postsrsd (1.5-2+deb10u2) buster; urgency=medium * Fix CVE-2021-35525: potential DoS when Postfix sends certain long data fields such as multiple concatenated email addresses. Fix backported from upstream commit 077be98d8c8. (Closes: #990439) -- Oxan van Leeuwen Wed, 14 Jul 2021 21:37:55 +0200 postsrsd (1.5-2+deb10u1) buster; urgency=medium * CVE-2020-35573: Ensure timestamp tags aren't too long before trying to decode them, to protect against a potential denial-of-service attack (backported from upstream commit 4733fb1, Closes: #977782). -- Oxan van Leeuwen Sun, 31 Jan 2021 12:57:24 +0100 postsrsd (1.5-2) unstable; urgency=medium * Increase hashlength for unit tests (cherry-picked from upstream db9ed58) * Fix SHA-1 implementation on big endian architectures (cherry-picked from upstream 0b8f8be, Closes: #921189) -- Oxan van Leeuwen Sat, 23 Feb 2019 14:27:44 +0100 postsrsd (1.5-1) unstable; urgency=medium [ Tomasz Buchert ] * Update Standards-Version to 4.3.0 * Update to debhelper compat level 12 * Update Vcs-* fields to salsa [ Oxan van Leeuwen ] * New upstream release * Add 'm' permission to apparmor profile (Closes: #915118) -- Oxan van Leeuwen Sat, 19 Jan 2019 01:53:50 +0100 postsrsd (1.4-1) unstable; urgency=low [ Christian Perrier ] * Debconf templates and debian/control reviewed by the debian-l10n- english team as part of the Smith review project. Closes: #797861 [ Debconf translation updates ] * Czech (Michal Simunek). Closes: #801118 * German (Chris Leick). Closes: #801149 * French (Julien Patriarca). Closes: #801179 * Brazilian Portuguese (Adriano Rafael Gomes). Closes: #801188 * Russian (Yuri Kozlov). Closes: #801619 * Spanish (Camaleón). Closes: #801685 * Dutch (Frans Spiesschaert). Closes: #801705 * Portuguese (Américo Monteiro). Closes: #801824 * Polish (Łukasz Dulny). Closes: #801620 * Italian (Beatrice Torracca). Closes: #801874 * Danish (Joe Hansen). Closes: #801890 [ Oxan van Leeuwen ] * New upstream release (Closes: #849307) * Run under postsrsd user by default instead of nobody (Closes: #801916) * Enable PIE and bindnow hardening options * Don't overwrite SRS_DOMAIN setting when manually changed by user [ Tomasz Buchert ] * Bumped Standards-Version to 3.9.8 * Update to debhelper compat level 10 and drop dh-systemd dependency * Use version 4 watch file -- Oxan van Leeuwen Thu, 19 Jan 2017 15:07:09 +0100 postsrsd (1.2-1) unstable; urgency=medium * Initial release (Closes: #757720) -- Oxan van Leeuwen Fri, 26 Dec 2014 17:35:38 +0100