[ubuntu/maverick] openssl 0.9.8o-1ubuntu1 (Accepted)

Marc Deslauriers marc.deslauriers at ubuntu.com
Mon Jun 14 18:00:21 BST 2010


openssl (0.9.8o-1ubuntu1) maverick; urgency=low

  * Merge from debian unstable, remaining changes (LP: #581167):
    - debian/patches/Bsymbolic-functions.patch: Link using
      -Bsymbolic-functions
    - Ship documentation in openssl-doc, suggested by the package.
    - Use a different priority for libssl0.9.8/restart-services
      depending on whether a desktop, or server dist-upgrade is being
      performed.
    - Display a system restart required notification bubble on libssl0.9.8
      upgrade.
    - Replace duplicate files in the doc directory with symlinks.
    - Move runtime libraries to /lib, for the benefit of wpasupplicant
    - Use host compiler when cross-building (patch from Neil Williams in
      Debian #465248).
    - Don't run 'make test' when cross-building.
    - Create libssl0.9.8-udeb, for the benefit of wget-udeb (LP: #503339).
    - debian/patches/aesni.patch: Backport Intel AES-NI support from
      http://rt.openssl.org/Ticket/Display.html?id=2067 (LP: #485518).
    - debian/patches/perlpath-quilt.patch: Don't change perl #! paths
      under .pc.
  * Dropped patches, now upstream:
    - debian/patches/CVE-2009-3245.patch
    - debian/patches/CVE-2010-0740.patch
    - debian/patches/dtls-compatibility.patch
    - debian/patches/CVE-2009-4355.patch
  * Dropped "Add support for lpia".
  * Dropped "Disable SSLv2 during compile" as this had never actually
    disabled SSLv2.
  * Don't disable CVE-2009-3555.patch for Maverick.

openssl (0.9.8o-1) unstable; urgency=low

  * New upstream version
    - Add SHA2 algorithms to SSL_library_init().
    - aes-x86_64.pl is now PIC, update pic.patch.
  * Add sparc64 support (Closes: #560240)

openssl (0.9.8n-1) unstable; urgency=high

  * New upstream version.
    - Fixes CVE-2010-0740.
    - Drop cfb.patch, applied upstream.

openssl (0.9.8m-2) unstable; urgency=low

  * Revert CFB block length change preventing reading older files.
    (Closes: #571810, #571940)

openssl (0.9.8m-1) unstable; urgency=low

  * New upstream version
    - Implements RFC5746, reenables renegotiation but requires the extension.
    - Fixes CVE-2009-3245
    - Drop patches CVE-2009-4355.patch, CVE-2009-1378.patch,
      CVE-2009-1377.patch, CVE-2009-1379.patch, CVE-2009-3555.patch,
      CVE-2009-2409.patch, CVE-2009-1387.patch, tls_ext_v3.patch,
      no_check_self_signed.patch: applied upstream
    - pk7_mime_free.patch removed, code rewritten
    - ca.diff partially applied upstream
    - engines-path.patch adjusted, upstream made some minor changes to the
      build system.
    - some flags changed values, bump shlibs.
  * Switch to 3.0 (quilt) source package.
  * Make sure the package is properly cleaned.
  * Add ${misc:Depends} to the Depends on all packages.
  * Fix spelling of extension in the changelog file.

openssl (0.9.8k-8) unstable; urgency=high

  * Clean up zlib state so that it will be reinitialized on next use and
    not cause a memory leak.  (CVE-2009-4355, CVE-2008-1678)

Date: Mon, 14 Jun 2010 09:08:29 -0400
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Core Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Signed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/maverick/+source/openssl/0.9.8o-1ubuntu1
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.8
Date: Mon, 14 Jun 2010 09:08:29 -0400
Source: openssl
Binary: openssl openssl-doc libssl0.9.8 libcrypto0.9.8-udeb libssl0.9.8-udeb libssl-dev libssl0.9.8-dbg
Architecture: source
Version: 0.9.8o-1ubuntu1
Distribution: maverick
Urgency: high
Maintainer: Ubuntu Core Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description: 
 libcrypto0.9.8-udeb - crypto shared library - udeb (udeb)
 libssl-dev - SSL development libraries, header files and documentation
 libssl0.9.8 - SSL shared libraries
 libssl0.9.8-dbg - Symbol tables for libssl and libcrypto
 libssl0.9.8-udeb - ssl shared library - udeb (udeb)
 openssl    - Secure Socket Layer (SSL) binary and related cryptographic tools
 openssl-doc - Secure Socket Layer (SSL) documentation
Closes: 560240 571810 571940
Launchpad-Bugs-Fixed: 485518 503339 581167
Changes: 
 openssl (0.9.8o-1ubuntu1) maverick; urgency=low
 .
   * Merge from debian unstable, remaining changes (LP: #581167):
     - debian/patches/Bsymbolic-functions.patch: Link using
       -Bsymbolic-functions
     - Ship documentation in openssl-doc, suggested by the package.
     - Use a different priority for libssl0.9.8/restart-services
       depending on whether a desktop, or server dist-upgrade is being
       performed.
     - Display a system restart required notification bubble on libssl0.9.8
       upgrade.
     - Replace duplicate files in the doc directory with symlinks.
     - Move runtime libraries to /lib, for the benefit of wpasupplicant
     - Use host compiler when cross-building (patch from Neil Williams in
       Debian #465248).
     - Don't run 'make test' when cross-building.
     - Create libssl0.9.8-udeb, for the benefit of wget-udeb (LP: #503339).
     - debian/patches/aesni.patch: Backport Intel AES-NI support from
       http://rt.openssl.org/Ticket/Display.html?id=2067 (LP: #485518).
     - debian/patches/perlpath-quilt.patch: Don't change perl #! paths
       under .pc.
   * Dropped patches, now upstream:
     - debian/patches/CVE-2009-3245.patch
     - debian/patches/CVE-2010-0740.patch
     - debian/patches/dtls-compatibility.patch
     - debian/patches/CVE-2009-4355.patch
   * Dropped "Add support for lpia".
   * Dropped "Disable SSLv2 during compile" as this had never actually
     disabled SSLv2.
   * Don't disable CVE-2009-3555.patch for Maverick.
 .
 openssl (0.9.8o-1) unstable; urgency=low
 .
   * New upstream version
     - Add SHA2 algorithms to SSL_library_init().
     - aes-x86_64.pl is now PIC, update pic.patch.
   * Add sparc64 support (Closes: #560240)
 .
 openssl (0.9.8n-1) unstable; urgency=high
 .
   * New upstream version.
     - Fixes CVE-2010-0740.
     - Drop cfb.patch, applied upstream.
 .
 openssl (0.9.8m-2) unstable; urgency=low
 .
   * Revert CFB block length change preventing reading older files.
     (Closes: #571810, #571940)
 .
 openssl (0.9.8m-1) unstable; urgency=low
 .
   * New upstream version
     - Implements RFC5746, reenables renegotiation but requires the extension.
     - Fixes CVE-2009-3245
     - Drop patches CVE-2009-4355.patch, CVE-2009-1378.patch,
       CVE-2009-1377.patch, CVE-2009-1379.patch, CVE-2009-3555.patch,
       CVE-2009-2409.patch, CVE-2009-1387.patch, tls_ext_v3.patch,
       no_check_self_signed.patch: applied upstream
     - pk7_mime_free.patch removed, code rewritten
     - ca.diff partially applied upstream
     - engines-path.patch adjusted, upstream made some minor changes to the
       build system.
     - some flags changed values, bump shlibs.
   * Switch to 3.0 (quilt) source package.
   * Make sure the package is properly cleaned.
   * Add ${misc:Depends} to the Depends on all packages.
   * Fix spelling of extension in the changelog file.
 .
 openssl (0.9.8k-8) unstable; urgency=high
 .
   * Clean up zlib state so that it will be reinitialized on next use and
     not cause a memory leak.  (CVE-2009-4355, CVE-2008-1678)
Checksums-Sha1: 
 64720ecfccc7943df3e88a22c77428367eb9bb8f 1470 openssl_0.9.8o-1ubuntu1.dsc
 80c73afc7dca790cd26936cb392a4dfd14d4e4d7 3772542 openssl_0.9.8o.orig.tar.gz
 8c77b1bbede40aa02de59debb547b83379902ed8 86088 openssl_0.9.8o-1ubuntu1.debian.tar.gz
Checksums-Sha256: 
 b49e5ea5cd5ffd9212d28e57921eee09cb2054274bef3c46a00c017e94f4eae1 1470 openssl_0.9.8o-1ubuntu1.dsc
 befada1ac3819b1d317df8197b5e82ec768b39d250fcbef81e2b1cb7f165d448 3772542 openssl_0.9.8o.orig.tar.gz
 a7f7c8b4fcba1286b3b99eef4862e8e0c2122eb06a5fa267bd621919ab855c69 86088 openssl_0.9.8o-1ubuntu1.debian.tar.gz
Files: 
 ef8445195ffa1dafda855abb6e5966a4 1470 utils optional openssl_0.9.8o-1ubuntu1.dsc
 63ddc5116488985e820075e65fbe6aa4 3772542 utils optional openssl_0.9.8o.orig.tar.gz
 72875296bd9330a294cffcec43f87e98 86088 utils optional openssl_0.9.8o-1ubuntu1.debian.tar.gz
Original-Maintainer: Debian OpenSSL Team <pkg-openssl-devel at lists.alioth.debian.org>

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.10 (GNU/Linux)

iEYEARECAAYFAkwWXxQACgkQLMAs/0C4zNqPawCbBtcZFAhH5v1bNL7S5SgJTFk9
EUwAnicuT2O0+SoGt9iBV+QPXgetUvmN
=Y7s4
-----END PGP SIGNATURE-----


More information about the Maverick-changes mailing list