inspircd (2.0.17-1+deb8u2) jessie-security; urgency=high * m_sasl: don't allow AUTHENTICATE with mechanisms with a space (CVE-2016-7142) -- Guillaume Delacour Tue, 06 Sep 2016 01:58:19 +0200 inspircd (2.0.17-1+deb8u1) jessie-security; urgency=high * Non-maintainer upload by the Wheezy LTS Team. * Reject replies to DNS PTR requests that contain invalid characters (CVE-2015-8702) -- Thorsten Alteholz Tue, 22 Mar 2016 18:03:02 +0100 inspircd (2.0.17-1) unstable; urgency=medium * New upstream release * Refresh debian/patches/03_gnutls_crypt_api_instead_gcrypt.diff and cherry-pick upstream fix to use gnutls_rnd instead of gcry_randomize * Refresh debian/patches/02_disable_rpath_for_extra_modules.diff to only patch m_mysql as upstream use a DISABLE_RPATH environnement variable that disable rpath in all other modules -- Guillaume Delacour Fri, 05 Sep 2014 18:05:19 +0200 inspircd (2.0.16-2) unstable; urgency=medium * To re-enable hardening flags: + Replace DEB_BUILD_HARDENING by DEB_BUILD_MAINT_OPTIONS to enable dpkg-buildflags without pie + debian/patches/01_dpkg-buildflags_support.diff: Patch upstream Makefile template to use CPPFLAGS and custom LDFLAGS, CXXFLAGS; enable PIE on inspircd binary only as libraries already compiled with PIC -- Guillaume Delacour Sun, 20 Jul 2014 23:23:42 +0200 inspircd (2.0.16-1) unstable; urgency=low [ Guillaume Delacour ] * New upstream release (Closes: #724874), enable m_regex_stdlib new module and repack tarball to remove docs/rfc/{rfc1035.txt,rfc1413.txt,rfc1459.txt} as i re-introduce them a few years ago. Upstream removes dir at 7fea7c24c5 * Drop patches accepted upstream: + debian/patches/01_spelling_error.diff + debian/patches/03_CVE-2012-1836.diff (cherry-picked) + debian/patches/04_FTBFS_kfreebsd.diff + debian/patches/05_FTBFS_gcc-4.7.diff * debian/docs: docs/README has moved to README.md * debian/inspircd.examples: examples are now in docs/conf * Bump debhelper compat to 9 * Remove Bradley Smith as uploaders (Closes: #674890) * debian/watch: update based on sepwatch * Add systemd support: + Build-Depends on dh-systemd (>= 1.5) + Add debian/inspircd.service, debian/inspircd.tmpfile to create /run/inspircd directory at boot time + debian/rules: call generic dh with "--with systemd" * debian/control: + Change Vcs-{Svn,Browser}, point to anonscm.debian.org and bump to Standards-Version 3.9.5 (no changes needed) + Drop Build-Depends on hardening-wrapper since dpkg-buildflags now returns hardening build flags by default (already enabled in debian/rules) * debian/patches/02_disable_rpath_for_extra_modules.diff: Refresh according upstream modules changes * debian/copyright: make it machine-readable * debian/rules: compile binary with debuginfo as upstream don't generate it by default; dh_strip overrided to generate a -dbg package [ Andreas Metzler ] * Build with debug symbols and optimization by using "make D=2 all" instead of "make debug"; dh_strip overrided to generate a -dbg package * 05_gnutls_crypt_api_instead_gcrypt.diff Apply/unfuzz upstream's 690c372f6ef246b43b477e3685c8e716431427ad to get rid of the dependency on libgcrypt. * Build against gnutls v3. Closes: #745948 * Show compiler commandline when building. As a nice side effect this actually lets ccache speed up the build. * Drop PIDFile entry from systemd service file, it should not be necessary for the non-forking case. * Mimic init-file trickery in inspircd.tmpfile. Pre-generate both pidfile and logfile with correct user/permissions. The daemon cannot do so, since it is lacking write permissions in /var/run and /var/log. Remove pidfile in postrm purge. -- Guillaume Delacour Wed, 16 Jul 2014 21:49:08 +0200 inspircd (2.0.5-1) unstable; urgency=low * debian/patches/04_FTBFS_kfreebsd.diff: Fix FTBFS on kfreebsd, thanks Christoph Egger (Closes: #668689) * debian/patches/05_FTBFS_gcc-4.7.diff: Fix FTBFS with gcc-4.7, include * debian/watch: Update to github since upstream has moved the project -- Guillaume Delacour Sun, 15 Apr 2012 17:35:01 +0200 inspircd (2.0.5-0.1) unstable; urgency=low [ Guillaume Delacour ] * Add myself to uploaders. * Remove Mario Iseli to uploaders (officially MIA) * New upstream release (Closes: #545233, #519910, #620960, #641299) * debian/rules: + Use hardening build options (DEB_BUILD_HARDENING) + Use debhelper 8 template + Delete unrecognized option "disable-rpath" on configure + Add support for all DFSG extra modules (mysql, sqlite, pgsql, ldap, pcre, geoip) (Closes: #539569) + Allow parallel build through DEB_BUILD_OPTIONS + Don't remove docs/rfc in upstream tarball as the files are not installed * debian/compat: Use debhelper version 8 * debian/control: + Bump to Standards-Version 3.9.2 (no changes needed) + Switch to dpkg-source 3.0 (quilt) format and drop dpatch Build-Depends + Build-Depend on extra modules libraries: libldap2-dev, libpcre3-dev, libmysqlclient-dev, libpq-dev, libsqlite3-dev, libssl-dev, zlib1g-dev, libgeoip-dev, libtre-dev and split to 80 columns + Build-Depends on hardening-wrapper + Build-Depends on debhelper >= 8.0.0 + Depends on lsb-base (debian/inspircd.init) + Suggests sqlite3, mysql-server, ldap-server, postgresql, gnutls-bin + Remove ${shlibs:Depends} and add (= ${binary:Version}) for debugging symbols package + Change Vcs-{Svn,Browser}, point to inspircd2 repository * debian/patches: - 01_fix_config_reload.dpatch: drop old upstream patch - 02_fix_gnutls_config.dpatch: drop old upstream patch - 03_use_pkg-config_gnutls.dpatch: drop old upstream patch - 04_gcc44_fixes.dpatch: drop old upstream patch + 01_spelling_error.diff: fix some spelling errors in modules + 02_disable_rpath_for_extra_modules.diff: disable rpath for modules * debian/inspircd.examples: + Upstream examples files are now in docs/ + Provide upstream databases schemas examples * debian/inspircd.init: + Source /lib/lsb/init-functions and add status parameter + Add dependency on $remote_fs in Required-St{art,op} + Modify IRCDARGS to load /etc/inspircd/inspircd.conf + Delete unnecessary spaces * debian/README.Debian: Delete unnecessary spaces * debian/inspircd.install: Copy configuration files to the right place * debian/inspircd.1: + Fix path of configuration file + Delete unnecessary spaces * debian/watch: update url to project website (SF not up2date) * debian/README.source: use quilt to patch * debian/inspircd.postrm: Don't remove /etc/inspircd as it may contains locally added files * debian/inspircd.conf: Update proposed default configuration due to upstream changes (tags security, performance and log), line break to 80 and load absolute path for /etc/inspircd/inspircd.{motd,rules} [ Jonathan Wiltshire ] * Non-maintainer upload. This is really sponsorship with an added patch, but technically still an NMU. * Patch 03_CVE-2012-1836: protect against buffer overflow vulnerability in src/dns.cpp (merge from upstream) Closes: #667914 CVE-2012-1836 -- Jonathan Wiltshire Sat, 07 Apr 2012 22:25:39 +0100 inspircd (1.1.22+dfsg-4) unstable; urgency=low [ Matt Arnold ] * 03_use_pkg-config_gnutls.dpatch fix gnutls ftbfs Closes: 529823. * Add pkg-config to build-depends * Bump standards version no change * 04_gcc44_fixes.dpatch fix ftbfs on GCC 4.4 Closes: #505368 -- Patch thanks Martin Michlmayr [ Bradley Smith ] * Change section of inspircd-dbg to debug. * Upgrade compat version to 7 and upgrade debhelper build-depends. * Move dh_clean -k to dh_prep. -- Bradley Smith Mon, 22 Jun 2009 19:00:02 +0100 inspircd (1.1.22+dfsg-3) unstable; urgency=low * 02_fix_gnutls_config.dpatch - Fix configure script so GnuTLS module is built. Closes: #510748. -- Bradley Smith Sun, 04 Jan 2009 19:00:13 +0000 inspircd (1.1.22+dfsg-2) unstable; urgency=low * 01_fix_config_reload.dpatch - Fix crash on config reload. -- Bradley Smith Mon, 15 Dec 2008 20:23:01 +0000 inspircd (1.1.22+dfsg-1) unstable; urgency=low [ Matt Arnold ] * New upstream release. * Remove nenolod from Uploaders as requested. * Merge with upstream discontinue our patch series 02, 03. * Upstream change to staticlly linked core. Closes: #506862. [ Bradley Smith ] * Add myself to uploaders. * Misc whitespace fixes. -- Bradley Smith Wed, 03 Dec 2008 17:05:27 +0000 inspircd (1.1.21+dfsg-1) unstable; urgency=low * New upstream release - Upstream reported buffer overrun -- Matt Arnold Sat, 13 Sep 2008 14:11:16 -0400 inspircd (1.1.20+dfsg-1) unstable; urgency=low * New upstream release * add debian/README.source and 'source' target in debian/rules * changed debian policy to 3.8.0 -- Giacomo Catenazzi Thu, 03 Jul 2008 09:02:48 +0200 inspircd (1.1.19+dfsg-1) unstable; urgency=medium * New upstream version -- Darren Blaber Mon, 21 Apr 2008 12:51:01 -0500 inspircd (1.1.18+dfsg-1) unstable; urgency=medium * New stable upstream version, solve CVE-2008-1925 -- Giacomo Catenazzi Tue, 01 Apr 2008 08:57:37 +0200 inspircd (1.1.17+dfsg-2) unstable; urgency=low [ Giacomo Catenazzi ] * init.d script: cleanup (remove bashism, add cron target, remove sleep, remove unused exit) * add debian/inspircd.logrotate, and remore logs on purge -- Giacomo Catenazzi Fri, 28 Mar 2008 08:02:56 +0100 inspircd (1.1.17+dfsg-1) unstable; urgency=low [ Darren Blaber ] * New upstream release, fix /etc/init.d/inspircd stop. * Fix the postrm script so there is no duplicate update-rc.d * Fix the manpage so there are no more errors in it [ Matt Arnold ] * Fix prerm so it works (Closes: #466924) [ Giacomo Catenazzi ] * Added me as uploader * Add again support of dpatch in debian/rules * Build sources only once! * Correct make clean target, not to include generated ./inspircd on sources * Don't change permission of configuration files, when starting inspircd (separation of policy and program). -- Giacomo Catenazzi Thu, 06 Mar 2008 07:56:47 +0100 inspircd (1.1.16+dfsg-1) unstable; urgency=low [ William Pitcock ] * New upstream release. - Upstream has new --disable-rpath feature, dropped patch series. - debian/rules: use --disable-rpath [ Matt Arnold ] * Add prerm script to stop ircd before removal -- Matt Arnold Thu, 17 Jan 2008 11:21:17 -0500 inspircd (1.1.15+dfsg-1) unstable; urgency=low [ Mario Iseli ] * Initial release (Closes: #429317) [ William Pitcock ] * Prepare for uploading to unstable since Mario is on vacation until 2008. [ Darren Blaber ] * Repackaged upstream tarball without non-free components (rfcs were removed) -- Darren Blaber Thu, 20 Dec 2007 00:11:48 -0500