source: trunk/debathena/third/cyrus-sasl2-mit/debian/changelog.debian_non_mit @ 22790

Revision 22790, 17.8 KB checked in by ghudson, 16 years ago (diff)
* debathena/third/cyrus-sasl2-mit/debian: Import from Debathena package. Based on the defunct Debian cyrus-sasl2-mit package materials, with substantial modification. * debathena/third/cyrus-sasl2-mit/debathena-cyrus-sasl2-mit: Debathenificator-style script to create the packages. Does not use the debathenificator back end since we're not directly modifying a native system package.
Line 
1cyrus-sasl2 (2.1.19.dfsg1-0.2) unstable; urgency=high
2
3  * Non-maintainer upload
4  * Applied upstream patch to fix remote denial of service
5    [debian/patches/27_CVE-2006-1721.diff]
6    Closes: #361937.
7
8 -- dann frazier <dannf@debian.org>  Tue, 25 Apr 2006 09:39:43 -0600
9
10cyrus-sasl2 (2.1.19.dfsg1-0.1) unstable; urgency=low
11
12  * Non-maintainer upload.
13  * Remove dlcompat-20010505 subdirectory from source package as it
14    contains non-DFSG-free source.  Required regeneration of the orig.tar.gz.
15    Closes: #357527.
16
17 -- dann frazier <dannf@debian.org>  Tue,  4 Apr 2006 16:38:20 -0600
18
19cyrus-sasl2 (2.1.19-1.9) unstable; urgency=low
20
21  * Non-maintainer upload.
22  * debian/patches/26_fix_hurd_build.diff: Fix FTBFS on hurd-i386.
23    Closes: #324288.
24
25 -- Michael Banck <mbanck@debian.org>  Fri, 20 Jan 2006 15:45:30 +0100
26
27cyrus-sasl2 (2.1.19-1.8) unstable; urgency=medium
28
29  * Non-maintainer upload.
30  * Medium-urgency upload for RC bugfixes.
31  * Rebuild against current heimdal packages, dropping the build-dependency
32    on the obsolete and soon-to-be-removed krb4 package; also drop the
33    (misnamed) libsasl2-modules-kerberos-heimdal package as a result.
34    Closes: #345737, 345880.
35  * Drop mention of KERBEROS_V4 in the libsasl2 package description.
36  * Build against libmysqlclient15 instead of the obsolete libmysqlclient10
37    for libsasl2-modules-sql.
38  * debian/patches/25_postgresql_pg_config.diff:
39    Use pg-config --includedir in configure.in, so that cyrus-sasl2 continues
40    to build when the postgresql include path changes as the postgresql
41    maintainers are planning to do; and adjust the include path in
42    plugins/sql.c accordingly.  Closes: #315177.
43
44 -- Steve Langasek <vorlon@debian.org>  Sat,  7 Jan 2006 04:18:58 -0800
45
46cyrus-sasl2 (2.1.19-1.7) unstable; urgency=low
47
48  * Non-maintainer upload.
49  * fix FTBFS in plugins/ntlm.c with patch 24. Closes: #332703
50
51 -- Andreas Barth <aba@not.so.argh.org>  Sat,  5 Nov 2005 20:07:50 +0100
52
53cyrus-sasl2 (2.1.19-1.6) unstable; urgency=medium
54
55  * Non-maintainer upload.
56  * Medium-urgency upload for RC bugfixes.
57  * Drop the extern declaration of a static variable global_callbacks,
58    allowing the package to build with gcc-4.0 (closes: #285605).
59  * Build-Depend on libpq-dev instead of on postgresql-dev, as the
60    latter package name is obsolete.  (Ref: #315177)
61
62 -- Steve Langasek <vorlon@debian.org>  Wed, 24 Aug 2005 17:41:57 -0700
63
64cyrus-sasl2 (2.1.19-1.5) unstable; urgency=emergency
65
66  * NMU
67  * Clean-up 2.1.19-1.4 NMU:
68    + Since we were using an upstream CVS patch, add another patch
69      fixing it instead of changing the (bad) upstream CVS patch;
70      Sent this new patch upstream
71    + Set *path to NULL, not to 0
72  * Add Build-Conflicts: autoconf2.13, automake1.4
73  * We want something easy to merge/further fix in sarge, so this cleanup
74    is a good idea
75
76 -- Henrique de Moraes Holschuh <hmh@debian.org>  Sat, 16 Oct 2004 17:50:19 -0300
77
78cyrus-sasl2 (2.1.19-1.4) unstable; urgency=low
79
80  * NMU
81  * fix the security fix: Initialize *path with 0.
82    Closes: #276637.
83
84 -- Andreas Barth <aba@debian.org>  Fri, 15 Oct 2004 20:26:41 +0200
85 
86cyrus-sasl2 (2.1.19-1.3) unstable; urgency=high
87
88  * NMU
89  * Fix minor issue with -1.2 in patch 15, to squash a compiler
90    warning (just in case it becomes more than a warning in some arch):
91    add missing "int" to extern declaration
92
93 -- Henrique de Moraes Holschuh <hmh@debian.org>  Fri,  8 Oct 2004 13:06:28 -0300
94
95cyrus-sasl2 (2.1.19-1.2) unstable; urgency=high
96
97  * NMU, since I am not sure Dima is back yet
98  * SECURITY FIX: SASL_PATH environment variable must not be honoured on
99    setuid environments, otherwise we have a local privilege escalation
100    exploit (CVE: CAN-2004-0884), related advisories: RHSA-2004:546-02;
101    GLSA 200410-05
102    * upstream CVS: lib/common.c: don't honor SASL_PATH in setuid
103      environment. from Gentoo (CVE CAN-2004-0884); (closes: #275431)
104  * upstream CVS: plugins/kerberos4.c: document weirdness with openssl DES
105  * upstream CVS: plugins/cram.c,plugins/anonymous.c,plugins/login.c,
106    plugins/plain.c,plugins/sasldb.c: Fixed several 64 bit portability
107    warnings
108  * Forward port sasl_set_alloc locking patch from SASL 1.5, to avoid
109    problems with the braindead idea of globals SASL has, and with libraries
110    that think they can get around mucking with them (hello openldap!)
111    (closes: #274087)
112
113 -- Henrique de Moraes Holschuh <hmh@debian.org>  Fri,  8 Oct 2004 11:15:39 -0300
114
115cyrus-sasl2 (2.1.19-1.1) unstable; urgency=medium
116
117  * NMU with permission from the maintainer
118  * Release Manager:
119    SASL 2.1.18 (currently in sarge) is very unusable.  Please accept
120    this upload for sarge.  The main reasons justifying this are:
121    * Security fixes from upstream: at least one buffer overflow
122      was plugged in 2.1.19, and the code was made more secure, which may
123      have plugged other latent security bugs.
124    * Essential feature: 2.1.18 has a very bad regression in that saslauthd
125      cannot support realms embedded inside the username as previous
126      versions did.  However, that regression is exactly how it should be
127      behaving since day one, never mind that too many setups are hopeless
128      with the realm information out-of-band.  2.1.19 adds a "-r" option to
129      saslauthd which restores the former behaviour.  Both behaviours are
130      needed, depending on the SASL mechs being used (one sends the realm
131      out-of-band, the other in-band).  Users have complained loudly about
132      this issue, not only in Debian, but in the SASL and Cyrus IMAP
133      mailinglists as well.  For way too many people and setups, "-r" is
134      essential
135    * Essential bug fixes: Digest-MD5 and GSSAPI are quite broken in
136      2.1.18, and extensive fixes were applied on them in 2.1.19.  In fact,
137      2.1.18 GSSAPI does _not_ work completely right against Heimdall and
138      MIT kerberos.
139    * ABI version issue: the 2.1.19-1 Debian package was uploaded to
140      _unstable_ before the freeze.  Maybe because of that, the maintainer
141      did upgrade the shlibs dependency to 2.1.19 (I have confirmed that to be
142      required for SASL modules, so it appears to be really required).
143      Packages built in _unstable_ since them are being held back due to
144      this issue.  The best fix for packages that use libsasl2 *is* getting
145      this new version into sarge, due to all other fixes.
146  * Bugs closed in 2.1.19-1, but not ackwnoleged before:
147    * Fix FTBFS in hppa, due to broken libtool usage, thanks to Steve Langasek
148      for the patch (closes: #245818)
149    * 2.1.19 supports saslauthd "-r" option (closes: #248333, #256808)
150  * Changes in this NMU:
151    * upstream CVS: plugins/digestmd5.c: Fix handling of client realm callback
152    * upstream CVS: plugins/gssapi.c: Memory management cleanup
153    * upstream CVS: configure.in, plugins/gssapi.c: Wrap all GSS calls
154      in mutexes when required by the implementation (closes: #202836)
155      THIS PATCH PROBABLY SHOULD BE SET TO DISABLED BY DEFAULT WHEN MIT
156      KERBEROS 1.3.5 ENTERS UNSTABLE
157      (see https://bugzilla.andrew.cmu.edu/show_bug.cgi?id=2255)
158    * Libtool is refreshed at every build, so this upload closes: #262339
159    * debian/control: build-depend on debhelper (>= 4)
160    * debian/control: build-depend on libtool (>= 1.5.6) instead of (>=
161      1.5.2-1)
162    * Fix initscript to return status 0 if stop called when daemon is
163      already stopped (closes: #242184)
164
165 -- Henrique de Moraes Holschuh <hmh@debian.org>  Sat, 14 Aug 2004 13:04:38 -0300
166
167cyrus-sasl2 (2.1.19-1) unstable; urgency=medium
168
169  * New upstream version (Closes: #259503, #259658)
170  * Acknowledge the last NMU (closes: #254818)
171  * Build against libdb4.2 (closes: #253894)
172  * Fixed the path to saslauthd.conf in the saslauthd
173    man page (Closes: #254454)
174 
175 -- Dima Barsky <dima@debian.org>  Sun,  4 Jul 2004 20:38:53 +0100
176
177cyrus-sasl2 (2.1.18-4.1) unstable; urgency=low
178
179  * NMU.
180  * Fix FTBFS, non-PIC in shared lib (closes: #254818).
181
182 -- Matthias Klose <doko@debian.org>  Fri, 21 May 2004 08:02:44 +0200
183
184cyrus-sasl2 (2.1.18-4) unstable; urgency=medium
185
186  * Added the build dependency on libtool
187
188 -- Dima Barsky <dima@debian.org>  Mon, 19 Apr 2004 13:46:23 +0100
189
190cyrus-sasl2 (2.1.18-3) unstable; urgency=medium
191
192  * Update config.{sub,guess} at the build time
193  * Added conflict with old MIT kerberos packages (Closes: #240714)
194
195 -- Dima Barsky <dima@debian.org>  Sun, 18 Apr 2004 18:02:48 +0100
196
197cyrus-sasl2 (2.1.18-2) unstable; urgency=low
198
199  * Renamed libsasl2-modules-mysql to libsasl2-modules-sql
200  * Reduced some packages' priority to optional, only the core remain important.
201  * Enabled KRB4 (should've done it in 2.1.18-1).
202
203 -- Dima Barsky <dima@debian.org>  Sun, 21 Mar 2004 01:07:40 +0000
204
205cyrus-sasl2 (2.1.18-1) unstable; urgency=low
206
207  * New upstream release (Closes: #232086)
208  * Revised Build-Depends list (Closes: #212615)
209  * Fixed typo in debian/control, thanks to hmh@debian.org (Closes: #213521)
210  * Fixed mutex handling (Closes: #223253)
211  * Use single -a for several mechanisms in /etc/init.d/saslauthd
212    (Closes: #202354)
213  * Fixed sasltestsuite (Closes: #217538)
214
215 -- Dima Barsky <dima@debian.org>  Sat, 13 Mar 2004 16:16:26 +0000
216
217cyrus-sasl2 (2.1.15-6) unstable; urgency=low
218
219  * Acknowledging the last two NMUs (Closes: #213510, #212945, #212318, #211958)
220  * Added -fno-strict-aliasing flag (Closes: #215862)
221
222 -- Dima Barsky <dima@debian.org>  Sun, 26 Oct 2003 01:26:53 +0100
223
224cyrus-sasl2 (2.1.15-5.2) unstable; urgency=low
225
226  * NMU
227  * Eeek, kill acinclude.m4 (what the FUCK is it doing there anyway?!)
228    so as to correctly update the libtool environment (Closes: #213510)
229  * While at it fix some stuff in the control file:
230    + Section: libs for libsasl2-* since SASL runtime environment is NOT
231      a devel suite
232  * Document rather bluntly the extreme need for sasl modules for this
233    lib to actually work in README.Debian
234
235 -- Henrique de Moraes Holschuh <hmh@debian.org>  Tue, 30 Sep 2003 21:14:56 -0300
236
237cyrus-sasl2 (2.1.15-5.1) unstable; urgency=low
238
239  * NMU
240  * Rebuild, to get correct heimdal dependencies.  Also add comerr-dev to
241    build-dependency list (Closes: #212945)
242  * Build-depend on libtool1.4 (Closes: #212318)
243
244 -- Henrique de Moraes Holschuh <hmh@debian.org>  Tue, 30 Sep 2003 13:56:28 -0300
245
246cyrus-sasl2 (2.1.15-5) unstable; urgency=low
247
248  * Set priority to "important" (Closes: #202876)
249  * Run aclocal,autoconf,automake, and autoheader in saslauthd
250    directory as well as the top one (Closes: #203096)
251  * Registered a conflict between *-heimdal packages and *-mit ones
252    (Closes: #202838)
253  * Grabbed doc/components.html from the SASL CVS (Closes: #202642)
254 -- Dima Barsky <dima@debian.org>  Thu, 31 Jul 2003 21:17:09 +0100
255
256cyrus-sasl2 (2.1.15-4) unstable; urgency=low
257
258  * Removed build dependency on libopenafs-dev, it was only required for
259    SASL1. SASL2 can take the DES library from libssl-dev (Closes: #202569).
260
261 -- Dima Barsky <dima@debian.org>  Wed, 23 Jul 2003 12:50:59 +0100
262
263cyrus-sasl2 (2.1.15-3) unstable; urgency=low
264
265  * Added build dependency on groff-base
266
267 -- Dima Barsky <dima@debian.org>  Mon, 21 Jul 2003 12:39:50 +0100
268
269cyrus-sasl2 (2.1.15-2) unstable; urgency=low
270
271  * Added build dependency on dbs and libopenafs-dev
272
273 -- Dima Barsky <dima@debian.org>  Mon, 21 Jul 2003 11:43:38 +0100
274
275cyrus-sasl2 (2.1.15-1) unstable; urgency=low
276
277  * New upstream release
278  * Added LDAP_SASLAUTHD doc file to sasl2-bin (Closes: #201893)
279  * Added build dependency on automake1.4 and autoconf2.13
280
281 -- Dima Barsky <dima@debian.org>  Tue, 15 Jul 2003 21:39:08 +0100
282
283cyrus-sasl2 (2.1.14-1) unstable; urgency=low
284
285  * New upstream release
286  * Changed the build system to dbs.
287  * THe GSSAPI segfault has been fixed upstream (Closes: #192502)
288  * Fixed a typo in the sasl2-bin description (Closes: #197070, #193958)
289  * Made a separate package for the MYSQL plugin (Closes: #188716, #166702, #190673)
290  * Moved libsasldb plugin into the libsasl2 package.
291
292 -- Dima Barsky <dima@debian.org>  Mon, 14 Jul 2003 07:04:47 +0100
293
294cyrus-sasl2 (2.1.12-1) unstable; urgency=low
295
296  * New upstream release
297  * Changed variable 'c' in testsuite.c:2871 from char to int
298    (Closes: #177426)
299  * Recompiled with the latest heimdal libraries (Closes: #179810)
300  * Removed RFC documents from libsasl2 (Closes: #178987)
301
302 -- Dima Barsky <dima@debian.org>  Sat, 15 Mar 2003 22:29:25 +0000
303
304cyrus-sasl2 (2.1.10-1) unstable; urgency=low
305
306  * New upstream release (Closes: #172453)
307  * Included sasldbconverter2 (Closes: #170740)
308  * Removed duplicate "--with-ldap" from debian/rules (Closes: #167858)
309  * Added "--sysconfdir=/etc" to debian/rules (Closes: #167855)
310  * Changed libsasl2 -> libsasl2-modules dependency from Suggests to
311    Recommends (Closes: #171938)
312  * Added "--enable-alwaystrue" to debian/rules (Closes: #170495)
313  * Included testsaslauthd (Closes: #167876)
314  * Included sasltestsuite (Closes: #166538)
315
316 -- Dima Barsky <dima@debian.org>  Mon, 23 Dec 2002 16:07:31 +0000
317
318cyrus-sasl2 (2.1.9-5) unstable; urgency=low
319
320  * Updated libtool files inside saslauthd/config/ (Closes: #166810)
321  * Enabled NTLM module
322  * Enabled LDAP support for saslauthd
323
324 -- Dima Barsky <dima@debian.org>  Mon, 28 Oct 2002 21:12:56 +0000
325
326cyrus-sasl2 (2.1.9-4) unstable; urgency=low
327
328  * Enabled DO_DLOPEN unconditionally in configure.in
329
330 -- Dima Barsky <dima@debian.org>  Mon, 28 Oct 2002 00:20:55 +0000
331
332cyrus-sasl2 (2.1.9-3) unstable; urgency=low
333
334  * Added AM_MAINTAINER_MODE to configure.in
335
336 -- Dima Barsky <dima@debian.org>  Sat, 26 Oct 2002 01:46:13 +0100
337
338cyrus-sasl2 (2.1.9-2) unstable; urgency=low
339
340  * Added dbconverter-2 as /usr/sbin/sasldbconverter-2
341  * Added build dependency on zlib1g-dev
342
343 -- Dima Barsky <dima@debian.org>  Fri, 25 Oct 2002 22:28:30 +0100
344
345cyrus-sasl2 (2.1.9-1) unstable; urgency=low
346
347  * New upstream release
348  * shlibs now refers to the current version (Closes: #163845)
349  * sasl2-bin now uses dpkg-statoverride to manage permissions of
350    /var/run/saslauthd and /etc/sasldb2 (Closes: #163042, #164393)
351
352 -- Dima Barsky <dima@debian.org>  Mon, 21 Oct 2002 22:01:01 +0100
353
354cyrus-sasl2 (2.1.7-3) unstable; urgency=low
355
356  * Added shlibs file (Closes: #162927)
357
358 -- Dima Barsky <dima@debian.org>  Tue,  1 Oct 2002 17:44:36 +0100
359
360cyrus-sasl2 (2.1.7-2) unstable; urgency=low
361
362  * Build with versioned symbols
363  * Another split: KERBEROS mechanism is now in a separate module (Closes: #154153)
364  * README.Debian has been updated a while ago, we can
365    close bug 146543 now. (Closes: #146543)
366
367 -- Dima Barsky <dima@debian.org>  Mon, 30 Sep 2002 17:23:12 +0100
368
369cyrus-sasl2 (2.1.7-1) unstable; urgency=low
370
371  * New upstream version (Closes: #156286, #158296)
372  * Enabled ldap and mysql (Closes: #155025, #154965)
373  * /etc/sasldb2 and /var/run/saslauthd now belong to the group "sasl"
374    and are group-readable (Closes: #151798)
375
376 -- Dima Barsky <dima@debian.org>  Thu, 25 Sep 2002 15:51:12 +0100
377
378cyrus-sasl2 (2.1.6-1) unstable; urgency=low
379
380  * New upstream version
381  * Make sure autoheader is not invoked at the build stage (Closes: #153127)
382
383 -- Dima Barsky <dima@debian.org>  Wed, 17 Jul 2002 12:19:29 +0100
384
385cyrus-sasl2 (2.1.5-7) unstable; urgency=low
386
387  * Separated heimdal-dependent plugins into the
388    libsasl2-modules-gssapi-heimdal package
389  * Updated libtool to the latest version (Closes: #146229)
390  * Changed permissions on /var/run/saslauthd to 711 (Closes: #151796)
391
392 -- Dima Barsky <dima@debian.org>  Thu,  4 Jul 2002 09:24:42 +0100
393
394cyrus-sasl2 (2.1.5-6) unstable; urgency=low
395
396  * Removed build dependency on automake
397
398 -- Dima Barsky <dima@debian.org>  Wed,  3 Jul 2002 09:51:47 +0100
399
400cyrus-sasl2 (2.1.5-5) unstable; urgency=low
401
402  * Added a few packages to the Build-Depends list
403
404 -- Dima Barsky <dima@debian.org>  Tue,  2 Jul 2002 16:22:57 +0100
405
406cyrus-sasl2 (2.1.5-4) unstable; urgency=low
407
408  * Enabled DES, KERBEROS, and GSSAPI
409  * Merged all modules into the package libsasl2-modules
410
411 -- Dima Barsky <dima@debian.org>  Tue,  2 Jul 2002 13:10:10 +0100
412
413cyrus-sasl2 (2.1.5-3) unstable; urgency=low
414
415  * Enabled sasldb in saslauthd (Closes: 146791)
416
417 -- Dima Barsky <dima@debian.org>  Tue,  2 Jul 2002 11:50:03 +0100
418
419cyrus-sasl2 (2.1.5-2) unstable; urgency=low
420
421  * Preserve /usr/lib/sasl2/*.la (Closes: #151567)
422
423 -- Dima Barsky <dima@debian.org>  Mon,  1 Jul 2002 19:24:21 +0100
424
425cyrus-sasl2 (2.1.5-1) unstable; urgency=low
426
427  * New upstream version (Closes: #133458, #148693, #131792, #150957)
428  * Added explicit rule for building libsasl2.a (Closes: #144200)
429  * Added a warning about /dev/random to README.Debian (Closes: #146982)
430  * /var/run/saslauthd/mux is now world-readable (Closes: #147484)
431  * Modified sasl2-bin.default to make it clear that MECHANISMS is a
432    space separated lists, so it should be quoted if there is more
433    than one item in it (Closes: #146790)
434
435 -- Dima Barsky <dima@debian.org>  Sun, 30 Jun 2002 01:19:16 +0100
436
437cyrus-sasl2 (2.1.2-2) unstable; urgency=low
438
439  * Fixed saslauthd man page (Closes: #131791)
440
441 -- Dima Barsky <dima@debian.org>  Wed, 27 Mar 2002 15:27:39 +0000
442
443cyrus-sasl2 (2.1.2-1) unstable; urgency=low
444
445  * New upstream version
446  * Changed --without-gssapi to --disable-gssapi
447  * Closes: #131792
448 
449 -- Dima Barsky <dima@debian.org>  Tue, 26 Mar 2002 22:29:12 +0000
450
451cyrus-sasl2 (2.1.1-0.2) unstable; urgency=low
452
453  * Fix a naming problem with the init script.
454  * Fix problems with the init script itself.
455
456 -- Michael Alan Dorman <mdorman@debian.org>  Sun, 17 Mar 2002 15:44:45 -0500
457
458cyrus-sasl2 (2.1.1-0.1) unstable; urgency=low
459
460  * New upstream version
461  * Total rewrite of debian/rules, fold everything into nice, standard debhelper usage
462  * Functionality to auto-start saslauthd, which configury through /etc/default/saslauthd
463
464 -- Michael Alan Dorman <mdorman@debian.org>  Sun, 17 Mar 2002 15:09:55 -0500
465
466cyrus-sasl2 (2.1.0-2) unstable; urgency=low
467
468  * Added build dependency on libopie-dev
469
470 -- Dima Barsky <dima@debian.org>  Sun, 27 Jan 2002 20:07:15 +0000
471
472cyrus-sasl2 (2.1.0-1) unstable; urgency=low
473
474  * Initial release of cyrus-sasl2
475
476 -- Dima Barsky <dima@debian.org>  Sun, 20 Jan 2002 14:36:45 +0000
Note: See TracBrowser for help on using the repository browser.