cbfe49e... by Marc Deslauriers on 2012-10-03

Import patches-unapplied version 1.1.20-1ubuntu3.9 to ubuntu/hardy-security

Imported using git-ubuntu import.

Changelog parent: b6bfcd39187c700d838f7d6e888d0000af008bab

New changelog entries:
  * REGRESSION FIX: some applications launched with the activation helper
    may need DBUS_STARTER_ADDRESS. (LP: #1058343)
    - debian/patches/87-CVE-2012-3524-regression-fix.patch: hardcode the
      starter address to the default system bus address.

b6bfcd3... by Marc Deslauriers on 2012-09-19

Import patches-unapplied version 1.1.20-1ubuntu3.7 to ubuntu/hardy-security

Imported using git-ubuntu import.

Changelog parent: 89b5eb2c7e729a9388ecad8dd04ad173be9d2f15

New changelog entries:
  * SECURITY UPDATE: privilege escalation via unsanitized environment
    - debian/patches/86-CVE-2012-3524.patch: Don't access environment
      variables or run dbus-launch when setuid in configure.in,
      dbus/dbus-keyring.c, dbus/dbus-sysdeps*
    - CVE-2012-3524

89b5eb2... by Jamie Strandboge on 2011-07-22

Import patches-unapplied version 1.1.20-1ubuntu3.5 to ubuntu/hardy-security

Imported using git-ubuntu import.

Changelog parent: 778a9a4f92300fbf44c464393262a0591d3f59d0

New changelog entries:
  * SECURITY UPDATE: denial of service via messages with non-native byte order
    - debian/patches/85-CVE-2011-2200.patch: update dbus-marshal-header.c
      to verify header->data byte order and header->byte_order match in
    - CVE-2011-2200

778a9a4... by Jamie Strandboge on 2011-01-04

Import patches-unapplied version 1.1.20-1ubuntu3.4 to ubuntu/hardy-security

Imported using git-ubuntu import.

Changelog parent: 0d537bd9bd3e041593ebc06103dee0dec31264f8

New changelog entries:
  * SECURITY UPDATE: fix DoS with too deeply nested messages
    - debian/patches/84-CVE-2010-4352.patch: Limit nesting to 64 for dynamic
      message variants. Backported from upstream.
    - CVE-2010-4352
    - LP: #688992
  * debian/control: Build-Depends on libexpat1-dev instead of libexpat-dev

0d537bd... by Marc Deslauriers on 2009-07-06

Import patches-unapplied version 1.1.20-1ubuntu3.3 to ubuntu/hardy-security

Imported using git-ubuntu import.

Changelog parent: 3f166370a05f105be666ce850c046618b281ab0c

New changelog entries:
  * SECURITY UPDATE: Signature spoofing via incorrect logic
    - debian/patches/83-security-CVE-2009-1189.patch: fix logic in
      dbus/dbus-marshal-validate.c and fix test in
    - CVE-2009-1189

3f16637... by Martin Pitt on 2008-10-14

Import patches-unapplied version 1.1.20-1ubuntu3.2 to ubuntu/hardy-proposed

Imported using git-ubuntu import.

Changelog parent: 2672db27f472b2c77218421c3266840374be4e6d

New changelog entries:
  * Add debian/patches/04_helper_fd_leak.patch: Close file descriptors before
    exec()ing helpers, to avoid locking hardware like video cards by eternally
    open file fds. (LP: #230877)

2672db2... by Kees Cook on 2008-10-14

Import patches-unapplied version 1.1.20-1ubuntu3.1 to ubuntu/hardy-security

Imported using git-ubuntu import.

Changelog parent: 4c82a9151bbe3a12c39f6159c27fdc935d28d0df

New changelog entries:
  * SECURITY UPDATE: application crash via corrupt signatures.
    - Add 82-signature-validation.patch: upstream fixes.
    - CVE-2008-3834

4c82a91... by Martin Pitt on 2008-05-14

Import patches-unapplied version 1.1.20-1ubuntu2 to ubuntu/hardy-proposed

Imported using git-ubuntu import.

Changelog parent: 40f40283acf8154e9f801e2f5c4c8e921da891fa

New changelog entries:
  * Add debian/patches/03_fix_inotify.patch:
    - Fix overly aggressive inotifying of /etc/dbus/, breaking proper pickup
      of configuration file changes. With this fix, newly installed files in
      /etc/dbus/system.d/ become immediately active again, as in previous
      versions. (LP: #221834)
    - The patch also fixes syntax errors in the debugging statements.
    - Patch backported from 1.2.1, thanks to John Carr!

40f4028... by Martin Pitt on 2008-02-28

Import patches-unapplied version 1.1.20-1ubuntu1 to ubuntu/hardy

Imported using git-ubuntu import.

Changelog parent: 9ebac7777b0dcdbe970c0c71ceb78b63d5ad94b9

New changelog entries:
  * New upstream release: Tons of bug fixes, a security fix (CVE-2008-0595),
    and two small new features:
    - inotify support (to replace previous dnotify implementation); can be
      disabled with configure switch if it causes trouble
    - Add matching support for program binaries in dbus policy rules.
  * Merge with Debian unstable; remaining changes:
    - debian/patches/81-session.conf-timeout.patch: Raise the service startup
      timeout from 25 to 60 seconds. It may be too short on the live CD with
      slow machines.
    - Add consolekit (>= 0.2.3-3ubuntu2) dependency, which provides
      pam_console compatible stamps in /var/run/console. This keeps
      "at_console" policies working until we get rid of them completely.
      (See policykit-integration spec)
    - debian/dbus.{postinst,prerm}: Do not restart dbus on upgrades, since it
      breaks too many applications. Instead, trigger a "reboot required"
      notification. Since this cancels the postinst early, add an explicit
      update-rc.d call to the symlink migration.
    - debian/rules: Do not install /etc/X11/Xsession.d/75dbus_dbus-launch, we
      do not need it for Gnome, KDE, and XFCE, and it causes trouble.
      (LP #62163)
    - debian/dbus.preinst: Remove obsolete conffile
      /etc/X11/Xsession.d/75dbus_dbus-launch on upgrades. This needs to be
      kept until after Hardy's release.
  * Debian's forceful way of RC symlink migration should finally fix all the
    previous upgrade issues with wrong priorities. (LP: #25931)
  [ Loic Minier ]
  * Forcefully remove old init script symlinks on upgrades to this version to
    properly reinstall the init script when using insserv or file-rc; thanks
    Petter Reinholdtsen; closes: #466503.
  [ Michael Biebl ]
  * New upstream release.
  [ Loic Minier ]
  * Merge patch from Ubuntu to build a devhelp file; thanks Martin Pitt;
    closes: #454142.
    - Build-dep on xsltproc.
    - New patch, dbus-1.0.1-generate-xml-docs, enables generation of XML docs
      which serve as source for the devhelp generation.
    - Add a XSLT file from the Fedora package, debian/doxygen_to_devhelp.xsl.
    - Generate the devhelp file from the XML files thanks to the XSL file via
      xsltproc in build/dbus-1-doc::.
    - Install the devhelp index in dbus-1-doc and move the HTML documentation
      around; add a symlink from the gtk-doc dir.
  * Misc smallish whitespace cleanups.
  * Start dbus at runlevel priority 12 and stop at priority 88. This
    eliminates the race condition of starting the X session before hal is
    running. Migrate rc?.d symlinks from 20 to 12/88 on upgrades. This need
    to be kept until after lenny is released.
  * Set LSB Default-Stop section to 1 and only install a shutdown script for
    runlevel 1 to only stop dbus when going down to single user mode; dbus can
    simply be killed like everything else on shutdown or reboot by sendsigs;
    drop rc0 and rc6.d symlinks on upgrades.
  * Bump up dbus-x11 conflicts/replaces to << 1.1.2 to match the transition
    version in Ubuntu and reduce the delta.
  * Cleanup trailing whitespace.
  * Drop superfluous exit 0 at the end of dbus' init script which is set -e.
  * Add ${shlibs:Depends} to libdbus-1-dev.
  * Simplify dbus.postinst.
  * Rename patch dbus-1.0.1-generate-xml-docs to
    10_dbus-1.0.1-generate-xml-docs to reflect current patch stack order.
  * Set shlibs via DEB_DH_MAKESHLIBS_ARGS_ALL instead of libdbus-1-3.shlibs
    and extract libdbus-1-3 package name from control to avoid hardcoding the
    SONAME and package name.
  [ Michael Biebl ]
  * New upstream release.
  * Deprecate the ENABLED option and remove it from /etc/default/dbus. Print a
    warning message in the init script if this option is still used.
  * debian/patches/03_uuid_nul.patch
    - Removed, merged upstream.
  * debian/patches/04_dbus_launch.patch
    - Removed, merged upstream.
  * debian/control
    - Bump Standards-Version to 3.7.3. No further changes required.
  * debian/dbus.init
    - Fix LSB init header. Use $remote_fs instead of $local_fs as the
      daemon requires /usr to be mounted.
      Remove S from Should-Stop. (Closes: #459473)
    - Use mountpoint to check if /proc is mounted. (Closes: #458392)
    - Decrease retry-time to 5 secs on stop. (Closes: #462182)

9ebac77... by Martin Pitt on 2008-01-13

Import patches-unapplied version 1.1.2-1ubuntu2 to ubuntu/hardy

Imported using git-ubuntu import.

Changelog parent: ce219171f723befa149b5f9c1eda6b66dde0a03e

New changelog entries:
  * debian/control: Replace libpam-foreground dependency with consolekit (>=
    0.2.3-3ubuntu2), which provides pam_console compatible stamps in
    /var/run/console. (See policykit-integration spec)
  * Drop debian/patches/80-dbus-change-at-console-policy.patch: Not needed any
    more now.