Change log for ldb package in Ubuntu

175 of 107 results
Published in focal-updates
Published in focal-security
ldb (2:2.4.4-0ubuntu0.20.04.2) focal-security; urgency=medium

  * SECURITY UPDATE: Access controlled AD LDAP attributes can be discovered
    - debian/patches/CVE-2023-0614-*.patch: upstream patches to fix the
      issue.
    - debian/libldb2.symbols: added new symbols.
    - CVE-2023-0614

 -- Marc Deslauriers <email address hidden>  Thu, 30 Mar 2023 08:16:21 -0400
Published in jammy-updates
Published in jammy-security
ldb (2:2.4.4-0ubuntu0.22.04.2) jammy-security; urgency=medium

  * SECURITY UPDATE: Access controlled AD LDAP attributes can be discovered
    - debian/patches/CVE-2023-0614-*.patch: upstream patches to fix the
      issue.
    - debian/libldb2.symbols: added new symbols.
    - CVE-2023-0614

 -- Marc Deslauriers <email address hidden>  Thu, 30 Mar 2023 08:16:21 -0400
Superseded in jammy-updates
Superseded in jammy-security
ldb (2:2.4.4-0ubuntu0.22.04.1) jammy-security; urgency=medium

  * No-change rebuild to solve versioning issue preventing upgrades from
    focal to jammy. (LP: #2009895)

 -- Marc Deslauriers <email address hidden>  Fri, 10 Mar 2023 06:55:45 -0500
Superseded in focal-updates
Superseded in focal-security
ldb (2:2.4.4-0ubuntu0.20.04.1) focal-security; urgency=medium

  * Update to 2.4.4 for samba security update
    - Removed patches included in new version:
      + Fix-FTBFS-Increase-the-over-estimation-for-sparse-fi.patch
      + CVE-2021-3670.patch
      + CVE-2022-32745_6-06.patch
      + CVE-2022-32745_6-10.patch
      + CVE-2022-32745_6-11.patch
      + CVE-2022-32745_6-12.patch
      + CVE-2022-32745_6-13.patch
    - debian/*symbols*: added new symbols.
    - debian/control: bump tdb Build-Depends to 1.4.4, talloc to 2.3.3,
      and tevent to 0.11.0.

 -- Marc Deslauriers <email address hidden>  Thu, 23 Feb 2023 10:29:16 -0500
Superseded in jammy-updates
Superseded in jammy-security
ldb (2:2.4.4-0ubuntu0.1) jammy-security; urgency=medium

  * Updated to 2.4.4 to fix security issue.
    - debian/python3-ldb.symbols.in, debian/libldb2.symbols: added new
      symbols.
    - CVE-2022-32746

 -- Marc Deslauriers <email address hidden>  Wed, 27 Jul 2022 07:27:00 -0400
Superseded in focal-updates
Superseded in focal-security
ldb (2:2.2.3-0ubuntu0.20.04.3) focal-security; urgency=medium

  * SECURITY UPDATE: MaxQueryDuration not honoured in Samba AD DC LDAP
    - debian/patches/CVE-2021-3670.patch: Confirm the request has not yet
      timed out in ldb filter processing in ldb_key_value/ldb_kv.c,
      ldb_key_value/ldb_kv.h, ldb_key_value/ldb_kv_index.c,
      ldb_key_value/ldb_kv_search.c.
    - CVE-2021-3670
  * SECURITY UPDATE: use-after-free via  LDAP add or modify request
    - debian/patches/CVE-2022-32745_6-06.patch: Use LDB_FLAG_MOD_TYPE()
      for flags equality check in modules/rdn_name.c.
    - debian/patches/CVE-2022-32745_6-10.patch: Add flag to mark message
      element values as shared in common/ldb_msg.c, include/ldb_module.h.
    - debian/patches/CVE-2022-32745_6-11.patch: Ensure shallow copy
      modifications do not affect original message in common/ldb_msg.c,
      include/ldb.h.
    - debian/patches/CVE-2022-32745_6-12.patch: Add functions for appending
      to an ldb_message in common/ldb_msg.c, include/ldb.h.
    - debian/patches/CVE-2022-32745_6-13.patch: Make use of functions for
      appending to an ldb_message in ldb_map/ldb_map.c,
      ldb_map/ldb_map_inbound.c, modules/rdn_name.c.
    - CVE-2022-32746
  * debian/libldb2.symbols: added new symbols.

 -- Marc Deslauriers <email address hidden>  Mon, 18 Jul 2022 07:57:54 -0400
Deleted in kinetic-release (Reason: (From Debian) [auto-cruft] obsolete source package)
Published in jammy-release
Deleted in jammy-proposed (Reason: Moved to jammy)
ldb (2:2.4.2-0ubuntu1) jammy; urgency=medium

  * d/watch: start tracking 2.4.x
  * New upstream release: 2.4.2
  * d/p/Fix-FTBFS-Increase-the-over-estimation-for-sparse-fi.patch:
    removed (applied upstream)
  * d/python3-ldb.symbols.in: update symbols
  * d/libldb2.symbols: update symbols

 -- Andreas Hasenack <email address hidden>  Tue, 15 Feb 2022 18:29:08 -0300
Superseded in jammy-proposed
ldb (2:2.2.3-2build1) jammy; urgency=medium

  * No-change rebuild with Python 3.10 as default version

 -- Graham Inggs <email address hidden>  Fri, 14 Jan 2022 11:31:42 +0000
Superseded in focal-updates
Superseded in focal-security
ldb (2:2.2.3-0ubuntu0.20.04.2) focal-security; urgency=medium

  * Update to 2.2.3 for samba security update
    - Removed patches included in new version:
      + CVE-2020-27840-1.patch
      + CVE-2020-27840-2.patch
      + CVE-2021-20277-1.patch
      + CVE-2021-20277-2.patch
      + CVE-2021-20277-3.patch
      + CVE-2021-20277-4.patch
    - Updated patches from Impish package:
      + Skip-test_guid_indexed_v1_db-on-mips64el-ppc64el-ia6.patch
      + Fix-FTBFS-Increase-the-over-estimation-for-sparse-fi.patch
      + Skip-ldb_lmdb_free_list_test-on-ppc64el-ppc64-and-sp.patch
    - debian/*symbols*: added new symbols.
    - debian/patches/Skip_failing_tests.diff: skip tests failing on 32-bit
      archs.
    - debian/control: bump tdb Build-Depends to 1.4.3, bump talloc
      Build-Depends to 2.3.1, bump tevent Build-Depends to 0.10.2.
    - CVE-2020-25718

 -- Marc Deslauriers <email address hidden>  Mon, 01 Nov 2021 07:50:21 -0400
Obsolete in hirsute-updates
Obsolete in hirsute-security
ldb (2:2.2.3-0ubuntu0.21.04.2) hirsute-security; urgency=medium

  * Update to 2.2.3 for samba security update
    - Removed patches included in new version:
      + CVE-2020-27840-1.patch
      + CVE-2020-27840-2.patch
      + CVE-2021-20277-1.patch
      + CVE-2021-20277-2.patch
      + CVE-2021-20277-3.patch
      + CVE-2021-20277-4.patch
    - debian/python3-lsb.symbols.in, debian/libldb2.symbols: added new
      symbols.
    - debian/patches/Skip_failing_tests.diff: skip tests failing on 32-bit
      archs.
    - CVE-2020-25718

 -- Marc Deslauriers <email address hidden>  Tue, 09 Nov 2021 13:39:03 -0500
Obsolete in impish-updates
Obsolete in impish-security
ldb (2:2.2.3-0ubuntu0.21.10.2) impish-security; urgency=medium

  * Update to 2.2.3 for samba security update
    - Removed patches included in new version:
      + CVE-2020-27840-ldb_dn-avoid-head-corruption-in-ldb_d.patch
      + CVE-2020-27840-pytests-move-Dn.validate-test-to-ldb.patch
      + CVE-2021-20277-ldb-attrib_handlers-casefold-stay-in-.patch
      + ldb-add-tests-for-ldb_wildcard_compare.patch
      + CVE-2021-20277-ldb-tests-ldb_match-tests-with-extra-.patch
      + ldb-Remove-tests-from-ldb_match_test-that-do-not-pas.patch
    - debian/python3-lsb.symbols.in, debian/libldb2.symbols: added new
      symbols.
    - debian/patches/Skip_failing_tests.diff: skip tests failing on 32-bit
      archs.
    - CVE-2020-25718

 -- Marc Deslauriers <email address hidden>  Tue, 09 Nov 2021 13:39:03 -0500
Superseded in jammy-release
Deleted in jammy-proposed (Reason: Moved to jammy)
ldb (2:2.2.3-2) unstable; urgency=high

  * Skip failing tests (on 32-bit architectures)

 -- Mathieu Parent <email address hidden>  Thu, 04 Nov 2021 23:06:24 +0100
Superseded in jammy-proposed
ldb (2:2.2.3-1) unstable; urgency=high

  * New upstream version 2.2.3

 -- Mathieu Parent <email address hidden>  Thu, 04 Nov 2021 19:28:54 +0100

Available diffs

Superseded in jammy-proposed
ldb (2:2.2.2-2) unstable; urgency=high

  * Upload to unstable

 -- Mathieu Parent <email address hidden>  Mon, 01 Nov 2021 08:58:11 +0100
Superseded in impish-release
Deleted in impish-proposed (Reason: Moved to impish)
ldb (2:2.2.0-3ubuntu3) impish; urgency=medium

  * No-change rebuild due to OpenLDAP soname bump.

 -- Sergio Durigan Junior <email address hidden>  Mon, 21 Jun 2021 17:50:03 -0400
Superseded in impish-release
Obsolete in hirsute-release
Deleted in hirsute-proposed (Reason: Moved to hirsute)
ldb (2:2.2.0-3ubuntu2) hirsute; urgency=medium

  * SECURITY UPDATE: Heap corruption via crafted DN strings
    - debian/patches/CVE-2020-27840-1.patch: avoid head corruption in
      ldb_dn_explode in common/ldb_dn.c.
    - debian/patches/CVE-2020-27840-2.patch: add Dn.validate test to ldb
      in tests/python/crash.py, wscript.
    - CVE-2020-27840
  * SECURITY UPDATE: Out of bounds read in AD DC LDAP server
    - debian/patches/CVE-2021-20277-1.patch: add tests for
      ldb_wildcard_compare in tests/ldb_match_test.c.
    - debian/patches/CVE-2021-20277-2.patch: ldb_match tests with extra
      spaces in tests/ldb_match_test.c.
    - debian/patches/CVE-2021-20277-3.patch: remove tests from
      ldb_match_test that do not pass in tests/ldb_match_test.c.
    - debian/patches/CVE-2021-20277-4.patch: stay in bounds in
      common/attrib_handlers.c.
    - CVE-2021-20277

 -- Marc Deslauriers <email address hidden>  Tue, 30 Mar 2021 13:00:36 -0400
Superseded in hirsute-release
Deleted in hirsute-proposed (Reason: Moved to hirsute)
ldb (2:2.2.0-3ubuntu1) hirsute; urgency=medium

  * Fix symbols generation (LP: #1920825).  On hirsute, dh-exec is showing
    different behavior based on the value of DEB_BUILD_PROFILES.  This is
    causing it to sometimes generate a file with the leading whitespace
    removed, which is resulting in a bad symbols file.  Set DEB_BUILD_PROFILES
    to empty gives a good symbols file.

 -- Matthias Klose <email address hidden>  Tue, 30 Mar 2021 16:11:59 +0200

Available diffs

Superseded in jammy-release
Obsolete in impish-release
Deleted in impish-proposed (Reason: Moved to impish)
ldb (2:2.2.0-3.1) unstable; urgency=medium

  * Non-maintainer upload.
  * ldb_dn: avoid head corruption in ldb_dn_explode (CVE-2020-27840)
    (Closes: #985936)
  * pytests: move Dn.validate test to ldb
  * ldb/attrib_handlers casefold: stay in bounds (CVE-2021-20277)
    (Closes: #985935)
  * ldb: add tests for ldb_wildcard_compare
  * ldb tests: ldb_match tests with extra spaces
  * ldb: Remove tests from ldb_match_test that do not pass

 -- Salvatore Bonaccorso <email address hidden>  Fri, 26 Mar 2021 19:52:18 +0100
Superseded in focal-updates
Superseded in focal-security
ldb (2:2.0.10-0ubuntu0.20.04.3) focal-security; urgency=medium

  * SECURITY UPDATE: Heap corruption via crafted DN strings
    - debian/patches/CVE-2020-27840-1.patch: avoid head corruption in
      ldb_dn_explode in common/ldb_dn.c.
    - debian/patches/CVE-2020-27840-2.patch: add Dn.validate test to ldb
      in tests/python/crash.py, wscript.
    - CVE-2020-27840
  * SECURITY UPDATE: Out of bounds read in AD DC LDAP server
    - debian/patches/CVE-2021-20277-1.patch: add tests for
      ldb_wildcard_compare in tests/ldb_match_test.c.
    - debian/patches/CVE-2021-20277-2.patch: ldb_match tests with extra
      spaces in tests/ldb_match_test.c.
    - debian/patches/CVE-2021-20277-3.patch: remove tests from
      ldb_match_test that do not pass in tests/ldb_match_test.c.
    - debian/patches/CVE-2021-20277-4.patch: stay in bounds in
      common/attrib_handlers.c.
    - CVE-2021-20277

 -- Marc Deslauriers <email address hidden>  Wed, 24 Mar 2021 08:01:45 -0400
Obsolete in groovy-updates
Obsolete in groovy-security
ldb (2:2.1.4-2ubuntu0.1) groovy-security; urgency=medium

  * SECURITY UPDATE: Heap corruption via crafted DN strings
    - debian/patches/CVE-2020-27840-1.patch: avoid head corruption in
      ldb_dn_explode in common/ldb_dn.c.
    - debian/patches/CVE-2020-27840-2.patch: add Dn.validate test to ldb
      in tests/python/crash.py, wscript.
    - CVE-2020-27840
  * SECURITY UPDATE: Out of bounds read in AD DC LDAP server
    - debian/patches/CVE-2021-20277-1.patch: add tests for
      ldb_wildcard_compare in tests/ldb_match_test.c.
    - debian/patches/CVE-2021-20277-2.patch: ldb_match tests with extra
      spaces in tests/ldb_match_test.c.
    - debian/patches/CVE-2021-20277-3.patch: remove tests from
      ldb_match_test that do not pass in tests/ldb_match_test.c.
    - debian/patches/CVE-2021-20277-4.patch: stay in bounds in
      common/attrib_handlers.c.
    - CVE-2021-20277

 -- Marc Deslauriers <email address hidden>  Wed, 24 Mar 2021 07:53:29 -0400
Published in xenial-updates
Published in xenial-security
ldb (2:1.1.24-1ubuntu3.2) xenial-security; urgency=medium

  * SECURITY UPDATE: Heap corruption via crafted DN strings
    - debian/patches/CVE-2020-27840.patch: avoid head corruption in
      ldb_dn_explode in common/ldb_dn.c.
    - CVE-2020-27840
  * SECURITY UPDATE: Out of bounds read in AD DC LDAP server
    - debian/patches/CVE-2021-20277.patch: stay in bounds in
      common/attrib_handlers.c.
    - CVE-2021-20277

 -- Marc Deslauriers <email address hidden>  Wed, 24 Mar 2021 08:04:37 -0400
Published in bionic-updates
Published in bionic-security
ldb (2:1.2.3-1ubuntu0.2) bionic-security; urgency=medium

  * SECURITY UPDATE: Heap corruption via crafted DN strings
    - debian/patches/CVE-2020-27840.patch: avoid head corruption in
      ldb_dn_explode in common/ldb_dn.c.
    - CVE-2020-27840
  * SECURITY UPDATE: Out of bounds read in AD DC LDAP server
    - debian/patches/CVE-2021-20277.patch: stay in bounds in
      common/attrib_handlers.c.
    - CVE-2021-20277

 -- Marc Deslauriers <email address hidden>  Wed, 24 Mar 2021 08:03:16 -0400
Superseded in hirsute-release
Deleted in hirsute-proposed (Reason: moved to Release)
ldb (2:2.2.0-3build1) hirsute; urgency=medium

  * No-change rebuild to build with python3.9 as default.

 -- Matthias Klose <email address hidden>  Thu, 19 Nov 2020 20:19:08 +0100
Superseded in hirsute-proposed
ldb (2:2.2.0-3) unstable; urgency=medium

  * Upload to unstable

 -- Mathieu Parent <email address hidden>  Wed, 18 Nov 2020 20:33:02 +0100
Superseded in focal-updates
Superseded in focal-security
ldb (2:2.0.10-0ubuntu0.20.04.2) focal-security; urgency=medium

  * No change rebuild to pick up riscv64 build.

 -- Marc Deslauriers <email address hidden>  Fri, 18 Sep 2020 14:30:35 -0400
Superseded in hirsute-release
Obsolete in groovy-release
Deleted in groovy-proposed (Reason: moved to Release)
ldb (2:2.1.4-2) unstable; urgency=high

  * Also skip test_guid_indexed_v1_db on mipsel
  * Also skip ldb_lmdb_free_list_test on ia64

 -- Mathieu Parent <email address hidden>  Thu, 02 Jul 2020 14:25:48 +0200
Superseded in groovy-release
Deleted in groovy-proposed (Reason: moved to Release)
ldb (2:2.1.2-0ubuntu1) groovy; urgency=medium

  * New upstream version: 2.1.2
  * d/watch: update for 2.1.x series
  * d/control: bump build-depends:
    - talloc: 2.3.1
    - tdb: 1.4.3
    - tevent: 0.10.2
  + d/python3-ldb.symbols*, d/libldb2.symbols: update symbols
  * d/p/ppc64el-test_get_size-bump.patch: bump size for test_get_size,
    which on ppc64el can be larger

 -- Andreas Hasenack <email address hidden>  Tue, 12 May 2020 11:03:56 -0300
Superseded in groovy-release
Deleted in groovy-proposed (Reason: moved to Release)
Superseded in focal-updates
Superseded in focal-security
ldb (2:2.0.10-0ubuntu0.20.04.1) focal-security; urgency=medium

  * Updated to 2.0.10 to fix samba security issue.
    - debian/*.symbols*: added new 2.0.10 symbols.

 -- Marc Deslauriers <email address hidden>  Fri, 24 Apr 2020 07:40:31 -0400
Obsolete in eoan-updates
Obsolete in eoan-security
ldb (2:1.5.7-0ubuntu0.19.10.1) eoan-security; urgency=medium

  * Updated to 1.5.7 to fix samba security issue.
    - debian/*.symbols*: added new 1.5.7 symbols.

 -- Marc Deslauriers <email address hidden>  Wed, 22 Apr 2020 09:49:56 -0400
Superseded in groovy-release
Published in focal-release
Deleted in focal-proposed (Reason: moved to Release)
ldb (2:2.0.8-2) unstable; urgency=medium

  [ Andreas Hasenack ]
  * d/python3-ldb.symbols*: update symbols for python 3.8 (Closes: #953331)

 -- Mathieu Parent <email address hidden>  Mon, 09 Mar 2020 11:05:52 +0100
Superseded in focal-release
Deleted in focal-proposed (Reason: moved to Release)
ldb (2:2.0.8-1ubuntu1) focal; urgency=medium

  * d/python3-ldb.symbols*: update symbols for python 3.8

 -- Andreas Hasenack <email address hidden>  Mon, 27 Jan 2020 15:12:42 -0300
Superseded in focal-proposed
ldb (2:2.0.8-1) unstable; urgency=medium

  [ Debian Janitor ]
  * Use dh $@ sequencer.

  [ Mathieu Parent ]
  * d/watch: Remove outdated dversionmangle
  * d/watch: Pin to ldb 2.0.x (for samba 4.11)
  * New upstream version 2.0.8
    - Update symbols
  * Standards-Version: 4.5.0, no change
  * d/control: libldb-dev Depends libtevent-dev

 -- Mathieu Parent <email address hidden>  Mon, 27 Jan 2020 10:45:29 +0100
Superseded in focal-proposed
ldb (2:2.0.7-4build1) focal; urgency=medium

  * No-change rebuild to build with python3.8.

 -- Matthias Klose <email address hidden>  Sat, 25 Jan 2020 05:41:55 +0000
Superseded in focal-release
Deleted in focal-proposed (Reason: moved to Release)
ldb (2:2.0.7-4) unstable; urgency=medium

  [ Debian Janitor ]
  * Update standards version to 4.4.1, no changes needed.

  [ Mathieu Parent ]
  * Only build on default python3 (Closes: #942669)

 -- Mathieu Parent <email address hidden>  Sun, 17 Nov 2019 14:42:51 +0100
Superseded in focal-release
Deleted in focal-proposed (Reason: moved to Release)
ldb (2:1.5.5-0ubuntu3) focal; urgency=medium

  * No-change rebuild to build with python3.8.

 -- Matthias Klose <email address hidden>  Fri, 18 Oct 2019 18:07:41 +0000
Superseded in focal-release
Obsolete in eoan-release
Deleted in eoan-proposed (Reason: moved to release)
ldb (2:1.5.5-0ubuntu2) eoan; urgency=medium

  * No-change upload with strops.h and sys/strops.h removed in glibc.

 -- Matthias Klose <email address hidden>  Thu, 05 Sep 2019 10:55:57 +0000
Superseded in eoan-release
Deleted in eoan-proposed (Reason: moved to release)
ldb (2:1.5.5-0ubuntu1) eoan; urgency=medium

  * New upstream release: 1.5.5
    - d/python3-ldb.symbols.*, d/libldb1.symbols: updated symbols

 -- Andreas Hasenack <email address hidden>  Thu, 08 Aug 2019 16:15:44 -0300
Superseded in eoan-release
Obsolete in disco-release
Deleted in disco-proposed (Reason: moved to release)
ldb (2:1.5.4-0ubuntu1) disco; urgency=medium

  * New upstream version: 1.5.4 (LP: #1818525):
    - d/libldb1.symbols: update for this version
    - d/p/00_Enable-make-test-even-without-lmdb.patch: refreshed
    - Removed patches, applied upstream:
      + d/p/03_EBADE
      + d/p/CVE-2019-3824-*.patch
    - d/control: bump build-deps:
      + require talloc >= 2.1.16
      + require tdb >= 1.3.18
      + require tevent >= 0.9.39
    - d/libldb1.install: added libldb-tdb-{err-map,int}.so
  * d/rules: use Makefile targets instead of direct WAF calls
  * Add python3 packages (LP: #1440381):
    - d/control: add python3 packages
    - d/rules: clean extra paths in the clean target
    - d/python3-ldb*.install: install files for the new python3 packages.
    - d/control, d/python3-ldb-dev.install, d/rules: use dh-exec and
      install the python header file in a version-dependent include dir.
    - d/python3-ldb.symbols.*: add per-architecture symbols files
    - d/rules: dh_makeshlibs for python3-ldb
    - d/rules: exclude "ldb." from symbols check/generation, as to match
      the python3 extension name.
    - d/rules: fix tevent globbing used in its removal
  * d/control, d/python-ldb*, d/rules: drop python2 packages and support

 -- Andreas Hasenack <email address hidden>  Fri, 08 Mar 2019 16:41:11 +0000
Superseded in disco-release
Deleted in disco-proposed (Reason: moved to release)
ldb (2:1.5.1+really1.4.3-1ubuntu2) disco; urgency=medium

  * SECURITY UPDATE: Out of bound read in ldb_wildcard_compare
    - debian/patches/CVE-2019-3824-1.patch: fix length.
    - debian/patches/CVE-2019-3824-2.patch: add extra comments.
    - debian/patches/CVE-2019-3824-3.patch: improve code style.
    - debian/patches/CVE-2019-3824-4.patch: use talloc_zero.
    - debian/patches/CVE-2019-3824-5.patch: check tree operation.
    - debian/patches/CVE-2019-3824-6.patch: fix end of data check.
    - CVE-2019-3824

 -- Marc Deslauriers <email address hidden>  Tue, 26 Feb 2019 11:37:34 -0500
Superseded in bionic-updates
Superseded in bionic-security
ldb (2:1.2.3-1ubuntu0.1) bionic-security; urgency=medium

  * SECURITY UPDATE: Out of bound read in ldb_wildcard_compare
    - debian/patches/CVE-2019-3824-1.patch: fix length.
    - debian/patches/CVE-2019-3824-2.patch: add extra comments.
    - debian/patches/CVE-2019-3824-3.patch: improve code style.
    - debian/patches/CVE-2019-3824-4.patch: use talloc_zero.
    - debian/patches/CVE-2019-3824-5.patch: check tree operation.
    - debian/patches/CVE-2019-3824-6.patch: fix end of data check.
    - CVE-2019-3824

 -- Marc Deslauriers <email address hidden>  Mon, 25 Feb 2019 08:13:32 -0500
Published in trusty-updates
Published in trusty-security
ldb (1:1.1.24-0ubuntu0.14.04.2) trusty-security; urgency=medium

  * SECURITY UPDATE: Out of bound read in ldb_wildcard_compare
    - debian/patches/CVE-2019-3824-1.patch: fix length.
    - debian/patches/CVE-2019-3824-2.patch: add extra comments.
    - debian/patches/CVE-2019-3824-3.patch: improve code style.
    - debian/patches/CVE-2019-3824-4.patch: use talloc_zero.
    - debian/patches/CVE-2019-3824-5.patch: check tree operation.
    - debian/patches/CVE-2019-3824-6.patch: fix end of data check.
    - CVE-2019-3824

 -- Marc Deslauriers <email address hidden>  Mon, 25 Feb 2019 08:27:10 -0500
Obsolete in cosmic-updates
Obsolete in cosmic-security
ldb (2:1.4.0+really1.3.5-2ubuntu0.1) cosmic-security; urgency=medium

  * SECURITY UPDATE: Out of bound read in ldb_wildcard_compare
    - debian/patches/CVE-2019-3824-1.patch: fix length.
    - debian/patches/CVE-2019-3824-2.patch: add extra comments.
    - debian/patches/CVE-2019-3824-3.patch: improve code style.
    - debian/patches/CVE-2019-3824-4.patch: use talloc_zero.
    - debian/patches/CVE-2019-3824-5.patch: check tree operation.
    - debian/patches/CVE-2019-3824-6.patch: fix end of data check.
    - CVE-2019-3824

 -- Marc Deslauriers <email address hidden>  Mon, 25 Feb 2019 07:53:00 -0500
Superseded in xenial-updates
Superseded in xenial-security
ldb (2:1.1.24-1ubuntu3.1) xenial-security; urgency=medium

  * SECURITY UPDATE: Out of bound read in ldb_wildcard_compare
    - debian/patches/CVE-2019-3824-1.patch: fix length.
    - debian/patches/CVE-2019-3824-2.patch: add extra comments.
    - debian/patches/CVE-2019-3824-3.patch: improve code style.
    - debian/patches/CVE-2019-3824-4.patch: use talloc_zero.
    - debian/patches/CVE-2019-3824-5.patch: check tree operation.
    - debian/patches/CVE-2019-3824-6.patch: fix end of data check.
    - CVE-2019-3824

 -- Marc Deslauriers <email address hidden>  Mon, 25 Feb 2019 08:18:19 -0500
Superseded in disco-release
Deleted in disco-proposed (Reason: moved to release)
ldb (2:1.5.1+really1.4.3-1ubuntu1) disco; urgency=medium

  * Do not build with libmdb which is in Universe:
    - d/control: drop build-depends on libmdb-dev
    - d/libldb1.install: do not install libldb-mdb-int.so
    - d/rules: build without lmdb

 -- Andreas Hasenack <email address hidden>  Tue, 27 Nov 2018 11:44:53 -0200
Superseded in disco-proposed
ldb (2:1.5.1+really1.4.3-1) unstable; urgency=high

  * Rollback to version 1.4.3 (for Samba 4.9)
    - Revert "Refresh symbols files."
    - Revert "Install libldb-tdb-{err-map,int}.so"
    - Revert "Drop patch 03_EBADE: applied upstream."

 -- Mathieu Parent <email address hidden>  Sat, 24 Nov 2018 22:50:47 +0100
Superseded in disco-proposed
ldb (2:1.5.1-1) unstable; urgency=medium

  * New upstream release.
  * Drop patch 03_EBADE: applied upstream.
  * Install libldb-tdb-{err-map,int}.so
  * Unicodify my surname.

 -- Jelmer Vernooij <email address hidden>  Fri, 23 Nov 2018 13:35:28 +0000

Available diffs

Superseded in disco-proposed
ldb (2:1.4.3-2) unstable; urgency=medium

  * Upload to unstable

 -- Mathieu Parent <email address hidden>  Sat, 17 Nov 2018 17:26:26 +0100

Available diffs

Superseded in disco-proposed
ldb (2:1.4.2-4) unstable; urgency=medium

  [ James Clarke ]
  * 03_EBADE: Add patch from upstream to fix FTBFS on architectures with no
    EBADE error code, such as GNU/kFreeBSD.

  [ Mathieu Parent ]
  * Upload to unstable

 -- Mathieu Parent <email address hidden>  Thu, 01 Nov 2018 21:10:06 +0100
Superseded in disco-release
Obsolete in cosmic-release
Deleted in cosmic-proposed (Reason: moved to release)
ldb (2:1.4.0+really1.3.5-2) unstable; urgency=high

  * Add patch from upstream to fix FTBFS on some arches (arm64, armhf, mips,
    mipsel, s390x, ...)
  * Urgency kept to high

 -- Mathieu Parent <email address hidden>  Thu, 16 Aug 2018 15:46:12 +0200
Superseded in cosmic-proposed
ldb (2:1.4.0+really1.3.5-1) unstable; urgency=high

  * Upload to unstable
  * Urgency high for 4.8.4 security release
  * New upstream version 1.3.5 (for samba 4.8.4)
    - samba 4.8 is not compatible with ldb 1.4
    - Update symbols, no change
    - Update patches
  * Revert python3 support until it is back in talloc (Reopen: #815139)
  * Standards-Version: 4.1.5
    - d/control: Add Rules-Requires-Root: no

 -- Mathieu Parent <email address hidden>  Wed, 15 Aug 2018 05:13:16 +0200
Superseded in cosmic-release
Deleted in cosmic-proposed (Reason: moved to release)
ldb (2:1.3.3-1) unstable; urgency=medium

  * New upstream version 1.3.3
    - Update symbols, no change
  * Standards-Version: 4.1.4, no change

 -- Mathieu Parent <email address hidden>  Wed, 16 May 2018 23:46:56 +0200
Superseded in cosmic-proposed
ldb (2:1.3.2-2) unstable; urgency=low

  * Upload to unstable

 -- Mathieu Parent <email address hidden>  Tue, 15 May 2018 15:43:04 +0200
Superseded in cosmic-release
Published in bionic-release
Deleted in bionic-proposed (Reason: moved to release)
ldb (2:1.2.3-1) unstable; urgency=medium

  * New upstream version 1.2.3
    - Update symbols (no change)
  * Standards-Version: 4.1.3, no change
  * Repository moved to salsa: Update Vcs-* fields
  * Bumping debhelper compat from 9 to 11

 -- Mathieu Parent <email address hidden>  Thu, 11 Jan 2018 07:36:33 +0100

Available diffs

Superseded in bionic-release
Deleted in bionic-proposed (Reason: moved to release)
ldb (2:1.2.2-2) unstable; urgency=medium

  * Upload to sid

 -- Mathieu Parent <email address hidden>  Thu, 26 Oct 2017 10:28:05 +0200

Available diffs

Superseded in bionic-release
Obsolete in artful-release
Deleted in artful-proposed (Reason: moved to release)
ldb (2:1.1.29-2) unstable; urgency=medium

  * Upload to unstable

 -- Mathieu Parent <email address hidden>  Mon, 19 Jun 2017 17:25:13 +0200

Available diffs

Superseded in artful-release
Obsolete in zesty-release
Deleted in zesty-proposed (Reason: moved to release)
ldb (2:1.1.27-1) unstable; urgency=medium

  * New upstream version.
    - Bump Buid-Depends: talloc 2.1.8, tdb 1.3.10 and tevent 0.9.29
    - Update symbols
  * Use secure Vcs-* uris (Closes: #805719)
  * Add me to uploaders
  * Bump standards version to 3.9.8 (no changes)
  * Use automatic debug packages (-dbgsym)
  * Mark libldb-dev and python-ldb-dev "Multi-Arch: same"

 -- Mathieu Parent <email address hidden>  Mon, 10 Oct 2016 10:02:53 +0200
Superseded in zesty-release
Obsolete in yakkety-release
Deleted in yakkety-proposed (Reason: moved to release)
ldb (2:1.1.26-1ubuntu5) yakkety; urgency=medium

  * debian/rules: Override dh_install to set the python include dir.

 -- Matthias Klose <email address hidden>  Thu, 22 Sep 2016 09:17:22 +0200
Superseded in yakkety-proposed
ldb (2:1.1.26-1ubuntu4) yakkety; urgency=medium

  * debian/python-ldb-dev.install: chmod +x those so dh-exec does its job.

 -- Matthias Klose <email address hidden>  Wed, 21 Sep 2016 18:35:19 +0200
Superseded in yakkety-release
Deleted in yakkety-proposed (Reason: moved to release)
ldb (2:1.1.26-1ubuntu3) yakkety; urgency=medium

  * Drop python3 packages again. No reverse dependencies, and
    python3-talloc-dev is NBS.

 -- Martin Pitt <email address hidden>  Wed, 07 Sep 2016 08:43:24 +0200
Superseded in yakkety-release
Deleted in yakkety-proposed (Reason: moved to release)
ldb (2:1.1.26-1ubuntu2) yakkety; urgency=medium

  * debian/python-ldb-dev.install, debian/python3-ldb-dev.install,
    - chmod +x those so dh-exec does its job, should fix the .h being
      installed in the wrong directory and the samba build

 -- Sebastien Bacher <email address hidden>  Fri, 05 Aug 2016 15:38:32 +0200
Superseded in yakkety-proposed
ldb (2:1.1.26-1ubuntu1) yakkety; urgency=medium

  * Merge with Debian; remaining changes:

Superseded in trusty-updates
Superseded in trusty-security
ldb (1:1.1.24-0ubuntu0.14.04.1) trusty-security; urgency=medium

  * Updated to upstream 1.1.24 as required by Samba security update.
    - debian/patches/01_exclude_symbols: removed, upstream.
    - debian/patches/CVE-2015-3223.patch: removed, upstream.
    - debian/patches/CVE-2015-5330.patch: removed, upstream.
    - debian/rules: adjusted location of files to be cleaned.
    - debian/*.symbols: updated for new version.
    - debian/control: bump tdb Build-Depends.

 -- Marc Deslauriers <email address hidden>  Tue, 05 Apr 2016 13:14:18 -0400
Obsolete in wily-updates
Obsolete in wily-security
ldb (2:1.1.24-0ubuntu0.15.10.1) wily-security; urgency=medium

  * Updated to upstream 1.1.24 as required by Samba security update.
    - debian/patches/03_revert_ldflags_atend: removed, upstream.
    - debian/patches/CVE-2015-3223.patch: removed, upstream.
    - debian/patches/CVE-2015-5330.patch: removed, upstream.
    - debian/rules: adjusted location of files to be cleaned.
    - debian/*.symbols: updated for new version.

 -- Marc Deslauriers <email address hidden>  Tue, 05 Apr 2016 11:34:05 -0400
Superseded in yakkety-release
Published in xenial-release
Deleted in xenial-proposed (Reason: moved to release)
ldb (2:1.1.24-1ubuntu3) xenial; urgency=medium

  * Build Python3 bindings.
  * Bump debhelper and standards version.
  * Do not generate symbols for the extension module
  * Do not encode the SOABI and the multiarch string into the pytalloc-util
    library, just append a '-py3'.
  * Make the build log a bit more verbose.
  * Remove empty maintainer script.

 -- Matthias Klose <email address hidden>  Thu, 18 Feb 2016 18:17:39 +0100
Superseded in xenial-proposed
ldb (2:1.1.24-1ubuntu2) xenial; urgency=medium

  * Build Python3 bindings.
  * Bump debhelper and standards version.
  * Do not generate symbols for the extension module
  * Do not encode the SOABI and the multiarch string into the pytalloc-util
    library, just append a '-py3'.
  * Make the build log a bit more verbose.
  * Remove empty maintainer script.

 -- Matthias Klose <email address hidden>  Thu, 18 Feb 2016 18:17:39 +0100
Superseded in xenial-release
Deleted in xenial-proposed (Reason: moved to release)
ldb (2:1.1.24-1ubuntu1) xenial; urgency=medium

  * Merge with Debian, remaining changes:
    - debian/patches/skip-ftbfs-tests-s390x.patch: Skip FTBFS tests cases
      on s390x, reported upstream.

Superseded in trusty-updates
Superseded in trusty-security
ldb (1:1.1.16-1ubuntu0.1) trusty-security; urgency=medium

  * SECURITY UPDATE: denial of service in ldb_wildcard_compare function
    - debian/patches/CVE-2015-3223.patch: handle empty strings and
      embedded zeros in lib/ldb/common/ldb_match.c.
    - CVE-2015-3223
  * SECURITY UPDATE: information leak via incorrect string length handling
    - debian/patches/CVE-2015-5330.patch: fix string length handling in
      lib/ldb/common/ldb_dn.c.
    - CVE-2015-5330

 -- Marc Deslauriers <email address hidden>  Mon, 04 Jan 2016 10:14:35 -0500
Published in precise-updates
Published in precise-security
ldb (1:1.1.4-1ubuntu0.1) precise-security; urgency=medium

  * SECURITY UPDATE: denial of service in ldb_wildcard_compare function
    - debian/patches/CVE-2015-3223.patch: handle empty strings and
      embedded zeros in lib/ldb/common/ldb_match.c.
    - CVE-2015-3223
  * SECURITY UPDATE: information leak via incorrect string length handling
    - debian/patches/CVE-2015-5330.patch: fix string length handling in
      lib/ldb/common/ldb_dn.c.
    - CVE-2015-5330

 -- Marc Deslauriers <email address hidden>  Mon, 04 Jan 2016 10:16:11 -0500
Obsolete in vivid-updates
Obsolete in vivid-security
ldb (1:1.1.18-1ubuntu0.1) vivid-security; urgency=medium

  * SECURITY UPDATE: denial of service in ldb_wildcard_compare function
    - debian/patches/CVE-2015-3223.patch: handle empty strings and
      embedded zeros in lib/ldb/common/ldb_match.c.
    - CVE-2015-3223
  * SECURITY UPDATE: information leak via incorrect string length handling
    - debian/patches/CVE-2015-5330.patch: fix string length handling in
      lib/ldb/common/ldb_dn.c.
    - CVE-2015-5330

 -- Marc Deslauriers <email address hidden>  Mon, 04 Jan 2016 10:12:57 -0500
Superseded in wily-updates
Superseded in wily-security
ldb (2:1.1.20-2ubuntu0.1) wily-security; urgency=medium

  * SECURITY UPDATE: denial of service in ldb_wildcard_compare function
    - debian/patches/CVE-2015-3223.patch: handle empty strings and
      embedded zeros in lib/ldb/common/ldb_match.c.
    - CVE-2015-3223
  * SECURITY UPDATE: information leak via incorrect string length handling
    - debian/patches/CVE-2015-5330.patch: fix string length handling in
      lib/ldb/common/ldb_dn.c.
    - CVE-2015-5330

 -- Marc Deslauriers <email address hidden>  Mon, 04 Jan 2016 10:02:17 -0500
Superseded in xenial-release
Deleted in xenial-proposed (Reason: moved to release)
ldb (2:1.1.23-1ubuntu1) xenial; urgency=high

  * Skip FTBFS tests cases on s390x, reported upstream.

 -- Dimitri John Ledkov <email address hidden>  Fri, 04 Dec 2015 14:08:06 +0000
Superseded in xenial-release
Deleted in xenial-proposed (Reason: moved to release)
ldb (2:1.1.23-1) unstable; urgency=medium

  * New upstream version.

 -- Jelmer Vernooij <email address hidden>  Sun, 08 Nov 2015 21:17:41 +0000

Available diffs

Superseded in xenial-release
Deleted in xenial-proposed (Reason: moved to release)
ldb (2:1.1.21-1) unstable; urgency=medium

  * New upstream release.
  * Drop patch 03_revert_ldflags_atend: applied upstream.

 -- Jelmer Vernooij <email address hidden>  Sat, 19 Sep 2015 03:01:43 +0000

Available diffs

Superseded in xenial-release
Obsolete in wily-release
Deleted in wily-proposed (Reason: moved to release)
ldb (2:1.1.20-2) unstable; urgency=medium

  * Add patch 01_manpage_dates: add fixed manpage dates, making the
    build reproducible.

 -- Jelmer Vernooij <email address hidden>  Mon, 27 Apr 2015 23:35:02 +0000

Available diffs

Superseded in wily-release
Obsolete in vivid-release
Deleted in vivid-proposed (Reason: moved to release)
ldb (1:1.1.18-1) unstable; urgency=medium


  * New upstream release.
   + Depend on tdb >= 1.3.2.
   + Fixes __attribute__((visibility)) check to not use nested functions.
     Closes: #749987
  * Use canonical URL in Vcs-Git field.
  * Specify branch in Vcs-Git field.
  * Add 02_hurd: link against pthread on the Hurd, to fix ldb module
    loading. Closes: #749095

 -- Jelmer Vernooij <email address hidden>  Sat, 05 Jul 2014 23:32:23 +0200

Available diffs

175 of 107 results