: The format string protection
  mechanism in IMAPD for Perdition Mail Retrieval
  Proxy 1.17 and earlier allows remote attackers to
  execute arbitrary code via an IMAP tag with a null
  byte followed by a format string specifier,
  which is not counted by the mechanism.
* perdition/imap4_in.c: Added patch according to upstream (LP: #162543)
  (See: http://perdition.cvs.sourceforge.net/perdition/perdition/perdition/imap4_in.c?r1=1.45&r2=1.46)
* References:
  CVE-2007-5740
  https://bugs.edge.launchpad.net/ubuntu/dapper/+source/perdition/+bug/162543
  http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=448853
  http://perdition.cvs.sourceforge.net/perdition/perdition/perdition/imap4_in.c?r1=1.45&r2=1.46

8. By Simon Horman <email address hidden>

* Remove the unneccesary Build-Depends on automake as part of
  automake transition. http://wiki.debian.org/AutomakeTransition
  (closes: #376643)
* Fix documentation of map_library. Thanks to Anand Kumria.
  (closes: #354527)
* Add suggests perdition-ldap, perdition-mysql, perdition-odbc,
  perdition-postgresql to perdition
* Update from standards version 3.6.1 to 3.7.2

7. By Adam Conrad

Rebuild against the new libmysqlclient15off with correct symbols.

6. By Horms

* Rebuild, as i386 upload was missing depenancies on vanessa libraries.
  This was caused by a ~/.magic in the build environment that had very
  unexpected side affects. Primarily causing file to return "data"
  instead of "ELF" on ELF executables, and thus causing all executables
  to be skipped by dh_shlibdeps.
  (closes: #344797)
* Tell dh_shlibdeps that base libraries are in the perdition package
  and found in debian/perdition/usr/lib

5. By Horms

Update MySQL build dependancy to libmysqlclient15-dev
(closes: 343790)

4. By Simon Horman <email address hidden>

Revert to using ldap_init() instead of ldap_initialize()
which seems to be broken on debian's ldap, 2.1.30.
I am not sure what version it works for, if any.
http://www.openldap.org/lists/openldap-software/200406/msg00688.html

3. By Simon Horman <email address hidden>

Removed ldap (latex) documentation as it can no longer be built
on debian. (closes: Bug#266067)

2. By Simon Horman <email address hidden>

* Fixed a bug in the forming of the return string from an
  LDAP lookup. (closes: Bug#243898)
* Use compat 4
* Removed half-broken depends

1. By Simon Horman <email address hidden>

Import upstream version 1.15

Branch metadata

Branch format:
Branch format 7
Repository format:
Bazaar repository format 2a (needs bzr 1.16 or later)
Stacked on:
lp:ubuntu/karmic/perdition
This branch contains Public information 
Everyone can see this information.

Subscribers