lp:ubuntu/precise-security/munin

Created by Ubuntu Package Importer and last modified
Get this branch:
bzr branch lp:ubuntu/precise-security/munin
Members of Ubuntu branches can upload to this branch. Log in for directions.

Branch merges

Related bugs

Related blueprints

Branch information

Owner:
Ubuntu branches
Review team:
Ubuntu Development Team
Status:
Mature

Recent revisions

48. By Marc Deslauriers

* SECURITY UPDATE: multiple denial of service issues
  - debian/patches/CVE-2013-6xxx.patch: backport fixes from upstream to
    master/lib/Munin/Master/{HTMLOld,Node}.pm.
  - CVE-2013-6048
  - CVE-2013-6359

47. By Marc Deslauriers

* SECURITY UPDATE: symlink vulnerability in qmailscan plugin
  - debian/patches/CVE-2012-2103.patch: remove the use of tempfiles in
    plugins/node.d/qmailscan.in.
  - CVE-2012-2103
* SECURITY UPDATE: privilege escalation via root running plugins
  - debian/patches/CVE-2012-3512.patch: run each plugin in their own
    state directory in Makefile, Makefile.config,
    node/lib/Munin/Node/{OS,Service}.pm, plugins/lib/Munin/Plugin.pm,
    plugins/node.d/*.in,plugins/node.d.linux/*.in.
  - debian/patches/CVE-2012-3512-regression.patch: Don't rely on
    MUNIN_PLUGSTATE being in the environment as these scripts also get
    run by a cron job in plugins/node.d.linux/apt_all.in,
    plugins/node.d.linux/apt.in.
  - CVE-2012-3512
* debian/Makefile.config: added new plugin state directory location.
* debian/munin-node.{postinst,postrm}: Remove old plugin state directory
  override, also remove new plugin state directory.

46. By Vibhav Pant

* debian/patches/upstream_changeset_4597.patch
  - Fix incorrect graph configuration in munin plugin
    exim_mailqueue but switching AREA and STACK sections.
    Cherry picked patch from upstream VCS (LP: #598385).
* debian/patches/upstream_changeset_4358.patch
  - Fix broken memory usage data collection in memory plugin by
    silencing Perl 5.14 warnings.
    Cherry picked patch from upstream VCS (LP: #1000678).

45. By James Page

d/patches/fix_iostat_plugin.patch: Cherry picked patch from upstream
trunk to correct output of iostat plugin (LP: #919429).

44. By Vibhav Pant

debian/patches/upstream_changeset_4608.patch: use nfreeze() since it gets
stored in a file (LP: #872217)

43. By Chuck Short

* Merge from Debian testing. Remaining changes:
  - debian/rules: Remove sysvinit symlinks.
  - debian/control: Add libwww-perl as a dependency.
  - debian/rules, debian/munin-node.upstart. Convert to upstart.
  - Fix sensors_fan for sensors output without minimum values
    (LP: #840449).
  - debian/patches/lp_840449_sensors_fan_minimum_is_optional.patch
    Fix "mysql_ plugin fails when MySQL compiled without INNODB"
    (LP: #757617)
  - debian/patches/upstream_bug_884_fixed_in_trunk.patch
    Fix munin_stats plugin: missing newline in "config"
    (LP: #830564).
  - debian/patches/upstream_bug_937_fixed_in_trunk.patch
    Fix postfix_mailvolume when logfile is missing
    (LP: #800845).

42. By Chuck Short

* Fix sensors_fan for sensors output without minimum values
  (LP: #840449).
  - debian/patches/lp_840449_sensors_fan_minimum_is_optional.patch
* Fix "mysql_ plugin fails when MySQL compiled without INNODB"
  (LP: #757617)
  - debian/patches/upstream_bug_884_fixed_in_trunk.patch
* Fix munin_stats plugin: missing newline in "config"
  (LP: #830564).
  - debian/patches/upstream_bug_937_fixed_in_trunk.patch
* Fix postfix_mailvolume when logfile is missing
  (LP: #800845).

41. By Chuck Short

* Merge from Debian testing. Remaining changes:
  - debian/rules: Remove sysvinit symlinks.
  - debian/control: Add libwww-perl as a dependency.
  - debian/rules, debian/munin-node.upstart. Convert to upstart
  - debian/patches/upstream_add-timeout-to-legal-options.patch
  - debian/patches/upstream_bug_832.patch

40. By Chuck Short

debian/patches/upstream_bug_832.patch: Re-add.
(LP: #879853)

39. By Chuck Short

debian/patches/upstream_add-timeout-to-legal-options.patch:
Re-add dropped patch. (LP: #879853)

Branch metadata

Branch format:
Branch format 7
Repository format:
Bazaar repository format 2a (needs bzr 1.16 or later)
Stacked on:
lp:ubuntu/raring/munin
This branch contains Public information 
Everyone can see this information.

Subscribers