-
net-snmp (5.3.1-6ubuntu2.2) gutsy-security; urgency=low
* SECURITY UPDATE: authentication bypass via spoofed SNMPv3 packets.
- 51_CVE-2008-0960.patch: fixes thanks to Nico Golde.
* SECURITY UPDATE: arbitrary code execution via buffer overflow.
- 52_CVE-2008-2292.patch: fixes thanks to Jochen Friedrich.
* SECURITY UPDATE: denial of service via number of getbulk responses.
- 53_CVE-2008-4309.patch: ported fixes from Jochen Friedrich.
-- Kees Cook <email address hidden> Tue, 18 Nov 2008 12:28:59 -0800
-
net-snmp (5.3.1-6ubuntu2.1) gutsy-security; urgency=low
* SECURITY UPDATE: CVE-2007-5846 (LP: #164007)
The SNMP agent in net-snmp 5.4.1 and earlier allows remote attackers to
cause a denial of service (CPU and memory consumption) via a GETBULK request
with a large max-repeaters value.
* debian/patches/50_CVE-2007-5846.patch,
debian/patches/50_CVE-2007-5846.README:
Applied patch from upstream and explanation
(Link: http://sourceforge.net/tracker/index.php?func=detail&aid=1712988&group_id=12694&atid=112694 )
* References:
CVE-2007-5846
-- Stephan Hermann <email address hidden> Tue, 20 Nov 2007 22:06:58 +0100
-
net-snmp (5.3.1-6ubuntu2) gutsy; urgency=low
* Do not install the upstream changelog in libsnmp10 and libsnmp-base.
* Symlink files common in libsnmp10 and libsnmp-base.
-- Matthias Klose <email address hidden> Fri, 05 Oct 2007 14:55:58 +0200
-
net-snmp (5.3.1-6ubuntu1) gutsy; urgency=low
* Merge from Debian unstable.
* Remaining Ubuntu changes:
- Remove stop links from rc0 and rc6
- Munge Maintainer field as per spec.
net-snmp (5.3.1-6) unstable; urgency=low
* Add back linking libnetsnmpmibs to dependent libraries that got
lost during convert to cdbs (Closes: #422999, #422069, #422547)
* Updated kFreeBSD patch
-- Steve Kowalik <email address hidden> Wed, 23 May 2007 08:58:46 +1000
-
net-snmp (5.3.1-5ubuntu1) gutsy; urgency=low
* Merge from Debian unstable.
* Remaining Ubuntu changes:
- Remove stop links from rc0 and rc6
* Munge Maintainer field as per spec.
net-snmp (5.3.1-5) unstable; urgency=low
* Rename control files for libsnmp-dev as well, so package isn't empty.
net-snmp (5.3.1-4) unstable; urgency=low
* Add vcs headers to control for PTS.
* Rename dev Package to libsnmp-dev as suggested by Kurt Roeckx
<email address hidden> and Steve Langasek <email address hidden>
(Closes: #419919)
* NACK NMU.
* Add patch from RedHat for XEN (Closes: #419557)
net-snmp (5.3.1-3) unstable; urgency=low
* Move AgentX socket to RFC location.
* Update pktinfo patch from Jan Andres <email address hidden>
* Add official patches.
o disabling agentX breaks snmptrapd auth (SF #1527661)
o SNMP.pm gettable() patch (SF #1532044)
o 8 byte IpAddress value for 64bit non-linux systems (SF #1550635)
o memory leaks in ipAddress and CirdRoute tables (SF #1610160)
* Synchronize tree to 5.2.3-7.
o Don't fail postrm on non-existant deluser (Closes: #398540)
o Add German debconf translation (Closes: #397823)
Thanks to Helge Kreutzmann <email address hidden>.
o Add Italian debconf translation (Closes: #398047)
Thanks to Luca Monducci <email address hidden>.
o Add patch to hardcode mount table location (Closes: #370132)
o Add Romanian translation (Closes: #403949)
Thanks to stan ioan-eugen <email address hidden>.
o Update patch from Petr Salinger <email address hidden> for
kFreeBSD and Hurd support. (Closes: #402116)
o Fix restart of snmpd (Closes: #402568, #401306)
o Add Spanish translation (Closes: #402685)
Thanks to Javier Fernández-Sanguino Peña <email address hidden>
o Add Brazilian Portuguese translation (Closes: #403549)
Thanks to André Luís Lopes" <email address hidden>
o Don't fail postrm on non-existant deluser (Closes: #398540)
o Add LSB section to startup file.
o Add Thomas Anders as co-Maintainer.
o Add missing copyrights to copyright file.
o Fix spelling errors and wrong path names in documentation.
net-snmp (5.3.1-2) experimental; urgency=low
* Add kfreebsd support. Thanks to Petr Salinger
<email address hidden> (Closes: #380252)
* Add Russian translation. Thanks to Yuri Kozlov
<email address hidden> (Closes: #380300)
* Update Czech translation. Thanks to Miroslav Kure
<email address hidden> (Closes: #380528)
net-snmp (5.3.1-1) experimental; urgency=low
* New upstream version (Closes: #358079, #252893)
* Convert build system to cdbs. (Closes: #323074)
* Add patch from Lars Ellenberg to answer with the same
IP address the request was sent to. (Closes: #111263)
* Add patch from Sven Schnelle to prevent duplicate iftable
entries (Closes: #368617)
-- Steve Kowalik <email address hidden> Thu, 10 May 2007 22:20:23 +1000
-
net-snmp (5.2.3-4ubuntu1) feisty; urgency=low
* Merge from debian unstable, remaining changes:
- remove stop links from rc0 and rc6
net-snmp (5.2.3-4) unstable; urgency=low
[ Jochen Friedrich ]
* Don't fail postrm on non-existant deluser (Closes: #398540)
* Add LSB section to startup file.
* Add Thomas Anders as co-Maintainer.
[ Thomas Anders ]
* Add missing copyrights to copyright file.
* Fix spelling errors and wrong path names in documentation.
net-snmp (5.2.3-3) unstable; urgency=low
* Apply patch from Dann Frazier (<email address hidden>) to add
-DNETSNMP_USE_INLINE (Closes: #377723)
* Add German debconf translation (Closes: #397823)
Thanks to Helge Kreutzmann <email address hidden>.
* Add Italian debconf translation (Closes: #398047)
Thanks to Luca Monducci <email address hidden>.
* Despam syslog (Closes: #396929)
net-snmp (5.2.3-2) unstable; urgency=high
* Revert 1.13.2.2 of ifTable_data_access as this causes a crash on
disappearing interfaces (Closes: #387174, #388190)
* Create .index file on libsnmp-base postinstall to prevent write
access on /usr filesystem during runtime (Closes: #389434)
* Urgency high due to RC bug fixes.
net-snmp (5.2.3-1) unstable; urgency=low
* New upstream version in 5.2.X branch (bugfix release)
o snmpd:
- Build fixes, e.g. for latest gcc
- Return no access instead of not writable on VACM denials
- Prevent endless loop in table_iterator
- extend: recognize failed/duplicate registrations
- Various robustness fixes for some mib implementations
- A few memory leak fixes
- Other misc bug fixes.
o snmptrapd:
- Fixed support for snmptrapd embedded perl on x86_64
- Other misc bug fixes.
o library:
- Make SNMPv3 traps work again (user creation; official patch 1374087)
- Fixes typing issues problem with MIB definitions that use
intermediate sub-identifiers
- Fix snmptranslate -Td output for UNITS
- Fix IP address encoding issues on 64Bit architectures
o snmpusm:
- Usage of localized keys instead of passphrases with -Ck
- New option -CE to specify usmUserEngineID (necessary to manage
snmptrapd's usmUserTable)
o snmpnetstat:
- Skip missing entries
- Don't choke on SNMPv2 PDU exceptions
o snmpstatus:
- Don't choke on SNMPv2 PDU exceptions
o mib2c:
- Misc bug fixes in some of the output styles
o Perl:
- Check the perl module version number against the net-snmp version
- Fixes for 64bit issues
- Misc other fixes
o MIBs:
- Updated DISMAN-NSLOOKUP-MIB.txt, DISMAN-PING-MIB.txt,
DISMAN-TRACEROUTE-MIB.txt, and the IANAifType-MIB
o Linux specific:
- Fix compilation with ethtool
- Fix Linux CPU counters on SMP machines
o Misc:
- Comprehensive review of in-line documentation
- Make install: DESTDIR support
- Many other miscellaneous bug fixes
(Closes: #384367)
* Delete patches applied upstream.
o 5_rh9-522
o 16_man_pages_section
o 17_man_pages_typo
o 22_net-snmp-5.2.x-sysObjectID
* Add patches
o 27_gettable
* Add customisation notice to README.Debian (Closes: #381451)
-- Scott James Remnant <email address hidden> Tue, 28 Nov 2006 12:29:34 +0000