lp:ubuntu/hardy-security/gnupg2

Created by James Westby and last modified
Get this branch:
bzr branch lp:ubuntu/hardy-security/gnupg2
Members of Ubuntu branches can upload to this branch. Log in for directions.

Branch merges

Related bugs

Related blueprints

Branch information

Owner:
Ubuntu branches
Review team:
Ubuntu Development Team
Status:
Mature

Recent revisions

21. By Marc Deslauriers

* keyserver/gpgkeys_hkp.c: Use the longest key ID available when
  requesting a key from a key server.
  - http://git.gnupg.org/cgi-bin/gitweb.cgi?p=gnupg.git;a=commit;h=3005b0a6f43e53bed2f9b6fba7ad1205bdb29bc5

20. By Marc Deslauriers

* SECURITY UPDATE: denial of service and possible arbitrary code
  execution via certificate with large number of Subject Alternate Names
  - kbx/keybox-blob.c: fix use-after-free.
  - http://cvs.gnupg.org/cgi-bin/viewcvs.cgi?view=rev&revision=5371
  - CVE-2010-2547

19. By Eric Dorland

* New upstream release.
* debian/rules:
  - Remove unnecessary deletion of the .gmo files. (Closes: #442583)
  - Clean out some old comments
* gnupg-agent.xsession: Remove the quotes around --write-env-file
  argument. Not ideal, but fine for now. Thanks Luis Rodrigo Gallardo
  Cruz. (Closes: #443580)

18. By Steve Kowalik

Rebuild for the libcurl transition mess.

17. By Michael Bienia

Rebuild with libcurl4-gnutls (change build-depends from
libcurl3-gnutls-dev to libcurl4-gnutls-dev).

16. By Michael Bienia

* Merge from debian unstable, remaining changes:
  - Remove libpcsclite-dev, libopensc2-dev build dependencies (they are in
    universe).
  - Build-depend on libcurl3-gnutls-dev
  - g10/call-agent.c: set DBG_ASSUAN to 0 to suppress a debug message
  - Include /doc files as done with gnupg
  - debian/rules: add doc/com-certs.pem to the docs for gpgsm
  - debian/copyright: update download url
  - debian/README.Debian: remove note the gnupg2 isn't released yet.
  - debian/control: Change Maintainer/XSBC-Original-Maintainer field.

15. By Michael Bienia

* Merge from Debian unstable. Remaining changes:
  - Remove libpcsclite-dev, libopensc2-dev build dependencies (they are in
    universe).
  - Build-depend on libcurl3-gnutls-dev
  - Include /doc files as done with gnupg
  - debian/rules: add doc/com-certs.pem to the docs for gpgsm
  - g10/call-agent.c: set DBG_ASSUAN to 0 to suppress a debug message
  - debian/README.Debian: remove note the gnupg2 isn't released yet.
  - debian/control: Change Maintainer/XSBC-Original-Maintainer field.

14. By Michael Bienia

* New upstream release
  - includes the patch for CVE-2006-6235
  - a PIN pad can now also be used for signing keys
* Remaining changes:
  - Remove libpcsclite-dev, libopensc2-dev build dependencies (they are in
    universe).
  - Build-depend on libcurl3-gnutls-dev
  - Include /doc files as done with gnupg
* g10/call-agent.c: set DBG_ASSUAN to 0 to suppress a debug message
* debian/rules: add doc/com-certs.pem to the docs for gpgsm
* debian/README.Debian: remove note the gnupg2 isn't released yet.
* Modified Maintainer values to match Debian-Maintainer-Field spec.

13. By Michael Bienia

[ Michael Bienia ]
* New upstream version.
* Remaining changes:
  - Remove libpcsclite-dev, libopensc2-dev build dependencies (they are in
    universe).
* g10/encr-data.c: remotely controllable function pointer (CVE-2006-6235)
* debian/control: add libcurl3-gnutls-dev to build-depends
  (Closes Ubuntu: #62864)

[ Kees Cook ]
* debian/rules: include doc/ files as done with gnupg

12. By Kees Cook

* Synchronize to Debian, reapply remaining Ubuntu changes to pristine Debian
  version:
  - Remove libpcsclite-dev, libopensc2-dev build dependencies (they are in
    universe).
* g10/openfile.c: fix allocation error (CVE-2006-6169)

Branch metadata

Branch format:
Branch format 7
Repository format:
Bazaar repository format 2a (needs bzr 1.16 or later)
Stacked on:
lp:ubuntu/maverick/gnupg2
This branch contains Public information 
Everyone can see this information.

Subscribers