ubuntu/+source/memcached:ubuntu/trusty-updates

Last commit made on 2018-03-19
Get this branch:
git clone -b ubuntu/trusty-updates https://git.launchpad.net/ubuntu/+source/memcached
Members of Ubuntu Server Dev import team can upload to this branch. Log in for directions.

Branch merges

Branch information

Name:
ubuntu/trusty-updates
Repository:
lp:ubuntu/+source/memcached

Recent commits

22b3f58... by Marc Deslauriers on 2018-03-19

Import patches-unapplied version 1.4.14-0ubuntu9.3 to ubuntu/trusty-security

Imported using git-ubuntu import.

Changelog parent: 4345777bcdef6374f178d59cb85e7a14149f9a4a

New changelog entries:
  * SECURITY UPDATE: Integer Overflow in items.c:item_free()
    - debian/patches/CVE-2018-1000127.patch: Don't overflow item refcount
      on get in memcached.c.
    - CVE-2018-1000127

4345777... by Steve Beattie on 2018-03-05

Import patches-unapplied version 1.4.14-0ubuntu9.2 to ubuntu/trusty-security

Imported using git-ubuntu import.

Changelog parent: 44b0605a3b4a061de57e916bd466e93868a600c3

New changelog entries:
  * SECURITY UPDATE: denial of service due to integer overflow
    - debian/patches/CVE-2017-9951.patch: check for integer overflow on
      key requests
    - CVE-2017-9951
  * SECURITY UPDATE: disable listening on UDP port by default due to
    use in DDoS amplification attacks
    - debian/patches/disable-udp-by-default.patch: disable UDP port by
      default. (LP: #1752831)
    - debian/NEWS: add explanation and document how to re-enable UDP if
      necessary.
    - CVE-2018-1000115

44b0605... by Marc Deslauriers on 2016-11-02

Import patches-unapplied version 1.4.14-0ubuntu9.1 to ubuntu/trusty-security

Imported using git-ubuntu import.

Changelog parent: 38efc0bd6a0f157b54efb0e75fe0a92689eab12d

New changelog entries:
  * SECURITY UPDATE: multiple integer overflow vulnerabilities
    - debian/patches/CVE-2016-870x.patch: check nbytes and nkey in items.c,
      properly handle lengths in memcached.c.
    - CVE-2016-8704
    - CVE-2016-8705
    - CVE-2016-8706

38efc0b... by Marc Deslauriers on 2014-01-13

Import patches-unapplied version 1.4.14-0ubuntu9 to ubuntu/trusty-proposed

Imported using git-ubuntu import.

Changelog parent: 56c511dcfb3c8a20373a84da57a11a5591c43760

New changelog entries:
  * SECURITY UPDATE: denial of service via large body length
    - debian/patches/CVE-2011-4971.patch: check length in memcached.c,
      added test to t/issue_192.t.
    - CVE-2011-4971
  * SECURITY UPDATE: denial of service when using -vv
    - debian/patches/CVE-2013-0179.patch: properly format key in items.c,
      memcached.c.
    - CVE-2013-0179
  * SECURITY UPDATE: SASL authentication bypass
    - debian/patches/CVE-2013-7239.patch: explicitly record sasl auth
      states in memcached.*, added test to t/binary-sasl.t.
    - CVE-2013-7239
  * debian/memcached.postinst: don't create home directory so we don't end
    up with /nonexistent. Thanks to Dustin Lundquist for patch.
    (LP: #1255328)

56c511d... by Adam Conrad on 2013-11-14

Import patches-unapplied version 1.4.14-0ubuntu8 to ubuntu/trusty-proposed

Imported using git-ubuntu import.

Changelog parent: 60e1849afc75eab9683b5fad63265425f406e859

New changelog entries:
  * Revert unnecessary deltas added to patches compared to Debian.
  * Revert use of dh-autoreconf and patch configure manually to
    match configure.ac, as this package despises modern autotools.

60e1849... by Adam Conrad on 2013-11-14

Import patches-unapplied version 1.4.14-0ubuntu7 to ubuntu/trusty-proposed

Imported using git-ubuntu import.

Changelog parent: ba9268188aeb7416ebb7c4cbdb3ee7a23dc37b43

New changelog entries:
  * debian/rules: Fix the previous fixes a little harder, so they work.

ba92681... by Barry Warsaw on 2013-11-14

Import patches-unapplied version 1.4.14-0ubuntu6 to ubuntu/trusty-proposed

Imported using git-ubuntu import.

Changelog parent: 1352a8034b8682709815a3808f9e9dba2e169734

New changelog entries:
  * debian/rules: Shuffle things around so that dh_autoreconf is always
    run before dh_quilt_patch. Fixes FTBFS with dpkg-buildpackage -B.

1352a80... by Yolanda Robla on 2013-11-13

Import patches-unapplied version 1.4.14-0ubuntu5 to ubuntu/trusty-proposed

Imported using git-ubuntu import.

Changelog parent: 3e1ab2995fd45afdfb34edf4e75bce0828b8cea8

New changelog entries:
  * debian/control: added lsb-release, dh-autoreconf to build depends
  * debian/rules: run autoreconf
  * debian/patches/fix-distribution.patch: added patch to show
    distribution on version

3e1ab29... by dann frazier on 2013-08-30

Import patches-unapplied version 1.4.14-0ubuntu4 to ubuntu/saucy-proposed

Imported using git-ubuntu import.

Changelog parent: c2daf3d7f52fd73f4939644b68db9188adf741f8

New changelog entries:
  * Move dh_quilt_apply into configure step so that config.{sub,guess}
    patches get applied before running configure. (LP: #1218114)

c2daf3d... by Matthias Klose on 2013-08-13

Import patches-unapplied version 1.4.14-0ubuntu3 to ubuntu/saucy-proposed

Imported using git-ubuntu import.

Changelog parent: c46ce23ba42ff03bccce0b17146c1e35332e8d1f

New changelog entries:
  * Update config.{guess,sub} for Aarch64.