ubuntu/+source/dbus:ubuntu/utopic

Last commit made on 2014-09-26
Get this branch:
git clone -b ubuntu/utopic https://git.launchpad.net/ubuntu/+source/dbus
Members of Ubuntu Server Dev import team can upload to this branch. Log in for directions.

Branch merges

Branch information

Name:
ubuntu/utopic
Repository:
lp:ubuntu/+source/dbus

Recent commits

dbfe0f5... by Oliver Grawert on 2014-09-26

Import patches-unapplied version 1.8.8-1ubuntu2 to ubuntu/utopic-proposed

Imported using git-ubuntu import.

Changelog parent: c8cd5482cf045294ae3cf10151bb991d5ad29707

New changelog entries:
  * write to $XDG_RUNTIME_DIR instead of the users home when creating the
    dbus-session file, so we can start our session even with 100% filled or
    readonly home dir (LP: #1316978)

c8cd548... by Marc Deslauriers on 2014-09-17

Import patches-unapplied version 1.8.8-1ubuntu1 to ubuntu/utopic-proposed

Imported using git-ubuntu import.

Changelog parent: 60bed05cdb1aca33047bc30b22ca064756ad02b7

New changelog entries:
  * Resynchronize on Debian. Remaining Ubuntu changes:
    - Install binaries into / rather than /usr:
      + debian/rules: Set --exec-prefix=/
      + debian/dbus.install, debian/dbus-x11.install: Install from /bin
    - Use upstart to start:
      + Add debian/dbus.upstart and dbus.user-session.upstart
      + debian/dbus.postinst: Use upstart call instead of invoking the init.d
        script for checking if we are already running.
      + debian/control: versioned dependency on netbase that emits the new
        deconfiguring-networking event used in upstart script.
    - 20_system_conf_limit.patch: Increase max_match_rules_per_connection for
      the system bus to 5000 (LP #454093)
    - 81-session.conf-timeout.patch: Raise the service startup timeout from 25
      to 60 seconds. It may be too short on the live CD with slow machines.
    - debian/dbus.user-session.upstart, debian/rules: Communicate session bus
      to Upstart Session Init to avoid potential out-of-memory scenario
      triggered by Upstart clients that do not run main loops
      (LP: #1235649, LP: #1252317).
    - debian/control, debian/rules: Build against libapparmor for AppArmor
      D-Bus mediation
    - debian/control: Use logind for session tracking, so that "at_console"
      policies work with logind instead of ConsoleKit. Add "libpam-systemd"
      recommends.
    - debian/rules: Adjust dbus-send path to our changed install layout.
      (LP: #1325364)
    - debian/dbus-Xsession: Don't start a session bus if there already is
      one, i. e. $DBUS_SESSION_BUS_ADDRESS is already set. (Closes: #681241)
    - 0001-Document-AppArmor-enforcement-in-the-dbus-daemon-man.patch,
      0002-Add-apparmor-element-and-attributes-to-the-bus-confi.patch,
      0003-Update-autoconf-file-to-build-against-libapparmor.patch,
      0004-Add-apparmor-element-support-to-bus-config-parsing.patch,
      0005-Initialize-AppArmor-mediation.patch,
      0006-Store-AppArmor-label-of-bus-during-initialization.patch,
      0007-Store-AppArmor-label-of-connecting-processes.patch,
      0008-Mediation-of-processes-that-acquire-well-known-names.patch,
      0009-Do-LSM-checks-after-determining-if-the-message-is-a-.patch,
      0010-Mediation-of-processes-sending-and-receiving-message.patch,
      0011-Mediation-of-processes-eavesdropping.patch,
      0012-New-a-sv-helper-for-using-byte-arrays-as-the-variant.patch,
      0013-Add-AppArmor-support-to-GetConnectionCredentials.patch: Add the
      latest set of AppArmor D-Bus mediation patches. This the v3 patch set
      from the upstream feature inclusion bug.
      - https://bugs.freedesktop.org/show_bug.cgi?id=75113
    - aa-get-connection-apparmor-security-context.patch: This is not
      intended for upstream inclusion. It implements a bus method
      (GetConnectionAppArmorSecurityContext) to get a connection's AppArmor
      security context but upstream D-Bus has recently added a generic way of
      getting a connection's security credentials (GetConnectionCredentials).
      Ubuntu should carry this patch until packages in the archive are moved
      over to the new, generic method of getting a connection's credentials.

60bed05... by Simon McVittie on 2014-09-15

Import patches-unapplied version 1.8.8-1 to debian/sid

Imported using git-ubuntu import.

Changelog parent: f5f0c7d4690fd8a9f780057736f0d8c6fea48fa7

New changelog entries:
  [ Michael Biebl ]
  * Don't attempt config reload if dbus system bus is not running.
  [ Simon McVittie ]
  * Bump dbus up to Priority: standard because without it, systemd-logind
    does not run a getty on tty2..tty6 (matching ftp-master action in
    #759293)
  * New upstream release fixes several security issues
    - CVE-2014-3635: do not accept an extra fd in cmsg padding,
      avoiding a buffer overrun in dbus-daemon or system services
    - CVE-2014-3636: reduce maximum number of file descriptors
       per message from 1024 to 16, to avoid two separate denial-of-service
       attacks that could cause system services to be dropped from the bus
    - CVE-2014-3637: time out connections that have a
       partially-sent message containing a file descriptor, so that
       malicious processes cannot use self-referential file descriptors
       to make a connection that will never close
    - CVE-2014-3638: reduce maximum number of pending replies
      per connection to avoid algorithmic complexity DoS
    - CVE-2014-3639: reduce timeout for authentication and
      do not accept() new connections when all unauthenticated connection
      slots are in use, so that malicious processes cannot prevent new
      connections to the system bus
  * debian/copyright: fix glob syntax, .[ch] is not supported

f5f0c7d... by Sjoerd Simons on 2014-08-13

Import patches-unapplied version 1.8.6-2 to debian/sid

Imported using git-ubuntu import.

Changelog parent: fd7f86d5e83da36cffeb533262366e81955121de

New changelog entries:
  * debian/dbus.posinst: When triggered only poke the dbus-daemon, don't run
    update-rc.d/invoke-rc.d as added by dh_installinit. This prevent some
    odd-corner when being triggered during init system upgrade
    (Closes: #754404)

fd7f86d... by Simon McVittie on 2014-06-30

Import patches-unapplied version 1.8.6-1 to debian/sid

Imported using git-ubuntu import.

Changelog parent: cf8d1cea54bf859d3de87bc56ccf25483278ff09

New changelog entries:
  * New upstream release
    - fix two local DoS vulnerabilities (CVE-2014-3532, CVE-2014-3533)

cf8d1ce... by Simon McVittie on 2014-06-05

Import patches-unapplied version 1.8.4-1 to debian/sid

Imported using git-ubuntu import.

Changelog parent: add1da258f4f20acf44a19941d98867e7e9df7e0

New changelog entries:
  * New upstream release, fixing a DoS vulnerability (CVE-2014-3477)

add1da2... by Simon McVittie on 2014-04-30

Import patches-unapplied version 1.8.2-1 to debian/sid

Imported using git-ubuntu import.

Changelog parent: 15c894ce92f8177a1a4e676b203f837ec6c9f444

New changelog entries:
  * New upstream release

15c894c... by Simon McVittie on 2014-03-26

Import patches-unapplied version 1.8.0-3 to debian/sid

Imported using git-ubuntu import.

Changelog parent: 55e84d392f6b487c6d5bf77145b022d876ee712e

New changelog entries:
  * Improve autopkgtest support
    - use a shell wildcard instead of dpkg-architecture, to avoid stderr spam
      failing the test if gcc is missing
    - wrap each test-case in an arbitrary (5 minute) timeout so that one
      test-case failing won't halt the whole build

55e84d3... by Simon McVittie on 2014-02-26

Import patches-unapplied version 1.8.0-2 to debian/sid

Imported using git-ubuntu import.

Changelog parent: 6ac71f6d68babe055358faffa27565331f40bc13

New changelog entries:
  * debian/rules: look for DEB_BUILD_PROFILES, the new name for
    DEB_BUILD_PROFILE
  * Don't try to install systemd units in a stage1 build (they are
    no longer installed unless libsystemd*-dev are found) (Closes: #738317)
  * Mark dbus-1-doc with Build-Profiles: !stage1
  * Register a dpkg trigger on /usr/share/dbus-1/system-services and
    /etc/dbus-1/system.d that calls ReloadConfig on the system dbus-daemon,
    in case our inotify monitoring isn't completely reliable (see #740139)
  * Clean debian/tmp-udeb in `debian/rules clean`
  * Hook up the installed tests to DEP-8 metadata
  * Add a simple compile/link/run test

6ac71f6... by Simon McVittie on 2014-01-20

Import patches-unapplied version 1.8.0-1 to debian/sid

Imported using git-ubuntu import.

Changelog parent: a4ecc6a695d6790fe92e4444d9322000a7775a24

New changelog entries:
  * New upstream stable release
    - add debian/copyright stanzas for some new BSD-licensed cmake macros