Subject: pkg/13069: GnuPG update to 1.0.6
To: None <gnats-bugs@gnats.netbsd.org>
From: None <nathan.ahlstrom@medtronic.com>
List: netbsd-bugs
Date: 05/30/2001 16:12:00
>Number: 13069
>Category: pkg
>Synopsis: GnuPG update to 1.0.6
>Confidential: no
>Severity: critical
>Priority: high
>Responsible: pkg-manager
>State: open
>Class: sw-bug
>Submitter-Id: net
>Arrival-Date: Wed May 30 14:13:00 PDT 2001
>Closed-Date:
>Last-Modified:
>Originator: Nathan Ahlstrom
>Release: NetBSD bsd 1.5.1_BETA2 NetBSD 1.5.1_BETA2 (BSD) #5: Wed May 16 15:45:02 CDT 2001 root@bsd:/usr/src/sys/arch/i386/compile/BSD i386
>Organization:
me
>Environment:
System: NetBSD bsd 1.5.1_BETA2 NetBSD 1.5.1_BETA2 (BSD) #5: Wed May 16 15:45:02 CDT 2001 root@bsd:/usr/src/sys/arch/i386/compile/BSD i386
>Description:
GnuPG has made a new release. Here are the ChangeLog notes:
1.0.6 (2001-05-29)
Fixed a format string bug which is exploitable if --batch is not used.
Checked all translations for format strings bugs.
Removed the Russian translation due to too many bugs.
Fixed keyserver access and expire time calculation.
Also available at:
http://www.gnupg.org/whatsnew.html#rn20010529
>How-To-Repeat:
>Fix:
Attached is a diff. Thanks!
Index: Makefile
===================================================================
RCS file: /usr/NetBSD-cvs/pkgsrc/security/gnupg/Makefile,v
retrieving revision 1.25
diff -u -r1.25 Makefile
--- Makefile 2001/05/14 13:40:04 1.25
+++ Makefile 2001/05/30 20:17:59
@@ -1,7 +1,7 @@
# $NetBSD: Makefile,v 1.24 2001/03/31 11:14:30 zuntum Exp $
#
-DISTNAME= gnupg-1.0.5
+DISTNAME= gnupg-1.0.6
CATEGORIES= security
MASTER_SITES= ftp://ftp.gnupg.org/pub/gcrypt/gnupg/
# don't remove this -- we may add idea.c to it below
Index: distinfo
===================================================================
RCS file: /usr/NetBSD-cvs/pkgsrc/security/gnupg/distinfo,v
retrieving revision 1.4
diff -u -r1.4 distinfo
--- distinfo 2001/05/23 15:35:00 1.4
+++ distinfo 2001/05/30 20:18:33
@@ -1,8 +1,6 @@
$NetBSD: distinfo,v 1.3 2001/05/14 13:40:04 wiz Exp $
-SHA1 (gnupg-1.0.5.tar.gz) = e30358cae1e1f7aece84b6808b1366f12a1ff527
-Size (gnupg-1.0.5.tar.gz) = 1962455 bytes
-SHA1 (idea.c) = 1cbae164674dfb9da624e088fe7d66d7c0d4f17e
-Size (idea.c) = 15450 bytes
+SHA1 (gnupg-1.0.6.tar.gz) = 3d5f0b6c123916aebd64fcbf34117019642dde98
+Size (gnupg-1.0.6.tar.gz) = 1941676 bytes
SHA1 (patch-aa) = fffd3e55792bb27df002bacbc5d8bf9096d5dd64
SHA1 (patch-ab) = 26938c9933564f263a02ac3c01b47fa185142f28
Index: pkg/PLIST
===================================================================
RCS file: /usr/NetBSD-cvs/pkgsrc/security/gnupg/pkg/PLIST,v
retrieving revision 1.9
diff -u -r1.9 PLIST
--- pkg/PLIST 2001/05/14 13:40:05 1.9
+++ pkg/PLIST 2001/05/30 20:25:18
@@ -29,7 +29,6 @@
${PKGLOCALEDIR}/locale/pl/LC_MESSAGES/gnupg.mo
${PKGLOCALEDIR}/locale/pt_BR/LC_MESSAGES/gnupg.mo
${PKGLOCALEDIR}/locale/pt_PT/LC_MESSAGES/gnupg.mo
-${PKGLOCALEDIR}/locale/ru/LC_MESSAGES/gnupg.mo
${PKGLOCALEDIR}/locale/sv/LC_MESSAGES/gnupg.mo
${PKGLOCALEDIR}/locale/tr/LC_MESSAGES/gnupg.mo
@dirrm share/gnupg
>Release-Note:
>Audit-Trail:
>Unformatted: