lp:ubuntu/maverick-updates/openldap

Created by James Westby and last modified
Get this branch:
bzr branch lp:ubuntu/maverick-updates/openldap
Members of Ubuntu branches can upload to this branch. Log in for directions.

Branch merges

Related bugs

Related blueprints

Branch information

Owner:
Ubuntu branches
Review team:
Ubuntu Development Team
Status:
Mature

Recent revisions

30. By Jamie Strandboge

* SECURITY UPDATE: potential denial of service (LP: #884163)
  - debian/patches/CVE-2011-4079: fix off by one error in
    postalAddressNormalize()
  - CVE-2011-4079

29. By Jamie Strandboge

* SECURITY UPDATE: fix successful anonymous bind via chain overlay when
  using forwarded authentication failures
  - debian/patches/CVE-2011-1024
  - CVE-2011-1024
* SECURITY UPDATE: verify password when authenticating to rootdn and using ndb
  backend. Note: Ubuntu is not compiled with --enable-ndb by default
  - debian/patches/CVE-2011-1025
  - CVE-2011-1025
* SECURITY UPDATE: fix DoS when processing unauthenticated modrdn requests
  and requestDN is empty
  - debian/patches/CVE-2011-1081
  - CVE-2011-1081

28. By Jamie Strandboge

debian/rules: move dh_apparmor before dh_installinit

27. By Jamie Strandboge

* convert to using dh_apparmor:
  - debian/rules, debian/slapd.post{inst,rm}: use dh_apparmor
  - debian/control: Build-Depends on debhelper 7.4.20ubuntu5
* debian/apparmor-profile: use local include

26. By Chuck Short

* New release, features include:
  + Fixed libldap to return server's error code (ITS#6569)
  + Fixed libldap memleaks (ITS#6568)
  + Fixed liblutil off-by-one with delta (ITS#6541)
  + Fixed slapd acls with glued databases (ITS#6468)
  + Fixed slapd syncrepl rid logging (ITS#6533)
  + Fixed slapd modrdn handling of invalid values (ITS#6570)
  + Fixed slapd-bdb hasSubordinates computation (ITS#6549)
  + Fixed slapd-bdb to use memcpy instead for strcpy (ITS#6474)
  + Fixed slapd-bdb entry cache delete failure (ITS#6577)
  + Fixed slapd-ldap to return control responses (ITS#6530)
  + Fixed slapo-ppolicy to use Debug (ITS#6566)
  + Fixed slapo-refint to zero out freed DN vals (ITS#6572)
  + Fixed slapo-rwm to use Debug (ITS#6566)
  + Fixed slapo-sssvlv to use Debug (ITS#6566)
  + Fixed slapo-syncprov lost deletes in refresh phase (ITS#6555)
  + Fixed slapo-valsort to use Debug (ITS#6566)
  + Fixed contrib/nssov network.c missing patch (ITS#6562)
  + Fixed test043 attribute sorting (ITS#6553)
  + slapd-config(5) note default rootdn (ITS#6546)
* Rebased patches debian/patches/dropped nssov-build
* Resynchronize with Debian:
  + debian/control:
    - Bump standards-version to 3.9.0
    - Use libdb4.8-dev (LP: #572489)
  + Added debian/patches/issue-6534-patch
  + Added debian/patches/ldap-conf-tls-cacertdir
* Add ufw support, thanks to PatRiehecky (LP: #423246)

 [Adam Sommer]
 * debian/rules, debian/slapd.py: Add apport hook. (LP: #610544)

25. By Mathias Gug

Fix local root connection access: replace olcAuthzRegexp mapping to
cn=localroot,cn=config with using the SASL dn directly in olcAccess.
Makes upgrades much simpler and robust (LP: #563829).

24. By Scott Moser

[ Simon Olofsson ]
* debian/slapd.postinst:
  - Show a message after successful migration (LP: #538848)

[ Jorgen Rosink ]
* debian/slapd.init: add simple status checking with LSB compatible exit
  codes (LP: #562377)
* debian/slapd.init.ldif:
  - remove admin user in default config database (LP: #556176)
  - in default config, add olcAccess entries giving access to controls
    available and cn=subschema (LP: #427842)

[ Scott Moser ]
* debian/slapd.scripts-common: Do not create /nonexistent directory
   for openldap user's home (LP: #556176)
* debian/slapd.postinst: fix cn=config olcAccess migration (LP: #559070)

23. By Thierry Carrez

* debian/slapd.postinst, debian/slapd.scripts-common: Upgrade databases
  before trying to convert to slapd.d, to avoid upgrade failure from hardy
  (LP: #536958)
* debian/slapd.postinst: Add a {1} numeric index to olcAccess entry in
  olcDatabase={0}config.ldif to avoid upgrade failures (LP: #538516, #526230)

22. By Chuck Short

debian/apparmor-profile: Update apparmor profile. (LP: #508190)

21. By Mathias Gug

* New upstream release.
* debian/rules, debian/schema/extra/:
  Fix get-orig-source rule to supports extra schemas shipped as part of the
  debian/schema/ directory.

Branch metadata

Branch format:
Branch format 7
Repository format:
Bazaar repository format 2a (needs bzr 1.16 or later)
Stacked on:
lp:ubuntu/natty/openldap
This branch contains Public information 
Everyone can see this information.