ubuntu/+source/tor:applied/ubuntu/zesty

Last commit made on 2017-03-08
Get this branch:
git clone -b applied/ubuntu/zesty https://git.launchpad.net/ubuntu/+source/tor
Members of Ubuntu Server Dev import team can upload to this branch. Log in for directions.

Branch merges

Branch information

Name:
applied/ubuntu/zesty
Repository:
lp:ubuntu/+source/tor

Recent commits

7147c96... by Gianfranco Costamagna on 2017-03-08

Import patches-applied version 0.2.9.10-1ubuntu1 to applied/ubuntu/zesty-proposed

Imported using git-ubuntu import.

Changelog parent: c61e2cdeb41920500ad31655b2f2d3d073758161
Unapplied parent: 7110d843fc7f7e109ddebe98f8092ef78994bc41

New changelog entries:
  * Merge from Debian unstable. Remaining changes:
    - Limit the seccomp build-dependency to [amd64 i386 armhf].

7110d84... by Gianfranco Costamagna on 2017-03-08

Import patches-unapplied version 0.2.9.10-1ubuntu1 to ubuntu/zesty-proposed

Imported using git-ubuntu import.

Changelog parent: 5a81d26d7a9a41a4a7e6e883d929de895ba6e4ca

New changelog entries:
  * Merge from Debian unstable. Remaining changes:
    - Limit the seccomp build-dependency to [amd64 i386 armhf].

c61e2cd... by Peter Palfrader on 2017-03-04

Import patches-applied version 0.2.9.10-1 to applied/debian/sid

Imported using git-ubuntu import.

Changelog parent: a9030e9f92704561e55b75b2264e12d816d23ccc
Unapplied parent: 5a81d26d7a9a41a4a7e6e883d929de895ba6e4ca

New changelog entries:
  * New upstream version.
    - Stop rejecting all IPv6 traffic on Exits whose exit policy rejects
      any IPv6 addresses.
    - Fix an integer underflow bug when comparing malformed Tor
      versions. Underlying issue of TROVE-2017-001, mitigated in the
      previous release.

5a81d26... by Peter Palfrader on 2017-03-04

Import patches-unapplied version 0.2.9.10-1 to debian/sid

Imported using git-ubuntu import.

Changelog parent: 3fb7cc9954bf5cdcb3579a4d9935bc53913d53e1

New changelog entries:
  * New upstream version.
    - Stop rejecting all IPv6 traffic on Exits whose exit policy rejects
      any IPv6 addresses.
    - Fix an integer underflow bug when comparing malformed Tor
      versions. Underlying issue of TROVE-2017-001, mitigated in the
      previous release.

a9030e9... by Peter Palfrader on 2017-01-23

Import patches-applied version 0.2.9.9-1 to applied/debian/sid

Imported using git-ubuntu import.

Changelog parent: c30cbb8848619ad3a1af9c581938687cf7e9ca87
Unapplied parent: 3fb7cc9954bf5cdcb3579a4d9935bc53913d53e1

New changelog entries:
  * New upstream version.
    + Downgrade the "-ftrapv" option from "always on" to "only on when
      --enable-expensive-hardening is provided." (re: TROVE-2017-001).

3fb7cc9... by Peter Palfrader on 2017-01-23

Import patches-unapplied version 0.2.9.9-1 to debian/sid

Imported using git-ubuntu import.

Changelog parent: 4f47074d5456340f609f39fb8202b6c35fad02a7

New changelog entries:
  * New upstream version.
    + Downgrade the "-ftrapv" option from "always on" to "only on when
      --enable-expensive-hardening is provided." (re: TROVE-2017-001).

c30cbb8... by Peter Palfrader on 2016-12-19

Import patches-applied version 0.2.9.8-2 to applied/debian/sid

Imported using git-ubuntu import.

Changelog parent: e477a9a09a3ff1f5bd69d84dbf3267ab0933af1a
Unapplied parent: 4f47074d5456340f609f39fb8202b6c35fad02a7

New changelog entries:
  * Actually target unstable.
  * New upstream version, upload 0.2.9.x tree to unstable.
  * Add a comment to tor@.service explaining why we cannot limit to
    /var/lib/tor-instances/<instance> but only to /var/lib/tor-instances --
    systemd does not do instance expansion in ReadWriteDirectories lines --
    cf. #781730.
  * Update README.Debian to mention a good location to put onion service
    UNIX sockets. Note that neither systemd nor apparmor limits access
    to them -- cf. #846275.
  * Use -Z (Apply SE-Linux labels) to install when creating instance datadirs
    in tor-instance-create.

4f47074... by Peter Palfrader on 2016-12-19

Import patches-unapplied version 0.2.9.8-2 to debian/sid

Imported using git-ubuntu import.

Changelog parent: 06d94e93ea83eea4ba6b599b72892655ee0b2d81

New changelog entries:
  * Actually target unstable.
  * New upstream version, upload 0.2.9.x tree to unstable.
  * Add a comment to tor@.service explaining why we cannot limit to
    /var/lib/tor-instances/<instance> but only to /var/lib/tor-instances --
    systemd does not do instance expansion in ReadWriteDirectories lines --
    cf. #781730.
  * Update README.Debian to mention a good location to put onion service
    UNIX sockets. Note that neither systemd nor apparmor limits access
    to them -- cf. #846275.
  * Use -Z (Apply SE-Linux labels) to install when creating instance datadirs
    in tor-instance-create.

e477a9a... by Peter Palfrader on 2016-12-12

Import patches-applied version 0.2.9.7-rc-1 to applied/debian/experimental

Imported using git-ubuntu import.

Changelog parent: a5369dc2cbe3c5958ca2c31dcf6715dda65aa4eb
Unapplied parent: 06d94e93ea83eea4ba6b599b72892655ee0b2d81

New changelog entries:
  * New upstream version.
  * Remove CAP_CHOWN, CAP_FOWNER from the systemd service files'
    CapabilityBoundingSet. We may no longer need them. The upstream
    changelog says that Tor changed some logic with 0.2.8.1-alpha that made
    CAP_CHOWN CAP_FOWNER no longer needed.
    CAP_DAC_OVERRIDE is still needed: Tor checks properties of hidden service
    directories as root before changing its UID to debian-tor, and those trees
    are owned by debian-tor and go-rwx (see #847598).

06d94e9... by Peter Palfrader on 2016-12-12

Import patches-unapplied version 0.2.9.7-rc-1 to debian/experimental

Imported using git-ubuntu import.

Changelog parent: 71510ba8cb75d42b1d090324e0d25f7b8df76c79

New changelog entries:
  * New upstream version.
  * Remove CAP_CHOWN, CAP_FOWNER from the systemd service files'
    CapabilityBoundingSet. We may no longer need them. The upstream
    changelog says that Tor changed some logic with 0.2.8.1-alpha that made
    CAP_CHOWN CAP_FOWNER no longer needed.
    CAP_DAC_OVERRIDE is still needed: Tor checks properties of hidden service
    directories as root before changing its UID to debian-tor, and those trees
    are owned by debian-tor and go-rwx (see #847598).