lp:ubuntu/jaunty-security/irssi

Created by James Westby and last modified
Get this branch:
bzr branch lp:ubuntu/jaunty-security/irssi
Members of Ubuntu branches can upload to this branch. Log in for directions.

Branch merges

Related bugs

Related blueprints

Branch information

Owner:
Ubuntu branches
Review team:
Ubuntu Development Team
Status:
Mature

Recent revisions

19. By Jamie Strandboge

debian/patches/91_ssl_proxy.patch: when we have a proxy setting, we expect
the CN to match the proxy hostname, not the server hostname. Patch thanks
to Steve Langasek. (LP: #565182)

18. By Jamie Strandboge

* SECURITY UPDATE: perform certificate host validation
  - debian/patches/91_CVE-2010-1155.patch: adjust to verify hostname against
    CN. Also use one SSL_CTX per connection and use default trusted CAs if
    nothing specified.
  - CVE-2010-1155
* SECURITY UPDATE: fix crash when checking for fuzzy nick match when not on
  the channel
  - debian/patches/91_CVE-2010-1156.patch: verify channel is non-NULL in
    src/core/nicklist.c
  - CVE-2010-1156
* debian/patches/92_disable_sslv2.patch: do not use SSLv2 protocol

17. By Jamie Strandboge

* SECURITY UPDATE: off-by-one error allows remote IRC server to cause a
  denial of service via application crash
  - debian/patches/91CVE-2009-1959.patch: adjust fe-common/irc/fe-events.c
    to verify length of string before writing '\0'
  - CVE-2009-1959

16. By Pedro Fragoso

* Merge from Debian unstable (LP: #326002), Ubuntu remaining changes:
  - Added debian/patches/90irc-ubuntu-com.dpatch
  - debian/patches/03firsttimer_text:
    + Adapt it so it tells you about connecting to irc.ubuntu.com and
      joining #ubuntu instead of irc.debian.org and #debian.
      New with this merge: We now also apply this patch.

15. By Pedro Fragoso

* Merge from Debian unstable (LP: #295270), Ubuntu remaining changes:
  - Added debian/patches/90irc-ubuntu-com.dpatch
  - debian/patches/03firsttimer_text:
    + Adapt it so it tells you about connecting to irc.ubuntu.com and
      joining #ubuntu instead of irc.debian.org and #debian.
      New with this merge: We now also apply this patch.
  - debian/irssi.perm: Don't remove alternative on upgrades.

14. By Jonathan Davies

debian/patches/90irc-ubuntu-com.dpatch: Changed irc.ubuntu.com's
default port to 8001 to avoid DCC exploit (LP: #263259).

13. By Pedro Fragoso

* Merge from debian unstable (LP: #241282), remaining changes:
  - Added debian/patches/90irc-ubuntu-com.dpatch (LP: #52690)
  - debian/patches/03firsttimer_text:
    + Adapt it so it tells you about connecting to irc.ubuntu.com and
      joining #ubuntu instead of irc.debian.org and #debian. (LP: #188590)
      New with this merge: We now also apply this patch.
  - Modify Maintainer value to match DebianMaintainerField spec.
  - debian/irssi.perm: Don't remove alternative on upgrades. (LP: #67698)
* debian/patches/91-manpage-typo:
  - Dropped, merged upstream.

12. By Michael Bienia

Rebuild for the perl 5.10 transition (LP: #230016).

11. By John Dong

Replace authentification with a less amusing word

10. By Emilio Pozuelo Monfort

* debian/patches/03firsttimer_text:
  - Adapt it so it tells you about connecting to irc.ubuntu.com and
    joining #ubuntu, instead of irc.debian.org and #debian. LP: #188590.

Branch metadata

Branch format:
Branch format 7
Repository format:
Bazaar repository format 2a (needs bzr 1.16 or later)
Stacked on:
lp:ubuntu/karmic/irssi
This branch contains Public information 
Everyone can see this information.

Subscribers