Subject: pkg/13069: GnuPG update to 1.0.6
To: None <gnats-bugs@gnats.netbsd.org>
From: None <nathan.ahlstrom@medtronic.com>
List: netbsd-bugs
Date: 05/30/2001 16:12:00
>Number:         13069
>Category:       pkg
>Synopsis:       GnuPG update to 1.0.6
>Confidential:   no
>Severity:       critical
>Priority:       high
>Responsible:    pkg-manager
>State:          open
>Class:          sw-bug
>Submitter-Id:   net
>Arrival-Date:   Wed May 30 14:13:00 PDT 2001
>Closed-Date:
>Last-Modified:
>Originator:     Nathan Ahlstrom
>Release:        NetBSD bsd 1.5.1_BETA2 NetBSD 1.5.1_BETA2 (BSD) #5: Wed May 16 15:45:02 CDT 2001     root@bsd:/usr/src/sys/arch/i386/compile/BSD i386
>Organization:
	me
>Environment:
System: NetBSD bsd 1.5.1_BETA2 NetBSD 1.5.1_BETA2 (BSD) #5: Wed May 16 15:45:02 CDT 2001 root@bsd:/usr/src/sys/arch/i386/compile/BSD i386

>Description:
	GnuPG has made a new release.  Here are the ChangeLog notes:

1.0.6 (2001-05-29)
      Fixed a format string bug which is exploitable if --batch is not used. 
      Checked all translations for format strings bugs. 
      Removed the Russian translation due to too many bugs. 
      Fixed keyserver access and expire time calculation. 

Also available at:
	http://www.gnupg.org/whatsnew.html#rn20010529

>How-To-Repeat:
>Fix:
	Attached is a diff.  Thanks!


Index: Makefile
===================================================================
RCS file: /usr/NetBSD-cvs/pkgsrc/security/gnupg/Makefile,v
retrieving revision 1.25
diff -u -r1.25 Makefile
--- Makefile	2001/05/14 13:40:04	1.25
+++ Makefile	2001/05/30 20:17:59
@@ -1,7 +1,7 @@
 # $NetBSD: Makefile,v 1.24 2001/03/31 11:14:30 zuntum Exp $
 #
 
-DISTNAME=	gnupg-1.0.5
+DISTNAME=	gnupg-1.0.6
 CATEGORIES=	security
 MASTER_SITES=	ftp://ftp.gnupg.org/pub/gcrypt/gnupg/
 # don't remove this -- we may add idea.c to it below
Index: distinfo
===================================================================
RCS file: /usr/NetBSD-cvs/pkgsrc/security/gnupg/distinfo,v
retrieving revision 1.4
diff -u -r1.4 distinfo
--- distinfo	2001/05/23 15:35:00	1.4
+++ distinfo	2001/05/30 20:18:33
@@ -1,8 +1,6 @@
 $NetBSD: distinfo,v 1.3 2001/05/14 13:40:04 wiz Exp $
 
-SHA1 (gnupg-1.0.5.tar.gz) = e30358cae1e1f7aece84b6808b1366f12a1ff527
-Size (gnupg-1.0.5.tar.gz) = 1962455 bytes
-SHA1 (idea.c) = 1cbae164674dfb9da624e088fe7d66d7c0d4f17e
-Size (idea.c) = 15450 bytes
+SHA1 (gnupg-1.0.6.tar.gz) = 3d5f0b6c123916aebd64fcbf34117019642dde98
+Size (gnupg-1.0.6.tar.gz) = 1941676 bytes
 SHA1 (patch-aa) = fffd3e55792bb27df002bacbc5d8bf9096d5dd64
 SHA1 (patch-ab) = 26938c9933564f263a02ac3c01b47fa185142f28
Index: pkg/PLIST
===================================================================
RCS file: /usr/NetBSD-cvs/pkgsrc/security/gnupg/pkg/PLIST,v
retrieving revision 1.9
diff -u -r1.9 PLIST
--- pkg/PLIST	2001/05/14 13:40:05	1.9
+++ pkg/PLIST	2001/05/30 20:25:18
@@ -29,7 +29,6 @@
 ${PKGLOCALEDIR}/locale/pl/LC_MESSAGES/gnupg.mo
 ${PKGLOCALEDIR}/locale/pt_BR/LC_MESSAGES/gnupg.mo
 ${PKGLOCALEDIR}/locale/pt_PT/LC_MESSAGES/gnupg.mo
-${PKGLOCALEDIR}/locale/ru/LC_MESSAGES/gnupg.mo
 ${PKGLOCALEDIR}/locale/sv/LC_MESSAGES/gnupg.mo
 ${PKGLOCALEDIR}/locale/tr/LC_MESSAGES/gnupg.mo
 @dirrm share/gnupg
>Release-Note:
>Audit-Trail:
>Unformatted: