[ubuntu/jammy-proposed] squid 5.2-1ubuntu1 (Accepted)
Sergio Durigan Junior
sergio.durigan at canonical.com
Fri Nov 5 19:38:12 UTC 2021
squid (5.2-1ubuntu1) jammy; urgency=medium
* Merge with Debian unstable (LP: #1946903). Remaining changes:
- d/usr.sbin.squid: Add sections for squid-deb-proxy and
squidguard
- d/p/90-cf.data.ubuntu.patch: Add refresh patterns for deb
packaging
- Use snakeoil certificates:
+ d/control: add ssl-cert to dependencies
+ d/p/99-ubuntu-ssl-cert-snakeoil.patch: add a note about ssl
to the default config file
- d/rules, d/NEWS: drop the NIS basic auth helper (LP #1895694)
- Fix FTBFS with GCC 11 (LP #1939352)
+ d/p/expand-max-pkt-sz-accomodate-icmphdr.patch: Expand
MAX_PKT{4,6}_SZ to accomodate for icmp{,6_}hdr.
+ d/p/workaround-gcc11-wstringop-overread-bug.patch: Workaround
GCC 11 -Wstringop-overread bug.
* Dropped changes:
- d/p/0008-Fix-free-nonheap-object-warning-error-on-snmp_core.c.patch:
Fix call to free on nonheap-object in snmpCreateOidFromStr
[ Incorporated by upstream. ]
- Fix failure to build on RISC-V (LP #1934891)
[ Incorporated by upstream. ]
- SECURITY UPDATE: information disclosure via OOB read in WCCP protocol
+ debian/patches/CVE-2021-28116.patch: validate packets better in
src/wccp2.cc.
+ CVE-2021-28116
[ Incorporated by upstream. ]
- Fix FTBFS with GCC 11 (LP #1939352)
+ d/p/replace-cbdata-offset-hack-with-offsetof.patch: Replace
cbdata::Offset hack with offsetof().
+ d/p/add-missing-limits-include-connmark.patch: Add missing
<limits> include to src/acl/ConnMark.cc.
[ Incorporated by upstream. This is a partial drop; the other
two patches that compose this fix are still present in this
release. ]
Date: Mon, 01 Nov 2021 18:19:59 -0400
Changed-By: Sergio Durigan Junior <sergio.durigan at canonical.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/+source/squid/5.2-1ubuntu1
-------------- next part --------------
Format: 1.8
Date: Mon, 01 Nov 2021 18:19:59 -0400
Source: squid
Architecture: source
Version: 5.2-1ubuntu1
Distribution: jammy
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Sergio Durigan Junior <sergio.durigan at canonical.com>
Launchpad-Bugs-Fixed: 1946903
Changes:
squid (5.2-1ubuntu1) jammy; urgency=medium
.
* Merge with Debian unstable (LP: #1946903). Remaining changes:
- d/usr.sbin.squid: Add sections for squid-deb-proxy and
squidguard
- d/p/90-cf.data.ubuntu.patch: Add refresh patterns for deb
packaging
- Use snakeoil certificates:
+ d/control: add ssl-cert to dependencies
+ d/p/99-ubuntu-ssl-cert-snakeoil.patch: add a note about ssl
to the default config file
- d/rules, d/NEWS: drop the NIS basic auth helper (LP #1895694)
- Fix FTBFS with GCC 11 (LP #1939352)
+ d/p/expand-max-pkt-sz-accomodate-icmphdr.patch: Expand
MAX_PKT{4,6}_SZ to accomodate for icmp{,6_}hdr.
+ d/p/workaround-gcc11-wstringop-overread-bug.patch: Workaround
GCC 11 -Wstringop-overread bug.
* Dropped changes:
- d/p/0008-Fix-free-nonheap-object-warning-error-on-snmp_core.c.patch:
Fix call to free on nonheap-object in snmpCreateOidFromStr
[ Incorporated by upstream. ]
- Fix failure to build on RISC-V (LP #1934891)
[ Incorporated by upstream. ]
- SECURITY UPDATE: information disclosure via OOB read in WCCP protocol
+ debian/patches/CVE-2021-28116.patch: validate packets better in
src/wccp2.cc.
+ CVE-2021-28116
[ Incorporated by upstream. ]
- Fix FTBFS with GCC 11 (LP #1939352)
+ d/p/replace-cbdata-offset-hack-with-offsetof.patch: Replace
cbdata::Offset hack with offsetof().
+ d/p/add-missing-limits-include-connmark.patch: Add missing
<limits> include to src/acl/ConnMark.cc.
[ Incorporated by upstream. This is a partial drop; the other
two patches that compose this fix are still present in this
release. ]
Checksums-Sha1:
329ce09b09380215142a822519a8769ffa5ffb60 3050 squid_5.2-1ubuntu1.dsc
0568a55c8bf20fbcbfadf126347f3e790945e5d2 2553872 squid_5.2.orig.tar.xz
f3b404ae83fe38734a7324c72d00314316c1c4a3 1193 squid_5.2.orig.tar.xz.asc
60bb7621a73b72e0c525ae068c7348a2c41b3fd0 49628 squid_5.2-1ubuntu1.debian.tar.xz
29012bc4c4b9c191af3f4a32f1a090017c9f0d92 7700 squid_5.2-1ubuntu1_source.buildinfo
Checksums-Sha256:
c6a9b6dd900ef94b1f9cf0525cad00baf687aaee9c4fe65eea0b32a5bd72d6f2 3050 squid_5.2-1ubuntu1.dsc
ea921f055c6cc4b3c6542d995f5a7c5980f2f91adaaa10fe8260d0f1527aaf80 2553872 squid_5.2.orig.tar.xz
9d0c80b579061007349dbd622f6be9b625503c648820a3dafaab8a3377cebdfe 1193 squid_5.2.orig.tar.xz.asc
4b9ebd5a513acdd1947f82026d0d21a6a3db0248bb0533369736c51250c520a6 49628 squid_5.2-1ubuntu1.debian.tar.xz
9a5fab128cda4a02024e9ba48846d06023ac92d96cfd1a2af425fa1172949c21 7700 squid_5.2-1ubuntu1_source.buildinfo
Files:
e8033fd2d47d461791e246b5fe11f6b8 3050 web optional squid_5.2-1ubuntu1.dsc
102984f3ea382a1fa5bd917c2ee155ec 2553872 web optional squid_5.2.orig.tar.xz
5e19488a0e4c471ded0cef0650e1900e 1193 web optional squid_5.2.orig.tar.xz.asc
00283aefb37c18f57b44b6449b4e6184 49628 web optional squid_5.2-1ubuntu1.debian.tar.xz
871d04545c5dbdd1a9f90b2ed8c13143 7700 web optional squid_5.2-1ubuntu1_source.buildinfo
Original-Maintainer: Luigi Gangitano <luigi at debian.org>
Vcs-Git: https://git.launchpad.net/~sergiodj/ubuntu/+source/squid
Vcs-Git-Commit: 3f75cec808d545cf8915ce07f6d3141dcc157f17
Vcs-Git-Ref: refs/heads/merge-5.2-1-jammy
More information about the jammy-changes
mailing list