Accepted gnutls13 1.4.4-3 (source)

Ubuntu Installer archive at ubuntu.com
Tue Nov 14 23:49:52 GMT 2006


Accepted:
 OK: gnutls13_1.4.4.orig.tar.gz
 OK: gnutls13_1.4.4-3.diff.gz
 OK: gnutls13_1.4.4-3.dsc
     -> Component: main Section: devel

Origin: Debian/unstable
Format: 1.7
Date: Tue,  14 Nov 2006 23:10:12 +0000
Source: gnutls13
Binary: libgnutls-dev, gnutls-bin, libgnutls13, gnutls-doc, libgnutls13-dbg
Architecture: source
Version: 1.4.4-3
Distribution: feisty
Urgency: high
Maintainer: Debian GnuTLS Maintainers <pkg-gnutls-maint at lists.alioth.debian.org>
Changed-By: Martin Pitt <martin.pitt at ubuntu.com>
Closes: 290194 386680 386725
Changes: 
 gnutls13 (1.4.4-3) unstable; urgency=low
 .
   * Pulled /patches/18_negotiate_cypher.diff from 1.4.5:
        When a GnuTLS server receive a SSLv2 Client Hello for an unknown TLS
        version, try to negotiate the highest version support by the GnuTLS
        server, instead of the lowest.
 .
 gnutls13 (1.4.4-2) unstable; urgency=low
 .
   [ Andreas Metzler ]
   * Add a watchfile.
   * Fix debian/copyright.
     - Do not use "copyright" as title of a paragraph listing licenses.
       (Closes: #290194)
     - Add a copy of the FDL 1.2 to debian/copyright.
 .
 gnutls13 (1.4.4-1) unstable; urgency=high
 .
   [ Andreas Metzler ]
   * New upstream version 1.4.4
     - Updated fix for GNUTLS-SA-2006-4, that is not too strict and doesn't
       crash mutt. (closes: #386725)
       GNUTLS-SA-2006-4 is CVE-2006-4790.
 .
 gnutls13 (1.4.3-2) unstable; urgency=low
 .
   * the lesser of two weevils release.
   [ Andreas Metzler ]
   * Revert patch for GNUTLS-SA-2006-4 as it caused segmentation faults in
     various programs, including mutt. (closes: #386680)
 .
 gnutls13 (1.4.3-1) unstable; urgency=high
 .
   [ Andreas Metzler ]
   * New upstream version 1.4.3.
     - Fix PKCS#1 verification to avoid a variant of Bleichenbacher's Crypto 06
       rump session attack. GNUTLS-SA-2006-4
     - Fix PKCS#1 decryption to avoid Bleichenbacher's Crypto 98 attack..
       GNUTLS-SA-2006-3
     - Fix crash in gnutls_x509_crt_sign2 if passed a NULL issuer_key.
 .
 gnutls13 (1.4.2-1) unstable; urgency=medium
 .
   [ Andreas Metzler ]
   * New upstream bugfix release.
     - Fixes a crash in the certificate verification logic.
 .
 gnutls13 (1.4.1-1) unstable; urgency=low
 .
   [ James Westby ]
   * New upstream release.
   * Remove the following patches as they are now included upstream:
     - 10_certtoolmanpage.diff
     - 15_fixcompilewarning.diff
     - 30_man_hyphen_*.patch
   * Link the API reference in /usr/share/gtk-doc/html as gnutls rather than
     gnutls-api so that devhelp can find it.
Files: 
 c06ada020e2b69caa51833175d59f8b2 4752009 devel optional gnutls13_1.4.4.orig.tar.gz
 1b585161408aa6c34682e9f215aba1b8 17989 devel optional gnutls13_1.4.4-3.diff.gz
 c18545d4d949babcbb40be6dc3a3bc7a 947 devel optional gnutls13_1.4.4-3.dsc





More information about the feisty-changes mailing list