changelog 4.04 KB
Newer Older
1
publicfile-installer (0.11-1) UNRELEASED; urgency=low
2

3
  * UNRELEASED
4 5 6 7 8 9 10 11 12 13
  * New upstream.  No longer ships install-publicfile, no longer uses /tmp.
    This fixes a serious security issue: a local privilage escalation
    security hole due to insecure use of /tmp. "This [...] package downloads
    the source code for DJB's publicfile, builds it, and then puts the
    output in a predictable location in a world-writable directory, using an
    existing directory of that name if it already exists, then (either
    automatically or by telling the admin to run another script) installs
    whatever happens to be in that directory.  This can be exploited by
    malicious local users to get arbitrary installscripts executed as root."
    Thanks Justin B Rye.  Closes: #795062.
14
    + debian/templates: adjusted.
15
    + debian/control: Depends: add sudo.
16 17
  * debian/changelog: fix spelling error.

18
 -- Joost van Baal-Ilić <joostvb@debian.org>  Sat, 29 Aug 2015 07:39:32 +0200
19

20
publicfile-installer (0.10-1) unstable; urgency=low
21

22
  * New upstream, targeting publicfile (0.52-7).
23
  * Upload to Debian archive.  Closes: #122614.
Joost van Baal-Ilić's avatar
Joost van Baal-Ilić committed
24 25
  * debian/copyright: add one missing copyright statement, add "Source",
    update license on most files from GPL-2 to GPL-3.
26
  * debian/control: enhance description.
27

Joost van Baal-Ilić's avatar
Joost van Baal-Ilić committed
28
 -- Joost van Baal-Ilić <joostvb@debian.org>  Wed, 20 May 2015 15:46:02 +0100
29

30
publicfile-installer (0.9-1) unstable; urgency=low
31

32
  * Initial release.
33
  * debian/control: update standards from 3.7.2 to 3.9.6 (no changes needed).
34
  * README, debian/*: s/aangifte-ib/publicfile/.
Joost van Baal-Ilić's avatar
Joost van Baal-Ilić committed
35
  * debian/rules: new style dh; add override_dh_auto_install.
Joost van Baal-Ilić's avatar
Joost van Baal-Ilić committed
36
  * debian/source/format: added; 3.0.
Joost van Baal-Ilić's avatar
Joost van Baal-Ilić committed
37
  * debian/{compat,control}: compat: added; 9; control: dh build-depends
38
    bumped from 5 to 9.
39
  * debian/install: add *-publicfile scripts.
40 41
  * debian/templates: add leading _ to Description in order to aid
    translators; thanks lintian.
42 43
  * debian/copyright: link to versioned GPL, now using "Machine-readable
    debian/copyright file" version 1.0.
44
  * debian/control: add fields Vcs-Git, Vcs-Browser.
Joost van Baal-Ilić's avatar
Joost van Baal-Ilić committed
45
  * debian/po/POTFILES.in, debian/{control,rules}: file POTFILES.in added,
46 47
    po-debconf build dependency added, call debconf-updatepo in clean target:
    use po-debconf for i18n.
48

Joost van Baal-Ilić's avatar
Joost van Baal-Ilić committed
49
 -- Joost van Baal-Ilić <joostvb@debian.org>  Wed, 04 Feb 2015 20:55:16 +0100
50

51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106
aangifte-ib-installer (0.8-1) unstable; urgency=low

  * New upstream.

 -- Joost van Baal <joostvb-aangifte-ib@mdcc.cx>  Thu, 14 Feb 2008 15:37:27 +0100

aangifte-ib-installer (0.7-1) unstable; urgency=low

  * New upstream.
  * rules: do not ignore errors from "make clean" (thanks lintian).

 -- Joost van Baal <joostvb-aangifte-ib@mdcc.cx>  Wed, 11 Jul 2007 16:12:09 +0200

aangifte-ib-installer (0.6-1) unstable; urgency=low

  * New upstream.
  * Depend upon fakeroot, since build-aangifte-ib calls this explicitly.
    Thanks Bram Senders.
  * control: suggest to keep this package installed.
  * postrm: remove /usr/src/aangifte-ib-installer/ in case of purge.  Thanks
    again Bram Senders.

 -- Joost van Baal <joostvb-aangifte-ib@mdcc.cx>  Tue, 13 Mar 2007 09:50:04 +0100

aangifte-ib-installer (0.5-1) unstable; urgency=low

  * New upstream: bugfix: md5sum of .diff.gz fixed.

 -- Joost van Baal <joostvb-aangifte-ib@mdcc.cx>  Mon, 05 Mar 2007 06:51:36 +0100

aangifte-ib-installer (0.4-1) unstable; urgency=low

  * New upstream: don't use test version, but real version from
    belastingdienst.nl.

 -- Joost van Baal <joostvb-aangifte-ib@mdcc.cx>  Sun, 04 Mar 2007 21:07:58 +0100

aangifte-ib-installer (0.3-1) unstable; urgency=low

  * New upstream: more robust, manpages added.

 -- Joost van Baal <joostvb-aangifte-ib@mdcc.cx>  Wed, 22 Nov 2006 11:10:46 +0100

aangifte-ib-installer (0.2-1) unstable; urgency=low

  * New upstream.
  * Don't try to run dpkg from within dpkg, but postpone installation of
    generated package.

 -- Joost van Baal <joostvb-aangifte-ib@mdcc.cx>  Tue, 21 Nov 2006 15:20:41 +0100

aangifte-ib-installer (0.1-1) unstable; urgency=low

  * Initial release.

 -- Joost van Baal <joostvb-aangifte-ib@mdcc.cx>  Tue, 21 Nov 2006 11:34:24 +0100