Sync openswan 1:2.6.37-1 (universe) from Debian testing (main)

Bug #914015 reported by Jean-Louis Dupond
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
openswan (Ubuntu)
Fix Released
Wishlist
Unassigned

Bug Description

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

 affects ubuntu/openswan
 status new
 importance wishlist
 subscribe ubuntu-sponsors
 done

Please sync openswan 1:2.6.37-1 (universe) from Debian testing (main)

Explanation of the Ubuntu delta and why it can be dropped:
  * Remove unused variables that caused GCC errors with
    -Werror=unused-but-set-variable.
  * Drop libopensc2-dev from Build-Depends; that library is now private to
    opensc, and no longer appears to be used by openswan in any case.

Package build fine, the unused variables are removed in new upstream version.
libopensc2-dev is now also dropped in debian:
  * Removed obsolete build depedency on libopensc2-dev (code already removed by
      upstream).
          Closes: #632449: openswan: obsolete build-dependency: libopensc2-dev

Changelog entries since current precise version 1:2.6.28+dfsg-5ubuntu2:

openswan (1:2.6.37-1) unstable; urgency=HIGH

  [Harald Jenny]
  * New upstream release.
    Fixes pluto crypto helper handler vulnerability (CVE-2011-4073).
    Closes: #650674: [CVE-2011-4073] Openswan crypto helper crasher

 -- Harald Jenny <email address hidden> Mon, 5 Dec 2011 09:05:27 +0100

openswan (1:2.6.36-1) UNRELEASED; urgency=medium

  [Harald Jenny]
  * New upstream release.
  * Adjusted one of the manpage patches for line break problems.
  * Removed pluto Makefile patch by Jari Aalto (fixed upstream).
  * Incorporated translation updates.
    Closes: #625277: openswan: [INTL:ja] Update po-debconf template translation
                     (ja.po)
    Closes: #633831: openswan: [INTL:nl] Dutch translation of debconf templates
  * Removed obsolete build depedency on libopensc2-dev (code already removed by
    upstream).
    Closes: #632449: openswan: obsolete build-dependency: libopensc2-dev

 -- Harald Jenny <email address hidden> Sun, 16 Oct 2011 22:10:30 +0200

openswan (1:2.6.35-1) UNRELEASED; urgency=medium

  [Harald Jenny]
  * New upstream release.
    Closes: #639299: openswan: IP compression doesn't work
  * Adjusted one of the manpage patches for line break problems.
  * Removed some old documentation handling code from debian/rules.
  * Modified openswan-doc to cope with changes in upstream documentation
    directory structure and file list.
  * Bumped Standards for all packages to 3.9.2 (no changes needed).
  * Added build-arch and build-indep targets to please lintian.

 -- Harald Jenny <email address hidden> Sun, 21 Aug 2011 22:07:29 +0200

openswan (1:2.6.34-1) UNRELEASED; urgency=medium

  [Harald Jenny]
  * New upstream release.
    Closes: #520671: openswan: Unable to specify a specific MTU on a vpn tunnel
    Closes: #626790: openswan-modules-dkms: Kernel modules doesn't compile

 -- Harald Jenny <email address hidden> Wed, 8 Jun 2011 22:58:41 +0200

openswan (1:2.6.33-1) UNRELEASED; urgency=low

  [Harald Jenny]
  * New upstream release.
    Closes: #595809: openswan: Manpage error ipsec_rsasigkey(8)
    Closes: #623985: 2.6.33 version Bump Request
  * Dropped +dfsg from Debian version as upstream has removed some old unfree
    documentation allowing unmodified usage of their tarball.
  * Removed previously introduced exit code patch.

 -- Harald Jenny <email address hidden> Tue, 1 Mar 2011 17:50:11 +0100

openswan (1:2.6.32+dfsg-1~experimental+1) UNRELEASED; urgency=low

  [Harald Jenny]
  * New upstream release.
  * Removed patch for bad NAME section and multibyte character issues by
    Jari Aalto (fixed upstream).
  * Removed patch to correct manpage section mismatch (included upstream).
  * Re-enabled, renamed and rewrote init script patch by Jari Aalto to set
    correct start runlevels for openswan.
  * Added patch from upstream git to use proper exit code in init script
    when running under Debian.

 -- Harald Jenny <email address hidden> Wed, 22 Dec 2010 21:04:10 +0100

openswan (1:2.6.31+dfsg-1~experimental+1) UNRELEASED; urgency=low

  [Harald Jenny]
  * New upstream release.
    Closes: #612977: Warning: ignored obsolete keyword (null)
  * Removed previously cherry-picked regression fix.
  * Removed patch to fix duplicate init script installation (upstream
    implemented a different solution).
  * Removed some manpage fixes for spelling errors and utf characters by
    Jari Aalto (included upstream).
  * Renamed and modified manpage patch for bad NAME section and multibyte
    character issues by Jari Aalto.
  * Re-enabled, renamed and modified manpage fixes for line break problems
    by Jari Aalto.
  * Removed lintian override for debug package linking to openswan docs.
  * Added patch to correct manpage section mismatch.
  * Re-added cleaning of debconf DB to postrm (Thanks to Simon Deziel for
    pointing me to his fix).

 -- Harald Jenny <email address hidden> Tue, 2 Nov 2010 17:34:09 +0100

openswan (1:2.6.29+dfsg-1~experimental+1) UNRELEASED; urgency=low

  [Harald Jenny]
  * New upstream release.
    Fixes XAUTH Cisco handling code (CVE-2010-3302, CVE-2010-3308).
  * Removed 2.6.35 git patches as they are included in new upstream version.
  * Added patch to fix duplicate init script installation (Reincarnation of
    #532348: openswan: installs dupliate init script /etc/init.d/setup).
  * Modified lintian override for long but unsplittable manpage line again.
  * Integrated upstream patch fixing regression introduced by security fixes.
  * Created patch to allow line break in manpage and removed corresponding
    lintian override.
  * Added ${misc:Depends} to doc package and removed override.
  * Changed Vcs-Fields as Debian project switched from svn to git.

 -- Harald Jenny <email address hidden> Tue, 28 Sep 2010 10:56:41 +0200

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)

iQEcBAEBAgAGBQJPC3FgAAoJEEPCjJYrE8cuGckH/RLMu9oUB1Boyt6AwGTj9fRf
edV69h3jeIE1CjMY+ipjoLgOay9JPvt70nRyYR4H0gmz/BgBkiGxzejToaTsQMIX
1Hfrw7UUXtuAeg2BkpaWiiZZ4+ikppHhltS10sgxiTeUOWoVeAcBjmf60SPt7QvH
WLfo0gp2B7YZ55lbKYxFmvKlWuMFiGOgeXbPdH9pr9wblIq5tGa8O3ZLihO1ci38
NMqiv73pq5NBlK6TIYda8zjsYWubxXHRKXZ9VTqgI+oNru9F8khpAsQ+Gu8pjhly
GqtoJfSuYG7SXDhwGAkSh8VKO3HVuTDeIsntkQ7QbvdyXvqxz4eBpJBkwPdn/vY=
=ruxY
-----END PGP SIGNATURE-----

CVE References

Revision history for this message
Andrew Starr-Bochicchio (andrewsomething) wrote :
Download full text (4.8 KiB)

This bug was fixed in the package openswan - 1:2.6.37-1
Sponsored for Jean-Louis Dupond (dupondje)

---------------
openswan (1:2.6.37-1) unstable; urgency=HIGH

  [Harald Jenny]
  * New upstream release.
    Fixes pluto crypto helper handler vulnerability (CVE-2011-4073).
    Closes: #650674: [CVE-2011-4073] Openswan crypto helper crasher

 -- Harald Jenny <email address hidden> Mon, 5 Dec 2011 09:05:27 +0100

openswan (1:2.6.36-1) UNRELEASED; urgency=medium

  [Harald Jenny]
  * New upstream release.
  * Adjusted one of the manpage patches for line break problems.
  * Removed pluto Makefile patch by Jari Aalto (fixed upstream).
  * Incorporated translation updates.
    Closes: #625277: openswan: [INTL:ja] Update po-debconf template translation
                     (ja.po)
    Closes: #633831: openswan: [INTL:nl] Dutch translation of debconf templates
  * Removed obsolete build depedency on libopensc2-dev (code already removed by
    upstream).
    Closes: #632449: openswan: obsolete build-dependency: libopensc2-dev

 -- Harald Jenny <email address hidden> Sun, 16 Oct 2011 22:10:30 +0200

openswan (1:2.6.35-1) UNRELEASED; urgency=medium

  [Harald Jenny]
  * New upstream release.
    Closes: #639299: openswan: IP compression doesn't work
  * Adjusted one of the manpage patches for line break problems.
  * Removed some old documentation handling code from debian/rules.
  * Modified openswan-doc to cope with changes in upstream documentation
    directory structure and file list.
  * Bumped Standards for all packages to 3.9.2 (no changes needed).
  * Added build-arch and build-indep targets to please lintian.

 -- Harald Jenny <email address hidden> Sun, 21 Aug 2011 22:07:29 +0200

openswan (1:2.6.34-1) UNRELEASED; urgency=medium

  [Harald Jenny]
  * New upstream release.
    Closes: #520671: openswan: Unable to specify a specific MTU on a vpn tunnel
    Closes: #626790: openswan-modules-dkms: Kernel modules doesn't compile

 -- Harald Jenny <email address hidden> Wed, 8 Jun 2011 22:58:41 +0200

openswan (1:2.6.33-1) UNRELEASED; urgency=low

  [Harald Jenny]
  * New upstream release.
    Closes: #595809: openswan: Manpage error ipsec_rsasigkey(8)
    Closes: #623985: 2.6.33 version Bump Request
  * Dropped +dfsg from Debian version as upstream has removed some old unfree
    documentation allowing unmodified usage of their tarball.
  * Removed previously introduced exit code patch.

 -- Harald Jenny <email address hidden> Tue, 1 Mar 2011 17:50:11 +0100

openswan (1:2.6.32+dfsg-1~experimental+1) UNRELEASED; urgency=low

  [Harald Jenny]
  * New upstream release.
  * Removed patch for bad NAME section and multibyte character issues by
    Jari Aalto (fixed upstream).
  * Removed patch to correct manpage section mismatch (included upstream).
  * Re-enabled, renamed and rewrote init script patch by Jari Aalto to set
    correct start runlevels for openswan.
  * Added patch from upstream git to use proper exit code in init script
    when running under Debian.

 -- Harald Jenny <email address hidden> Wed, 22 Dec 2010 21:04:10 +0100

openswan (1:2.6.31+dfsg-1~experimental+1) UNRELEASED; urgen...

Read more...

Changed in openswan (Ubuntu):
status: New → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.