ubuntu/+source/openssl:ubuntu/natty

Last commit made on 2011-02-23
Get this branch:
git clone -b ubuntu/natty https://git.launchpad.net/ubuntu/+source/openssl
Members of Ubuntu Server Dev import team can upload to this branch. Log in for directions.

Branch merges

Branch information

Name:
ubuntu/natty
Repository:
lp:ubuntu/+source/openssl

Recent commits

fe88cf5... by Artur Rona on 2011-02-13

Import patches-unapplied version 0.9.8o-5ubuntu1 to ubuntu/natty

Imported using git-ubuntu import.

Changelog parent: 4e7e7fb1a7092197b6f3cd6e6cfeba04f92e1cdc

New changelog entries:
  * Merge from debian unstable. Remaining changes: (LP: #718205)
    - d/libssl0.9.8.postinst:
      + Display a system restart required notification bubble
        on libssl0.9.8 upgrade.
      + Use a different priority for libssl0.9.8/restart-services
        depending on whether a desktop, or server dist-upgrade
        is being performed.
    - d/{libssl0.9.8-udeb.dirs, control, rules}: Create
      libssl0.9.8-udeb, for the benefit of wget-udeb (no wget-udeb
      package in Debian).
    - d/{libcrypto0.9.8-udeb.dirs, libssl0.9.8.dirs, libssl0.9.8.files,
      rules}: Move runtime libraries to /lib, for the benefit of wpasupplicant.
    - d/{control, openssl-doc.docs, openssl.docs, openssl.dirs}:
      + Ship documentation in openssl-doc, suggested by the package.
       (Closes: #470594)
    - d/p/aesni.patch: Backport Intel AES-NI support from
      http://rt.openssl.org/Ticket/Display.html?id=2067 (refreshed)
    - d/p/Bsymbolic-functions.patch: Link using -Bsymbolic-functions.
    - d/p/perlpath-quilt.patch: Don't change perl #! paths under .pc.
    - d/p/no-sslv2.patch: Disable SSLv2 to match NSS and GnuTLS.
      The protocol is unsafe and extremely deprecated. (Closes: #589706)
    - d/rules:
      + Disable SSLv2 during compile. (Closes: #589706)
      + Don't run 'make test' when cross-building.
      + Use host compiler when cross-building. Patch from Neil Williams.
        (Closes: #465248)
      + Don't build for processors no longer supported: i486, i586
        (on i386), v8 (on sparc).
      + Fix Makefile to properly clean up libs/ dirs in clean target.
        (Closes: #611667)
      + Replace duplicate files in the doc directory with symlinks.
  * This upload fixed CVE: (LP: #718208)
    - CVE-2011-0014

4e7e7fb... by Kurt Roeckx on 2011-02-10

Import patches-unapplied version 0.9.8o-5 to debian/sid

Imported using git-ubuntu import.

Changelog parent: db8c99eeaaae75aeb7a5b3c6729460d115f7be23

New changelog entries:
  * Fix OCSP stapling parse error (CVE-2011-0014)

db8c99e... by Kurt Roeckx on 2010-12-06

Import patches-unapplied version 0.9.8o-4 to debian/sid

Imported using git-ubuntu import.

Changelog parent: 00a968ee4b4704db41773f83c293cea29bcaf0d6

New changelog entries:
  * Fix CVE-2010-4180 (Closes: #529221)

00a968e... by Kurt Roeckx on 2010-11-16

Import patches-unapplied version 0.9.8o-3 to debian/sid

Imported using git-ubuntu import.

Changelog parent: 658c05706efe34071dc993bc93cea4a03d80d300

New changelog entries:
  * Fix TLS extension parsing race condition (CVE-2010-3864) (Closes: #603709)
  * Re-add the engines. They were missing since 0.9.8m-1.
    Patch by Joerg Schneider. (Closes: #603693)
  * Not all architectures were build using -g (Closes: #570702)
  * Add powerpcspe support (Closes: #579805)
  * Add armhf support (Closes: #596881)
  * Update translations:
    - Brazilian Portuguese (Closes: #592154)
    - Danish (Closes: #599459)
    - Vietnamese (Closes: #601536)
    - Arabic (Closes: #596166)
  * Generate the proper stamp file so that everything doesn't get build twice.

658c057... by Kurt Roeckx on 2010-08-26

Import patches-unapplied version 0.9.8o-2 to debian/sid

Imported using git-ubuntu import.

Changelog parent: d632da659b723bd315f7aa135a673701bea4a326

New changelog entries:
  * Fix CVE-2010-2939: Double free using ECDH. (Closes: #594415)

d632da6... by Kurt Roeckx on 2010-04-17

Import patches-unapplied version 0.9.8o-1 to debian/sid

Imported using git-ubuntu import.

Changelog parent: f1b6e1fafd1f910c9780bd06a601288c76907e7b

New changelog entries:
  * New upstream version
    - Add SHA2 algorithms to SSL_library_init().
    - aes-x86_64.pl is now PIC, update pic.patch.
  * Add sparc64 support (Closes: #560240)

f1b6e1f... by Kurt Roeckx on 2010-03-25

Import patches-unapplied version 0.9.8n-1 to debian/sid

Imported using git-ubuntu import.

Changelog parent: b7712a906f40fc03a5965bf6a23e4ff63684a25a

New changelog entries:
  * New upstream version.
    - Fixes CVE-2010-0740.
    - Drop cfb.patch, applied upstream.

b7712a9... by Kurt Roeckx on 2010-02-28

Import patches-unapplied version 0.9.8m-2 to debian/sid

Imported using git-ubuntu import.

Changelog parent: d74e7146529833b85de5da6761a70b0be970b935

New changelog entries:
  * Revert CFB block length change preventing reading older files.
    (Closes: #571810, #571940)

d74e714... by Kurt Roeckx on 2010-02-27

Import patches-unapplied version 0.9.8m-1 to debian/sid

Imported using git-ubuntu import.

Changelog parent: 593d91b90b41d42b29dd745eb515242a1f1f6753

New changelog entries:
  * New upstream version
    - Implements RFC5746, reenables renegotiation but requires the extension.
    - Fixes CVE-2009-3245
    - Drop patches CVE-2009-4355.patch, CVE-2009-1378.patch,
      CVE-2009-1377.patch, CVE-2009-1379.patch, CVE-2009-3555.patch,
      CVE-2009-2409.patch, CVE-2009-1387.patch, tls_ext_v3.patch,
      no_check_self_signed.patch: applied upstream
    - pk7_mime_free.patch removed, code rewritten
    - ca.diff partially applied upstream
    - engines-path.patch adjusted, upstream made some minor changes to the
      build system.
    - some flags changed values, bump shlibs.
  * Switch to 3.0 (quilt) source package.
  * Make sure the package is properly cleaned.
  * Add ${misc:Depends} to the Depends on all packages.
  * Fix spelling of extension in the changelog file.

593d91b... by Kurt Roeckx on 2010-01-13

Import patches-unapplied version 0.9.8k-8 to debian/sid

Imported using git-ubuntu import.

Changelog parent: 3c207a8de24790ec1dec5d942648711f89fceff6

New changelog entries:
  * Clean up zlib state so that it will be reinitialized on next use and
    not cause a memory leak. (CVE-2009-4355)