Change log for cyrus-sasl2 package in Ubuntu

175 of 85 results
Published in bionic-release on 2017-10-24
Published in artful-release on 2017-08-17
Deleted in artful-proposed (Reason: moved to release)
cyrus-sasl2 (2.1.27~101-g0780600+dfsg-3ubuntu1) artful; urgency=medium

  * Merge with Debian unstable (LP: #1710684). Remaining changes:
    - debian/patches/0033-Missing-definition-of-OPENSSL_zalloc.patch: Grab patch
      from upstream Git to fix FTBFS with older versions of OpenSSL.
      + LP #1672941

 -- Andreas Hasenack <email address hidden>  Mon, 14 Aug 2017 15:11:41 -0300
Superseded in artful-release on 2017-08-17
Published in zesty-release on 2017-04-03
Deleted in zesty-proposed (Reason: moved to release)
cyrus-sasl2 (2.1.27~101-g0780600+dfsg-2ubuntu1) zesty; urgency=medium

  * debian/patches/0033-Missing-definition-of-OPENSSL_zalloc.patch: Grab patch
    from upstream Git to fix FTBFS with older versions of OpenSSL.
    - LP: #1672941

 -- Logan Rosen <email address hidden>  Tue, 28 Mar 2017 15:23:23 -0700
Superseded in zesty-proposed on 2017-03-29
cyrus-sasl2 (2.1.27~101-g0780600+dfsg-2) unstable; urgency=medium

  * Reinstate Heimdal Kerberos support (Closes: #849706)
  * Add TLS to http protocol links in d/control

 -- Ondřej Surý <email address hidden>  Sat, 31 Dec 2016 15:59:34 +0100
Superseded in zesty-proposed on 2016-12-31
cyrus-sasl2 (2.1.27~101-g0780600+dfsg-1) unstable; urgency=medium

  * Imported Upstream version 2.1.27~101-g0780600+dfsg
  * Rebase patches on top of 2.1.27~101-g0780600+dfsg

 -- Ondřej Surý <email address hidden>  Fri, 25 Nov 2016 13:35:52 +0100
Superseded in zesty-release on 2017-04-03
Deleted in zesty-proposed on 2017-04-07 (Reason: moved to release)
cyrus-sasl2 (2.1.27~72-g88d82a3+dfsg-1) unstable; urgency=low

  * Imported Upstream version 2.1.27~72-g88d82a3+dfsg
  * Switch repack.sh to repack.stub
  * Remove d/autoreconf, not needed anymore
  * Disable 0006-Link-with-libsasldb.a-instead-of-libsasldb.al.patch to
    fix FTBFS
  * Update d/control with heimdal removal
  * Run wrap-and-sort -a over d/ directory
  * Update Conflicts/Replaces for new 2.1.27 git snapshot
  * Rebase patches on top of 2.1.27~72-g88d82a3+dfsg
  * Update d/rules to remove heimdall and more cleanups
  * Remove heimdal packages (Closes: #837724)
  * Change linking from sasldb/.libs/libsasldb.al to sasldb/libsasldb.la
  * Cleanup LTLIBOBJS for modern autotools
  * Add ${with_pgsql}include/postgresql/ to include path
  * Add default Debian hardening to sample server and client
  * Fix some lintian errors
  * Update and fix d/copyright after major d/ rewrite
  * Fix more libsasl2.pc variables

 -- Ondřej Surý <email address hidden>  Tue, 25 Oct 2016 17:39:20 +0200
Superseded in yakkety-release on 2016-04-27
Published in xenial-release on 2016-04-07
Deleted in xenial-proposed (Reason: moved to release)
cyrus-sasl2 (2.1.26.dfsg1-14build1) xenial; urgency=medium

  * Rebuild against libmysqlclient20.

 -- Robie Basak <email address hidden>  Tue, 05 Apr 2016 12:19:05 +0000
Superseded in zesty-release on 2016-11-21
Published in yakkety-release on 2016-04-27
Deleted in yakkety-proposed (Reason: moved to release)
cyrus-sasl2 (2.1.26.dfsg1-15) unstable; urgency=medium

  * Add fix for auth_rimap infinite loop (hang) when IMAP server closes
    connection (Closes: #815208)

 -- Ondřej Surý <email address hidden>  Thu, 24 Mar 2016 11:54:40 +0100
Published in vivid-updates on 2015-09-30
Published in vivid-security on 2015-09-30
cyrus-sasl2 (2.1.26.dfsg1-13ubuntu0.1) vivid-security; urgency=medium

  * SECURITY UPDATE: denial of service via invalid salt
    - debian/patches/CVE-2013-4122.patch: properly handle glibc returning
      NULL on an invalid salt in pwcheck/pwcheck_getpwnam.c,
      pwcheck/pwcheck_getspnam.c, saslauthd/auth_getpwent.c,
      saslauthd/auth_shadow.c.
    - CVE-2013-4122

 -- Marc Deslauriers <email address hidden>  Fri, 25 Sep 2015 12:44:49 -0400
Superseded in xenial-release on 2016-04-07
Published in wily-release on 2015-09-27
Deleted in wily-proposed (Reason: moved to release)
cyrus-sasl2 (2.1.26.dfsg1-14) unstable; urgency=medium

  * [CVE-2013-4122]: Handle NULL returns from glibc 2.17+ crypt()
    (Closes: #784112)

 -- Ondřej Surý <email address hidden>  Wed, 23 Sep 2015 14:35:31 +0200
Superseded in wily-release on 2015-09-27
Published in vivid-release on 2015-03-10
Deleted in vivid-proposed (Reason: moved to release)
cyrus-sasl2 (2.1.26.dfsg1-13) unstable; urgency=medium


  * Shutdown down the write side of the socket and wait for the client to
    close the connection (0 byte read) before closing the server side
    (Closes: #777349) (Courtesy of Kees Cook)

 -- Ondřej Surý <email address hidden>  Mon, 09 Mar 2015 14:21:23 +0100

Available diffs

Superseded in vivid-release on 2015-03-10
Deleted in vivid-proposed on 2015-03-11 (Reason: moved to release)
cyrus-sasl2 (2.1.26.dfsg1-12) unstable; urgency=medium


  * Add patch to fix login to dovecot imapd 2.x (Closes: #715040)

 -- Ondřej Surý <email address hidden>  Fri, 17 Oct 2014 14:41:06 +0200
Superseded in vivid-release on 2014-10-25
Obsolete in utopic-release on 2016-11-03
Deleted in utopic-proposed on 2016-11-03 (Reason: moved to release)
cyrus-sasl2 (2.1.26.dfsg1-11) unstable; urgency=medium


  * Create libsasl2.pc from Makefile for proper substitions
    (Closes: #754066)

 -- Ondřej Surý <email address hidden>  Fri, 11 Jul 2014 10:59:23 +0200

Available diffs

Superseded in utopic-release on 2014-07-11
Deleted in utopic-proposed on 2014-07-13 (Reason: moved to release)
cyrus-sasl2 (2.1.26.dfsg1-10) unstable; urgency=low


  [ Roberto C. Sanchez ]
  * Actually install the logcheck snippet in the package (Closes: #732771)
  * Build-Depend on 'automake (>=1:1.14)', as automake in wheezy no longer
    builds this package

  [ Ondřej Surý ]
  * Install libsasl2.pc into libsasl2-dev package (Closes: #752907)

 -- Ondřej Surý <email address hidden>  Mon, 30 Jun 2014 09:18:27 +0200
Superseded in utopic-release on 2014-06-30
Deleted in utopic-proposed on 2014-07-02 (Reason: moved to release)
cyrus-sasl2 (2.1.26.dfsg1-9) unstable; urgency=high


  * saslauthd: refuse to start if debug option (-d) is set in options
    passed to init script (Closes: #558014)
  * Fix FTBFS with clang (Closes: #739561)
  * libsasl2-2: Restore emtpy /usr/lib/sasl2 directory (Closes: #739601)

 -- Roberto C. Sanchez <email address hidden>  Sun, 02 Mar 2014 09:22:47 -0500
Superseded in utopic-release on 2014-04-26
Published in trusty-release on 2013-11-02
Deleted in trusty-proposed (Reason: moved to release)
cyrus-sasl2 (2.1.25.dfsg1-17build1) trusty; urgency=low

  * No change rebuild against db 5.3.
 -- Dmitrijs Ledkovs <email address hidden>   Sat, 02 Nov 2013 16:56:43 +0000
Obsolete in raring-updates on 2015-04-24
Obsolete in raring-security on 2015-04-24
cyrus-sasl2 (2.1.25.dfsg1-6ubuntu0.1) raring-security; urgency=low

  * SECURITY UPDATE: denial of service via invalid salt (LP: #1187001)
    - debian/patches/CVE-2013-4122.patch: properly handle glibc returning
      NULL on an invalid salt in pwcheck/pwcheck_getpwnam.c,
      pwcheck/pwcheck_getspnam.c, saslauthd/auth_getpwent.c,
      saslauthd/auth_shadow.c.
    - CVE-2013-4122
 -- Marc Deslauriers <email address hidden>   Mon, 07 Oct 2013 08:40:56 -0400
Superseded in trusty-release on 2013-11-02
Obsolete in saucy-release on 2015-04-24
Deleted in saucy-proposed on 2015-04-28 (Reason: moved to release)
cyrus-sasl2 (2.1.25.dfsg1-17) unstable; urgency=low


  * Add libsasl2-modules-db to the include/exclude lists in debian/rules.

 -- Adam Conrad <adconrad@0c3.net>  Sun, 06 Oct 2013 19:55:16 -0600
Superseded in saucy-release on 2013-10-07
Deleted in saucy-proposed on 2013-10-08 (Reason: moved to release)
cyrus-sasl2 (2.1.25.dfsg1-14) unstable; urgency=low


  * CVE-2013-4122: Handle NULL returns from glibc 2.17+ crypt()
    (Closes: #716835)

 -- Ondřej Surý <email address hidden>  Wed, 17 Jul 2013 16:19:39 +0200
Superseded in saucy-release on 2013-07-18
Deleted in saucy-proposed on 2013-07-20 (Reason: moved to release)
cyrus-sasl2 (2.1.25.dfsg1-13) unstable; urgency=low


  * Use --ignore-fail-on-non-empty option to rmdir instead of non-existent -f
    (Closes: #714601)

 -- Ondřej Surý <email address hidden>  Mon, 01 Jul 2013 12:19:54 +0200
Superseded in saucy-proposed on 2013-07-01
cyrus-sasl2 (2.1.25.dfsg1-12) unstable; urgency=low


  * Change depend on libsasl2-modules to libsasl2-2 in libsasl2-dev
    (Closes: #714514)

 -- Ondřej Surý <email address hidden>  Mon, 01 Jul 2013 09:25:05 +0200

Available diffs

Superseded in saucy-proposed on 2013-07-01
cyrus-sasl2 (2.1.25.dfsg1-11) unstable; urgency=low


  * Loosen dependency on libsasl2-modules from = to >= to allow transition
    to libsasl2-3

 -- Ondřej Surý <email address hidden>  Thu, 27 Jun 2013 10:43:50 +0200

Available diffs

Superseded in saucy-proposed on 2013-06-27
cyrus-sasl2 (2.1.25.dfsg1-10) unstable; urgency=low


  * Purge /usr/lib/sasl2/berkeley_db.active if the /etc/sasldb2 was purged
    or doesn't exist.

 -- Ondřej Surý <email address hidden>  Wed, 26 Jun 2013 09:19:15 +0200

Available diffs

Superseded in saucy-proposed on 2013-06-26
cyrus-sasl2 (2.1.25.dfsg1-9) unstable; urgency=low


  * Move sasldb plugin from libsasl2-3 to libsasl2-modules
    (Closes: #714091)

 -- Ondřej Surý <email address hidden>  Wed, 26 Jun 2013 09:19:15 +0200

Available diffs

Superseded in saucy-proposed on 2013-06-26
cyrus-sasl2 (2.1.25.dfsg1-8) unstable; urgency=low


  * Install berkeley_db.txt to sasl2-bin (Closes: #713932)

 -- Ondřej Surý <email address hidden>  Mon, 24 Jun 2013 07:52:29 +0200

Available diffs

Superseded in saucy-release on 2013-07-01
Deleted in saucy-proposed on 2013-07-03 (Reason: moved to release)
cyrus-sasl2 (2.1.25.dfsg1-7) unstable; urgency=low


  * Use AC_CONFIG_MACRO_DIRS instead of AC_CONFIG_MACRO_DIR (Closes: #711219)
  * Fix heavy CPU usage in saslauthd (Closes: #708552)
  * Send LOGOUT before closing connection in auth_rimap (Closes: #708547)
  * Fix garbage in output buffer when using canonuser_plugin: ldapdb
    (Closes: #689346)

 -- Ondřej Surý <email address hidden>  Thu, 06 Jun 2013 13:41:17 +0200

Available diffs

Superseded in saucy-release on 2013-06-06
Obsolete in raring-release on 2015-04-24
Deleted in raring-proposed on 2015-04-27 (Reason: moved to release)
cyrus-sasl2 (2.1.25.dfsg1-6) unstable; urgency=low


  * Fix failures when the host have broken hostname (Closes: #683555)

 -- Ondřej Surý <email address hidden>  Fri, 26 Oct 2012 14:06:11 +0200

Available diffs

Superseded in quantal-release on 2012-09-17
cyrus-sasl2 (2.1.25.dfsg1-4build1) quantal; urgency=low

  * Rebuild to fix mysteriously-dropped PIE hardening (LP: #1039554).
 -- Colin Watson <email address hidden>   Wed, 22 Aug 2012 11:11:37 +0100
Superseded in raring-release on 2012-10-29
Obsolete in quantal-release on 2015-04-24
cyrus-sasl2 (2.1.25.dfsg1-5) unstable; urgency=low


  * New sourceful upload (Closes: #676914)
  * Relabel /run directory for SE Linux (Closes: #677685)
  * Add a NEWS file about auxprop_plugin mysql->sql change
    (Closes: #680476)
  * Improve documentation on LDAP_SASLAUTHD file (Closes: #671015)

 -- Ondřej Surý <email address hidden>  Mon, 06 Aug 2012 13:34:27 +0200
Published in precise-updates on 2012-05-15
Deleted in precise-proposed (Reason: moved to -updates)
cyrus-sasl2 (2.1.25.dfsg1-3ubuntu0.1) precise-proposed; urgency=low

  * Fix ABI incompatability during slapd upgrades (LP: #990742):
    - debian/control: Set Breaks: 'slapd < 2.4.25-4' on libsasl2-2.
    - debian/rules: Introduce shlib dependency on 2.1.24 for libsasl2-2.
 -- Adam Gandelman <email address hidden>   Thu, 03 May 2012 12:39:35 -0700
Superseded in quantal-release on 2012-08-22
cyrus-sasl2 (2.1.25.dfsg1-4) unstable; urgency=medium


  [ Ondřej Surý ]
  * Lintian says we need debhelper >= 9, so we need debhelper >= 9

  [ Helmut Grohne ]
  * Breaks: slapd < 2.4.25-4 (Closes: #655845)
  * Introduce shlib dependency on 2.1.24 for libsasl2-2. (Closes:
    #628237)

 -- Ondřej Surý <email address hidden>  Sun, 04 Mar 2012 09:30:55 +0100

Available diffs

Superseded in quantal-release on 2012-04-30
Published in precise-release on 2012-02-13
cyrus-sasl2 (2.1.25.dfsg1-3) unstable; urgency=low


  [ Thomas Preud'homme ]
  * Stop relying on the structure of debugging package
    (Closes: #653725).

 -- Ondřej Surý <email address hidden>  Wed, 18 Jan 2012 08:47:04 +0100
Superseded in precise-release on 2012-02-13
cyrus-sasl2 (2.1.24~rc1.dfsg1+cvs2011-05-23-4ubuntu3) precise; urgency=low

  * Rebuild for libmysqlclient transition.
 -- Clint Byrum <email address hidden>   Wed, 23 Nov 2011 16:32:30 -0800
Superseded in precise-release on 2011-11-24
Obsolete in oneiric-release on 2015-04-24
cyrus-sasl2 (2.1.24~rc1.dfsg1+cvs2011-05-23-4ubuntu2) oneiric; urgency=low

  * Build for multiarch.  LP: #826601.
 -- Steve Langasek <email address hidden>   Mon, 15 Aug 2011 15:30:56 -0700
Superseded in oneiric-release on 2011-08-16
cyrus-sasl2 (2.1.24~rc1.dfsg1+cvs2011-05-23-4ubuntu1) oneiric; urgency=low

  * Fix FTBFS with newer versions of Heimdal. LP: #825872
 -- Jelmer Vernooij <email address hidden>   Sat, 13 Aug 2011 18:00:52 +0200
Superseded in oneiric-release on 2011-08-13
cyrus-sasl2 (2.1.24~rc1.dfsg1+cvs2011-05-23-4) unstable; urgency=low

  * Fix yet another upstream segfault breakage in GSSAPI from CVS
    (Closes: #629589)

Superseded in oneiric-release on 2011-06-08
cyrus-sasl2 (2.1.24~rc1.dfsg1+cvs2011-05-23-2) unstable; urgency=low

  * Upload to unstable
  * One more AC_CACHE_VAL without _cv_ fix
  * Update Vcs-* links
  * Add gs2 and scram modules to libsasl2-modules-gssapi-mit
    (Closes: #628067)
  * Revert "Change gbp.conf for experimental branch"
  * Add lintian-override for libsasl2-modules-gssapi-mit: possible-gpl-
    code-linked-with-openssl

Superseded in oneiric-release on 2011-05-28
cyrus-sasl2 (2.1.24~rc1.dfsg1-1) unstable; urgency=low

  [ Roberto C. Sanchez ]
  * libsasl2-2.README.Debian: document that SASL logs debug messages by
    default, and how change/stop it (Closes: #590598)
  * Bump Standards-Version to 3.9.2 (no changes)
  * Remove Build-Depends on libopie-dev, which was removed
    (Closes: #622221)

  [ Ondřej Surý ]
  * Patch to support newer Berkeley DB (Closes: #621437)
  * Remove /etc/sasldb2 in prerm remove if empty (Closes: #618885)
  * Improve Berkeley DB upgrade code to note the used version in
    berkeley_db.active file and compare it with current version
  * Convert debian/rules to debhelper7
  * Update Vcs-* and Homepage fields
  * Fix autoreconf by adding some recommended options to configure.in
    and Makefile.am
  * Imported Upstream version 2.1.24~rc1.dfsg1
  * Update patches to new release
  * Update repack.sh
  * Build against sqlite3 since upstream has a support for it
    (Closes: #444799)
  * Fix FTBFS in LDAP plugin
  * Don't use .la files to open plugins, just scan .so
  * Set configdir to /etc/sasl2:/etc/sasl:/usr/lib/sasl2
    (Closes: #465569)
  * Stop shipping .la and .a files for all modules (Closes: #516833)
  * sasl2-bin can depend on generic db-util package now
  * Add myself to uploaders
  * Removed hardcoded -R option when searching for sqlite libraries
  * Fix Sqlite3 FTBFS due missing link libraries in plugins/
 -- Ubuntu Archive Auto-Sync <email address hidden>   Thu,  26 May 2011 07:33:30 +0000
Superseded in oneiric-release on 2011-05-26
cyrus-sasl2 (2.1.23.dfsg1-8build1) oneiric; urgency=low

  * Rebuild for OpenSSL 1.0.0.
 -- Colin Watson <email address hidden>   Wed, 25 May 2011 01:40:49 +0100
Superseded in oneiric-release on 2011-05-25
cyrus-sasl2 (2.1.23.dfsg1-8) unstable; urgency=low

  * Eliminate getsubopt conflict when building with glibc 2.2, thanks to
    Colin Watson for the patch (Closes: #588528)
  * Convert package from using dpatch to using quilt
  * debian/sasl2-bin.saslauthd.init: Properly handle $(OPTIONS) missing from
    defaults file (Closes: #515534)
  * Bump Standards-Version to 3.9.1 (no changes)
  * cyrus-sasl2-dbg: Demote dependency on cyrus-sasl2-{mit,heimdal}-dbg to
    a recommendation (Closes: #607558)
  * Enable hardening features (Closes: #542725)
  * Fix FTBFS, add $(SASL_DB_LIB) as dependency to libsasldb, and use it.
    Thanks to Matthias Klose for the patch (Closes: #609237)
  * Drop gratuitous dependency on krb5support (Closes: #528238)
  * Ship docs on testing with sasl-sample-{client,server} (Closes: #516542)
  * Allow getting saslauthd status with '/etc/init.d/saslauthd status'.
    Thanks to Raoul Bhatia for the patch (Closes: #589181)
  * Fix documentation on saslauthd runtime directory perms (Closes: #528554)
  * Add Danish translation, thanks to Joe Dalton.  (Closes: #585553)
  * Change to machine readable copyright file (Closes: 470948)
  * Improve documentation on location of socket directory based on whether
    Postfix runs inside or outside a chroot, thanks to Walter Rohrer for the
    suggestion.  (Closes: #528553)
  * Start shipping gen-auth (Closes: #459624)
  * Switch to dpkg-source 3.0 (quilt) format.
  * Drop Conflicts/Replaces for pre-Lenny and pre-Sarge versions of packages

Superseded in oneiric-release on 2011-05-03
Obsolete in natty-release on 2013-06-04
cyrus-sasl2 (2.1.23.dfsg1-5ubuntu3) natty; urgency=low

  * debian/patches/0024_fix_linking: fix linker flags order to prevent
    FTBFS in Natty. (LP: #694398)
 -- Firas Kraiem <email address hidden>   Fri, 07 Jan 2011 13:07:06 +0000
Superseded in natty-release on 2011-01-07
Obsolete in maverick-release on 2013-03-05
cyrus-sasl2 (2.1.23.dfsg1-5ubuntu2) maverick; urgency=low

  * Remove unhelpful debian/sample/config.h, stop copying it in, and arrange
    to have the autoconf-generated config.h included when building sample/
    instead (LP: #600180).
 -- Colin Watson <email address hidden>   Fri, 09 Jul 2010 12:10:40 +0100
Superseded in maverick-release on 2010-07-09
Obsolete in lucid-release on 2016-10-26
cyrus-sasl2 (2.1.23.dfsg1-5ubuntu1) lucid; urgency=low

  * Merge from Debian testing, remaining changes:
    - debian/{control,rules}: add and enable hardened build for PIE
      (Debian bug 542725).

Superseded in lucid-release on 2010-03-31
cyrus-sasl2 (2.1.23.dfsg1-3ubuntu1) lucid; urgency=low

  * Merge from Debian testing, remaining changes:
    - Prepend XS-Original- to Vcs-{Browser,Svn}.
    - stop service only when switching to single user mode
    - debian/{control,rules}: add and enable hardened build for PIE
      (Debian bug 542725).
  * Dropped changes:
    - drop the sasl modules ORed dependency back down to a recommends,
      based on discussion with the Debian maintainer; it doesn't need to be
      a Depends now anyway, now that recommends are installed by default.
    - build-dependencies to MySQL 5.1 - this is already done differently in
      the Debian package, use that formulation of the build dependency.
    - dependency on sysv-rc: not needed, now that "multiuser" argument is
      phased out
    - Remove stop links from rc0 and rc6 - these have been gone since before
      hardy, no need to carry a delta for this.
 -- Steve Langasek <email address hidden>   Fri, 11 Dec 2009 14:17:09 -0800
Superseded in lucid-release on 2009-12-12
cyrus-sasl2 (2.1.23.dfsg1-2ubuntu1) lucid; urgency=low

  * Merge from debian testing, remaining changes:
    - Add sysv-rc dependency
    - Since the libsasl2 package description so clearly
      states that the library is "completely useless" without one of the
      libsasl2-modules packages, upgrade the Recommends on a single package
      to an ORd Depends on the complete list of them.
    - Prepend XS-Original- to Vcs-{Browser,Svn}.
    - Remove stop links from rc0 and rc6
    - stop service only when switching to single user mode
    - debian/control: Change build dependencies to MySQL 5.1.
    - debian/{control,rules}: add and enable hardened build for PIE
      (Debian bug 542725).

Superseded in lucid-release on 2009-11-13
Obsolete in karmic-release on 2013-03-04
cyrus-sasl2 (2.1.23.dfsg1-1ubuntu3) karmic; urgency=low

  * debian/{control,rules}: add and enable hardened build for PIE
    (Debian bug 542725).

 -- Kees Cook <email address hidden>   Thu, 20 Aug 2009 17:30:46 -0700
Superseded in karmic-release on 2009-08-21
cyrus-sasl2 (2.1.23.dfsg1-1ubuntu2) karmic; urgency=low

  * debian/control: Change build dependencies to MySQL 5.1.

 -- Mathias Gug <email address hidden>   Mon, 17 Aug 2009 17:23:44 -0400
Obsolete in dapper-updates on 2011-09-06
Obsolete in dapper-security on 2011-09-06
cyrus-sasl2 (2.1.19.dfsg1-0.1ubuntu3.1) dapper-security; urgency=low

  * SECURITY UPDATE: base64 encoding could result in unterminated
    strings, leading to crashes or loss of privacy.
    - Add debian/patches/50_sasl_encode64_term.diff: backported
      upstream fixes.
    - CVE-2009-0688

 -- Kees Cook <email address hidden>   Tue, 23 Jun 2009 11:29:50 -0700
Obsolete in hardy-updates on 2015-04-24
Obsolete in hardy-security on 2015-04-24
cyrus-sasl2 (2.1.22.dfsg1-18ubuntu2.1) hardy-security; urgency=low

  * SECURITY UPDATE: base64 encoding could result in unterminated
    strings, leading to crashes or loss of privacy.
    - Add debian/patches/0050_sasl_encode64_term.dpatch: backported
      upstream fixes.
    - CVE-2009-0688

 -- Kees Cook <email address hidden>   Tue, 23 Jun 2009 11:29:50 -0700
Obsolete in intrepid-updates on 2013-02-20
Obsolete in intrepid-security on 2013-02-20
cyrus-sasl2 (2.1.22.dfsg1-21ubuntu2.1) intrepid-security; urgency=low

  * SECURITY UPDATE: base64 encoding could result in unterminated
    strings, leading to crashes or loss of privacy.
    - Add debian/patches/0050_sasl_encode64_term.dpatch: backported
      upstream fixes.
    - CVE-2009-0688

 -- Kees Cook <email address hidden>   Tue, 23 Jun 2009 11:29:50 -0700
Obsolete in jaunty-updates on 2013-02-28
Obsolete in jaunty-security on 2013-02-28
cyrus-sasl2 (2.1.22.dfsg1-23ubuntu3.1) jaunty-security; urgency=low

  * SECURITY UPDATE: base64 encoding could result in unterminated
    strings, leading to crashes or loss of privacy.
    - Add debian/patches/0050_sasl_encode64_term.dpatch: backported
      upstream fixes.
    - CVE-2009-0688

 -- Kees Cook <email address hidden>   Tue, 23 Jun 2009 11:29:50 -0700
Superseded in karmic-release on 2009-08-18
cyrus-sasl2 (2.1.23.dfsg1-1ubuntu1) karmic; urgency=low

  * Merge from Debian unstable, remaining changes:
    - Add sysv-rc dependency
    - Since the libsasl2 package description so clearly
      states that the library is "completely useless" without one of the
      libsasl2-modules packages, upgrade the Recommends on a single package
      to an ORd Depends on the complete list of them.
    - Prepend XS-Original- to Vcs-{Browser,Svn}.
    - Remove stop links from rc0 and rc6
    - stop service only when switching to single user mode.
  * Dropped changes, superseded in Debian:
    - build-depend on libdb4.6-dev; Debian has moved on to db4.7
    - Added debian/patches/021ubuntu-fix-threaded-sasl.dpatch
      - Fixes SEGV in threaded SASL applications.
  * debian/rules: remove all the build-*stamp files on clean, not just
    build-stamp.

Superseded in karmic-release on 2009-06-04
Obsolete in jaunty-release on 2013-02-28
cyrus-sasl2 (2.1.22.dfsg1-23ubuntu3) jaunty; urgency=low

  * Revert libdb-dev build dependency change introduced in the
    last version, it makes everyhing crash when libdb-dev is
    4.7.*. See LP: #323409

 -- Fabien Tassin <email address hidden>   Sat, 31 Jan 2009 21:13:22 +0100
Superseded in jaunty-release on 2009-03-06
cyrus-sasl2 (2.1.22.dfsg1-23ubuntu2) jaunty; urgency=low

  * Switch back to Debian's libdb-dev build dependency, to match other
    changes going on in some kind of transition.

 -- Scott James Remnant <email address hidden>   Thu, 13 Nov 2008 10:59:02 +0000
Superseded in jaunty-release on 2008-11-13
cyrus-sasl2 (2.1.22.dfsg1-23ubuntu1) jaunty; urgency=low

  * Merge from debian unstable, remaining changes:
    - Add sysv-rc dependency
    - Since the libsasl2 package description so clearly
      states that the library is "completely useless" without one of the
      libsasl2-modules packages, upgrade the Recommends on a single package
      to an ORd Depends on the complete list of them.
    - Preprend XS-Original- to Vcs-{Browser,Svn}.
    - Use 'multiuser'-line update-rc.d mode and remove stop links
      from rc0 and rc6
    - build-depend on libdb4.6-dev
    - stop service only when switching to single user mode.
    - Added debian/patches/021ubuntu-fix-threaded-sasl.dpatch
      - Fixes SEGV in threaded SASL appilcations. (LP: #280982)

Superseded in jaunty-release on 2008-11-11
Obsolete in intrepid-release on 2013-02-20
cyrus-sasl2 (2.1.22.dfsg1-21ubuntu2) intrepid; urgency=low

  * Added debian/patches/021ubuntu-fix-threaded-sasl.dpatch
    - Fixes SEGV in threaded SASL appilcations. (LP: #280982)

 -- Chuck Short <email address hidden>   Fri, 10 Oct 2008 10:25:52 -0400
Superseded in intrepid-release on 2008-10-10
cyrus-sasl2 (2.1.22.dfsg1-21ubuntu1) intrepid; urgency=low

  * Merge from debian unstable, remaining changes:
    - Add sysv-rc dependency
    - Since the libsasl2 package description so clearly
      states that the library is "completely useless" without one of the
      libsasl2-modules packages, upgrade the Recommends on a single package
      to an ORd Depends on the complete list of them.
    - Preprend XS-Original- to Vcs-{Browser,Svn}.
    - Use 'multiuser'-line update-rc.d mode and remove stop links
      from rc0 and rc6
    - build-depend on libdb4.6-dev

  * change dh_installinit "multiuser" to
    "start 20 2 3 4 5 . stop 20 1 ." and update sasl2-bin.saslauthd.init
    to "Default-Stop: 1"
  * drop libsasl2 transitional package (was only required for
    dapper->hardy upgrades)

Superseded in dapper-updates on 2009-06-24
Deleted in dapper-proposed on 2009-06-25 (Reason: moved to -updates)
cyrus-sasl2 (2.1.19.dfsg1-0.1ubuntu3) dapper-proposed; urgency=low

  * debian/rules: configure with --with-devrandom=/dev/urandom to avoid
    hanging/blocking applications when entropy is exhausted. (LP: #225333)

 -- Andrew Pollock <email address hidden>   Thu,  1 May 2008 10:03:51 -0700
Superseded in intrepid-release on 2008-06-16
Obsolete in hardy-release on 2015-04-24
cyrus-sasl2 (2.1.22.dfsg1-18ubuntu2) hardy; urgency=low

  * add libsasl2 transitional package to fix dapper->hardy
    slapd upgrade problem (#213482)

 -- Michael Vogt <email address hidden>   Wed, 09 Apr 2008 23:23:57 +0200
Superseded in hardy-release on 2008-04-09
cyrus-sasl2 (2.1.22.dfsg1-18ubuntu1) hardy; urgency=low

  * Merge from debian unstable, remaining changes:
    - debian/control:
      - Add sysv-rc dependency
      - Since the libsasl2 package description so clearly
        states that the library is "completely useless" without one of the
        libsasl2-modules packages, upgrade the Recommends on a single package
        to an ORd Depends on the complete list of them.
      - Build-dep on libdb4.6-dev and not libdb-dev (LP #187892)
      - Set Ubuntu maintainer.
      - Preprend XS-Original- to Vcs-{Browser,Svn}.
    - Use 'multiuser' update-rc.d mode and remove stop links from rc0 and rc6

  * Dropped
    - debian/patches/0017_db4.6.dpatch,
      debian/patches/0019_ldap_deprecated.dpatch: accepted into Debian
    - debian/sasl2-bin.postinst: Adapt automatic db upgrade to 4.6. Note that
      this should not be necessary; this package does not use on-disk
      transactions and the data format did not change, but it was done for the
      4.2->4.4 upgrade in the past to be on the safe side.

  * debian/rules, sasl_sample_client.8, sasl_sample_server.8:
    - remove, as these are dynamically generated by debian/rules
    - update clean target to do this automatically from here out

Superseded in hardy-release on 2008-03-12
cyrus-sasl2 (2.1.22.dfsg1-16ubuntu5) hardy; urgency=low

  * debian/patches/0019_ldap_deprecated.dpatch: Signal the use of deprecated
    LDAP functions to avoid implicit pointer conversion.  Thanks to Dann
    Frazier <email address hidden> for the patch.

 -- Steve Langasek <email address hidden>   Thu, 21 Feb 2008 01:37:10 +0000
Superseded in hardy-release on 2008-02-21
cyrus-sasl2 (2.1.22.dfsg1-16ubuntu4) hardy; urgency=low

  * Build-dep on libdb4.6-dev and not libdb-dev (LP: #187892)

 -- Scott Kitterman <email address hidden>   Thu, 31 Jan 2008 18:51:22 -0500
Superseded in hardy-release on 2008-02-03
cyrus-sasl2 (2.1.22.dfsg1-16ubuntu3) hardy; urgency=low

  * No-change rebuild against libldap-2.4-2.

 -- Steve Langasek <email address hidden>   Tue, 22 Jan 2008 17:12:51 +0000
Superseded in hardy-release on 2008-01-22
cyrus-sasl2 (2.1.22.dfsg1-16ubuntu2) hardy; urgency=low

  * debian/control: Move to db4.6.
  * Add debian/patches/0017_db4.6.dpatch: Fix autotools macros to recognize db
    4.6.
  * debian/sasl2-bin.postinst: Adapt automatic db upgrade to 4.6. Note that
    this should not be necessary; this package does not use on-disk
    transactions and the data format did not change, but it was done for the
    4.2->4.4 upgrade in the past to be on the safe side.

 -- Martin Pitt <email address hidden>   Thu, 03 Jan 2008 12:05:44 +0100
Superseded in hardy-release on 2008-01-03
cyrus-sasl2 (2.1.22.dfsg1-16ubuntu1) hardy; urgency=low

  * Merge from debian unstable, remaining changes:
    - Use 'multiuser' update-rc.d mode and remove stop links from rc0 and rc6.
    - debian/control:  Since the libsasl2 package description so clearly
      states that the library is "completely useless" without one of the
      libsasl2-modules packages, upgrade the Recommends on a single package to
      an ORd Depends on the complete list of them.
    - debian/control: Set Ubuntu maintainer.

Superseded in hardy-release on 2007-12-07
Obsolete in gutsy-release on 2011-09-16
cyrus-sasl2 (2.1.22.dfsg1-9ubuntu2) gutsy; urgency=low

  * Trigger rebuild for hppa.

 -- LaMont Jones <email address hidden>   Tue, 02 Oct 2007 06:32:39 -0600
Superseded in gutsy-release on 2007-10-02
cyrus-sasl2 (2.1.22.dfsg1-9ubuntu1) gutsy; urgency=low

  * Merge from debian unstable, remaining changes:
    - Use 'multiuser' update-rc.d mode and remove stop links from rc0 and rc6.
    - debian/control:  Since the libsasl2 package description so clearly
      states that the library is "completely useless" without one of the
      libsasl2-modules packages, upgrade the Recommends on a single package to
      an ORd Depends on the complete list of them.
  * debian/control: Set Ubuntu maintainer.

Superseded in gutsy-release on 2007-05-04
Obsolete in feisty-release on 2009-08-20
cyrus-sasl2 (2.1.22.dfsg1-8ubuntu2) feisty; urgency=low

  * No-change upload for the libpq4->libpq5 transition.

 -- Martin Pitt <email address hidden>   Tue,  9 Jan 2007 10:32:05 +0100
Superseded in feisty-release on 2007-01-09
cyrus-sasl2 (2.1.22.dfsg1-8ubuntu1) feisty; urgency=low

  * Merge from Debian unstable
  * Ubuntu changes remaining:
    - Remove stop links from rc0 and rc6
    - Depend on, don't recommend, modules
  * Ubuntu changes dropped:
    - Build against db4.3 instead of 4.2
  * Create /var/run/saslauthd in sasl2-bin's postinst if need be.

 -- Steve Kowalik <email address hidden>   Fri, 22 Dec 2006 00:04:32 +1100
Superseded in feisty-release on 2006-12-21
cyrus-sasl2 (2.1.22.dfsg1-4ubuntu2) feisty; urgency=low

  * Revert part of the "Ubuntu Changes" -- depend on libkrb5-dev instead of
    heimdal-dev.  I read the patch the wrong way round, this was a change
    we made that Debian accepted!

 -- Scott James Remnant <email address hidden>   Tue, 28 Nov 2006 08:23:21 +0000
Superseded in feisty-release on 2006-11-28
cyrus-sasl2 (2.1.22.dfsg1-4ubuntu1) feisty; urgency=low

  * Merge from debian unstable, remaining changes:
    - remove stop links from rc0 and rc6
    - build against db4.3 instead of 4.2
    - build against heimdal-dev instead of libkrb5-dev
    - depend on, don't recommend, modules

Superseded in feisty-release on 2006-11-27
Obsolete in edgy-release on 2008-06-19
cyrus-sasl2 (2.1.19.dfsg1-0.2ubuntu3) edgy; urgency=low

  * Use libkrb5-dev instead of heimdal-dev

 -- Scott James Remnant <email address hidden>   Thu, 12 Oct 2006 15:27:45 +0100
Superseded in edgy-release on 2006-10-12
cyrus-sasl2 (2.1.19.dfsg1-0.2ubuntu2) edgy; urgency=low

  * Remove stop script symlinks from rc0 and rc6.

 -- Scott James Remnant <email address hidden>   Fri, 15 Sep 2006 17:01:31 +0100
Superseded in edgy-release on 2006-09-18
cyrus-sasl2 (2.1.19.dfsg1-0.2ubuntu1) edgy; urgency=low

  * Merge from debian unstable, resolve minor conflict.

Obsolete in breezy-security on 2008-03-25
cyrus-sasl2 (2.1.19-1.5ubuntu4.2) breezy-security; urgency=low

  * debian/patches/27_upstream_cvs_digest-md5-crash.diff: Fix path of file to
    patch.

 -- Martin Pitt <email address hidden>   Mon, 24 Apr 2006 10:07:03 +0000
Superseded in breezy-security on 2006-04-24
cyrus-sasl2 (2.1.19-1.5ubuntu4.1) breezy-security; urgency=low

  * SECURITY UPDATE: Remote DoS with crafted realms during DIGEST-MD5
    negotiation.
  * Add debian/patches/27_upstream_cvs_digest-md5-crash.diff:
    - plugins/digestmd5.c: Check that the provided realm is valid to avoid
      crash.
    - Patch taken from upstream CVS, fixed upstream in 2.1.21:
      https://bugzilla.andrew.cmu.edu/cgi-bin/cvsweb.cgi/src/sasl/
      plugins/digestmd5.c.diff?r1=1.173&r2=1.175&f=u
  * CVE-2006-1721

 -- Martin Pitt <email address hidden>   Mon, 24 Apr 2006 10:02:43 +0000
175 of 85 results