gitolite3 (3.6.11-2) unstable; urgency=medium * Point Vcs-* to salsa -- David Bremner Fri, 25 Jan 2019 08:32:05 -0400 gitolite3 (3.6.11-1) unstable; urgency=medium * Bug fix: "CVE-2018-20683: security issue in optional bundle helper ('rsync' command)", thanks to Salvatore Bonaccorso (Closes: #918849). * Convert to source format 3.0 (quilt). * Bump debhelper compat to 9 -- David Bremner Fri, 25 Jan 2019 08:15:17 -0400 gitolite3 (3.6.9-1) unstable; urgency=high * New upstream version * Bug fix: "CVE-2018-16976: prevent access to repos which are in the process of being migrated", thanks to Salvatore Bonaccorso (Closes: #908699). -- David Bremner Sat, 15 Sep 2018 12:37:48 -0300 gitolite3 (3.6.7-2) unstable; urgency=medium * Bug fix: "[INTL:pt_BR] Brazilian Portuguese debconf templates translation", thanks to Adriano Rafael Gomes (Closes: #811528). -- David Bremner Wed, 05 Jul 2017 22:12:35 -0300 gitolite3 (3.6.7-1) unstable; urgency=medium * New upstream release * update debian/README.Debian, drop bitrotted v2 upgrade instructions. Mention name of default user (gitolite3). * drop postint fix for pre 3.5.1 permissions -- David Bremner Mon, 03 Jul 2017 21:09:50 -0300 gitolite3 (3.6.6-1) unstable; urgency=medium * New upstream release * Bug fix: "uninstallable without . in @INC", explicitely look for './foo'. (Closes: #837036). -- David Bremner Tue, 13 Sep 2016 20:31:39 -0300 gitolite3 (3.6.4-2) unstable; urgency=medium * depend on openssh-client (Closes: #834153). -- David Bremner Sun, 14 Aug 2016 14:09:11 +0900 gitolite3 (3.6.4-1) unstable; urgency=medium * New upstream release * Fix bug in 3.6.3 that allows authorized users to create refs they should not be able to, in certain special configurations of wild repos. See commit be5c2f5752 for more info. -- David Bremner Fri, 04 Dec 2015 21:12:01 -0400 gitolite3 (3.6.3-3) experimental; urgency=medium * Bug fix: "inconsistently set execute bits on the gitolite script files", thanks to Christoph Anton Mitterer (Closes: #779252). * Assert compliance with Debian policy 3.9.6 * Add dependence 'openssh-server |' so there's a real package instead of just a virtual one. -- David Bremner Sun, 28 Jun 2015 10:57:55 +0200 gitolite3 (3.6.3-2) experimental; urgency=medium * Move main config file to /etc * Remove (broken) support for reconfiguration / multiple users. -- David Bremner Sat, 27 Jun 2015 09:44:25 +0200 gitolite3 (3.6.3-1) unstable; urgency=medium * New upstream release (Closes: #773811). * Bug fix: "should Depends: libjson-perl", thanks to Heiko Noordhof (Closes: #780671). * Bug fix: "please add git-daemon-sysvinit as an alternative Suggests", thanks to Christoph Anton Mitterer (Closes: #779263). * Bug fix: "gitolite creates /var/lib/gitolite3/.ssh/authorized_keys with u+x mode", thanks to Christoph Anton Mitterer (Closes: #778725). -- David Bremner Tue, 23 Jun 2015 20:24:57 +0200 gitolite3 (3.6.1-3) unstable; urgency=medium * Bug fix: "please make the build reproducible", thanks to Chris Lamb (Closes: #777060). -- David Bremner Wed, 04 Feb 2015 18:26:53 +0100 gitolite3 (3.6.1-2) unstable; urgency=low [ Rhonda D'Vine ] * The "l10n R us" release: - Updated German translation by myself - Updated Japanese by victory (closes: #719509) - Updated French by Christian Perrier (closes: #719777) - Updated Russian by Yuri Kozlov (closes: #722125) - Updated Portuguese by Américo Monteiro (closes: #729824) - Updated Danish by Joe Hansen (closes: #739792) - New Turkish translation by Mert Dirik (closes: #759876) - Updated Dutch by Frans Spiesschaert (closes: #764599) - Updated Czech by Michal Simunek (closes: #768271) - Updated Swedish by Martin Bagge (closes: #768455) - Updated Italian by Beatrice Torracca (closes: #769447) -- David Bremner Fri, 14 Nov 2014 21:04:22 +0100 gitolite3 (3.6.1-1) unstable; urgency=low * New upstream release (Closes: #755784) -- David Bremner Mon, 06 Oct 2014 12:30:00 +0200 gitolite3 (3.6-1) unstable; urgency=low * New upstream release * Depend on ssh-server instead of openssh-server (Closes: #735176). -- David Bremner Sun, 25 May 2014 20:09:36 -0300 gitolite3 (3.5.3.1-2) unstable; urgency=medium * Bug fix: "broken directory check", thanks to Daniel Baumann, Martin Haaß (Closes: #737823, #734979). -- David Bremner Wed, 26 Mar 2014 11:18:42 -0300 gitolite3 (3.5.3.1-1) unstable; urgency=medium * New upstream release * This release removes world+group read permissions from ~gitolite3/repositories, and world+group read+execute permissions from ~gitolite3/repositories/{gitolite-admin,testing}. This corrects a local information leak present in (at least) version 3.5.2-1 (see CVE-2013-7203) -- David Bremner Sat, 04 Jan 2014 07:30:51 -0400 gitolite3 (3.5.2-1) unstable; urgency=low * New upstream release -- David Bremner Tue, 30 Jul 2013 22:47:45 -0300 gitolite3 (3.5.1+4-1) experimental; urgency=low * New upstream snapshot (commit: 2f48a3e0e169e) (closes: #673867, #673850) * Ask for admin key with priority high (closes: #699490) -- David Bremner Sat, 18 May 2013 17:59:21 -0300 gitolite (2.3-1) unstable; urgency=low * New upstream release (closes: #669633), containing fix for: - forgot authkeys can have blank lines also (closes: #653994) - nitpick on redirection sorting applied (closes: #654022) * Use sensible-editor instead of ${EDITOR:-vi} in gl-setup (closes: #654178) * Add Dutch debconf translation done by Jeroen Schot (closes: #661583) * Bump Standards-Version to 3.9.3. -- Gerfried Fuchs Tue, 24 Apr 2012 18:06:09 +0200 gitolite (2.2-1) unstable; urgency=low * New Upstream version. * Do a chown -R on the tmpdir directory for the admin key (LP: #886524) * Doh, really remove resetting the adminkey from the debconf config file, sorry (closes: #621680) * Install contrib files into examples doc directory (closes: #645668) -- Gerfried Fuchs Mon, 19 Dec 2011 08:57:14 +0100 gitolite (2.0.3-2) unstable; urgency=low * Move the fix permission snippet to the end so that the templates and md5sums control files also get proper permissions. Thanks to Stefano Rivera for notifying me about it. * Updated debian/copyright file. * Add recommended targets build-arch and build-indep to debian/rules. -- Gerfried Fuchs Tue, 27 Sep 2011 11:23:18 +0200 gitolite (2.0.3-1) unstable; urgency=low * New Upstream version, containing fix for setting gitweb/gitdaemon permissions on wildcard repos (closes: #635497) * Bump Standards-Version to 3.9.2. * Reset debconf adminkey to empty after extraction in postinst, not before asking in config so that preseeding works (closes: #626465) * Adjust debconf questions to priority medium to make them more likely to be seen by admins (closes: #610765) * Use hardcoded admin.pub keyname for admin, the filename given might not have .pub extension. * Only initialize when an admin key was given (closes: #610765, #617896) -- Gerfried Fuchs Tue, 06 Sep 2011 13:31:23 +0200 gitolite (2.0-1) unstable; urgency=low * New Upstream version. * Remove alternative on ssh-server, the used SSH_ORIGINAL_COMMAND environment variable is set only by openssh-server. * Change "conf" directory from /etc/gitolite to /usr/share/gitolite/conf, these files aren't meant to get edited directly (closes: #611857) * Also remove them as conffiles. * Remove disable-interactive-mode patch, call gl-setup with -q instead. * Refresh other patches. -- Gerfried Fuchs Thu, 24 Mar 2011 00:11:38 +0100 gitolite (1.5.7-2) unstable; urgency=high * cherry-pick 4ce00a commit to fix security issue related to ACDs. -- Gerfried Fuchs Sun, 27 Feb 2011 19:39:15 +0100 gitolite (1.5.7-1) unstable; urgency=low * New Upstream version. * Bump Standards-Version to 3.9.1. * Refresh fix-.ssh-permissions patch. * Rewrite debian/copyright in DEP5 format. * Fix debian/watch to download tarball instead of zipball. * New patch disable-interactive-mode which disables interactive mode in gl-setup script on new install. -- Gerfried Fuchs Sat, 15 Jan 2011 00:53:50 +0100 gitolite (1.5.4-2) unstable; urgency=low * Re-add -p to mkdir for .ssh dir (LP: #634718) * New/updated debconf translations: - Portuguese by Américo Monteiro, sorry for taking the wrong file in the former upload (closes: #595312) - Japanese by Hideki Yamane (closes: #595457) - Vietnamese by Clytie Siddall (closes: #598592) -- Gerfried Fuchs Tue, 05 Oct 2010 22:11:58 +0200 gitolite (1.5.4-1) unstable; urgency=low * New Upstream version. * Apply patches from l10n-english team to improve the package description and debconf questions. Thanks! (closes: #588870) * Added/updated debconf translation: - Spanish by Omar Campagne (closes: #587247) - French by Thomas Blein (closes: #587556, #590850, #594309) - Portuguese by Américo Monteiro (closes: #587462) - Swedish by Martin Bagge (closes: #587537, #589271) - German by myself - Russian by Yuri Kozlov (closes: #589249) - Czech by Michal Šimůnek (closes: #589277) - Slovak by Slavko (closes: #593058) - Danish by Joe Hansen (closes: #593272) - Italian by Vincenzo Campanella (closes: #593669) * Fix a final minor issue in the debconf template that could be misunderstood. * Change packaging licensing to WTFPLv2. -- Gerfried Fuchs Mon, 30 Aug 2010 21:01:46 +0200 gitolite (1.5.3-1) unstable; urgency=low [ Gerfried Fuchs ] * New Upstream release. * Added debconf translations: - French by Thomas Blein (closes: #580022) - Swedish by Martin Bagge (closes: #580144) - Portuguese by Américo Monteiro (closes: #580442) * Added Vcs-* control fields. * Don't chown /etc/gitolite/* anymore, it's not needed. * Test for $GITDIR/.gitolite.rc instead of only $GITDIR for creation check (closes: #582200) * Enhance debian/templates text. [ Teemu Matilainen ] * debian/control: Prefer new git package in Depends * debian/rule: Generate and install the VERSION file (closes: #582201) * debian/gl-setup: Use exec in gl-setup * debian/config, debian/templates: Default to empty key * debian/watch: Mangle Github urls to also download the tarball -- Gerfried Fuchs Thu, 24 Jun 2010 21:14:04 +0200 gitolite (1.4.2-1) unstable; urgency=low * New Upstream release. * Add patch fix-.ssh-permissions to set tight permissions on created .ssh directory. -- Gerfried Fuchs Thu, 29 Apr 2010 19:35:02 +0200 gitolite (1.3-2) unstable; urgency=low * Create the user with --shell /bin/bash instead of /bin/false to make the package actually work. * Install debian/gl-setup as wrapper script. * Remove awkward hack for gl-setup calling in postinst, fixed because of above two changes. * Add German debconf translation, replaced some placeholders in the template. -- Gerfried Fuchs Fri, 09 Apr 2010 18:00:07 +0200 gitolite (1.3-1) unstable; urgency=low * Initial release (closes: #550817) -- Gerfried Fuchs Thu, 08 Apr 2010 23:56:44 +0200