lp:ubuntu/trusty-security/commons-httpclient

Created by Ubuntu Package Importer and last modified
Get this branch:
bzr branch lp:ubuntu/trusty-security/commons-httpclient
Members of Ubuntu branches can upload to this branch. Log in for directions.

Branch merges

Related bugs

Related blueprints

Branch information

Owner:
Ubuntu branches
Review team:
Ubuntu Development Team
Status:
Mature

Recent revisions

14. By Marc Deslauriers

* SECURITY UPDATE: improper certificate hostname verification
  - debian/patches/CVE-2014-3577.patch: fix Common Name logic in
    src/java/org/apache/commons/httpclient/protocol/SSLProtocolSocketFactory.java.
  - CVE-2014-3577
* SECURITY UPDATE: denial of service via failure to set socket timeout
  - debian/patches/CVE-2015-5262.patch: respect configured timeout in
    src/java/org/apache/commons/httpclient/protocol/SSLProtocolSocketFactory.java.
  - CVE-2015-5262
* debian/ant.properties: bump version to 1.5 to handle security fixes.

13. By Alberto Fernández

* Non-maintainer upload.
* Fix CVE-2012-5783 (Closes: #692442)
* Fix CN extraction from DN of X500 principal.
* Fix wildcard validation on ssl connections

12. By Alberto Fernández

* Non-maintainer upload.
* Fix CVE-2012-5783 (Closes: #692442)

11. By James Page

No-change rebuild with openjdk-7 as default-jdk.

10. By Torsten Werner

[ Damien Raude-Morvan ]
* Remove Arnaud Vandyck from Uploaders
* d/control: Drop Depends on any JRE as a Java library don't need to
  depends on a runtime (Java Policy)

[ Torsten Werner ]
* Switch to source format 3.0.
* Update Standards-Version: 3.9.1.
* Remove Barry from Uploaders list.

9. By Damien Raude-Morvan

* Add myself to Uploaders
* Use quilt as patch system
  - Build-Depends on quilt
  - Add debian/README.source
  - Use CDBS patchsys-quilt.mk
* New debian/patches/05_osgi_metadata.diff to include OSGi metadata
  in JAR (Closes: #558182)

8. By Onkar Shinde

[Damien Raude-Morvan]
* Fix debian/watch: use http://www.apache.org/dist/

[Onkar Shinde]
* debian/patches/04_fix_classpath.patch
  - Add appropriate jar files in classpath using manifest attribute.
    (LP: #459251)
* debian/ant.properties
  - Add properties to set target JVM version 1.4.

7. By Torsten Werner

* Add myself to Uploaders.
* Revert change from last upload:
  - Don't map version of commons-httpclient explicitly.
  (Closes: #551126, #551214, #551217, #551218, #551221, #551224, #551226,
  #551227, #551231, #551242)

6. By Varun Hiremath

* Convert to default-jdk/jre (Closes: #508949)
* Bump Standards-Version to 3.8.1

5. By Chris Cheney

* Merge from debian unstable, remaining changes:
  - default-java transition.

Branch metadata

Branch format:
Branch format 7
Repository format:
Bazaar repository format 2a (needs bzr 1.16 or later)
Stacked on:
lp:ubuntu/wily/commons-httpclient
This branch contains Public information 
Everyone can see this information.

Subscribers