Changelog for
squid-debuginfo-2.5.STABLE3-6.3E.13.x86_64.rpm :
Thu Jun 9 00:00:00 2005 Jay Fenlason
7:2.5.STABLE3-6.3E.13
- Force a change to the squid.conf file between this rpm and 6.3E.9 to
make rpm do the right thing when upgrading.
Thu May 12 00:00:00 2005 Jay Fenlason 7:2.5.STABLE3-6.3E.12
- backport fix for
bz#157455 CAN-2005-1519 DNS lookups unreliable on untrusted networks
- Backport the changes from the -5 version of the patch.
Thu Apr 28 00:00:00 2005 Jay Fenlason 7:2.5.STABLE3-6.3E.11
- Backport fix for
CVE-1999-0710 cachemgr malicious use
Wed Mar 16 23:00:00 2005 Jay Fenlason 7:2.5.STABLE3-6.3E.10
- Backport squid-2.5.STABLE9-setcookie patch to close
bz#150232 cookie leak in squid
- Backport squid-2.5.STABLE9-acl_error patch to close
bz#151412 Unexpected access control results on configuration errors
This make invalid acl lines in the squid.conf file fatal errors, so a
user cannot start squid with erroneous acl lines. Previously, the
erroneous acls were ignored, potentially allowing users to access
content that the administrator though was blocked.
- Backport squid-2.5.STABLE7-post.patch to close
bz#151423 CAN-2005-0718 Segmentation fault on failed PUT/POST request
- Update the permissions on /etc/squid/squid.conf to prevent
unauthorized viewing of potential plaintext passwords, closing
bz#125007 insecure permissions for squid.conf
Wed Mar 2 23:00:00 2005 Jay Fenlason 7:2.5.STABLE3-6.3E.9
- Correct the -libntlmssp patch to correct an off-by-one error that prevented
the helper from passing the username to squid. This closes bz#139684
Wed Feb 16 23:00:00 2005 Jay Fenlason 7:2.5.STABLE3-6.3E.8
- Backport security fix for bz#148882 CAN-2005-0446
Tue Feb 1 23:00:00 2005 Jay Fenlason 7:2.5.STABLE3-6.3E.7
- Backport a security fix for
CAN-2005-0194 bz#146787 Empty proxy_auth ACLs are silently accepted but
lead to unpredictable ACL matching
- Backport two more security fixes to close
CAN-2005-0211 bz#146777 buffer overflow in wccp recvfrom() call
bz#146780 correct handling of oversize reply headers
Thu Jan 27 23:00:00 2005 Jay Fenlason 7:2.5.STABLE3-6.3E.6
- Include the reply_header_max_size patch to make the header_parsing
and response_splitting patches easier to apply. (And more functional.)
Tue Jan 25 23:00:00 2005 Jay Fenlason 7:2.5.STABLE3-6.3E.5
- Backport three more security patches to close bz#146159
Wed Jan 19 23:00:00 2005 Jay Fenlason 7:2.5.STABLE3-6.3E.4
- backport fixes for bz#145540
Thu Dec 2 23:00:00 2004 Jay Fenlason
- Add a triggerin on samba-common to make /var/cache/samba/winbindd_privileged
accessable so that ntlm_auth will work. It needs to be in this rpm,
because the Samba RPM can\'t assume the squid user exists.
Note that this will only work if the Samba RPM is recent enough to create
that directory at install time instead of at winbindd startup time.
That should be samba-common-3.0.0-10rc4.3E or later.
This fixes bugzilla #103726
- clean up extra whitespace at the end of lines in this spec file.
Thu Oct 14 00:00:00 2004 Jay Fenlason 7:2.5.STABLE3-6.3E.3
- Include the upstream -hostheader patch to close #135516
Wed Oct 13 00:00:00 2004 Jay Fenlason 7:2.5.STABLE3-6.3E.2
- Backport SNMP_core_dump patch from 2.5.STABLE6 to fix CAN-2004-0918
(Remote DoS)
Sat Sep 4 00:00:00 2004 Jay Fenlason 7:2.5.STABLE3-6.3E.1
- backport patch from squid-2.5.STABLE6 to fix DOS in ntlm auth helper.
Tue Jun 8 00:00:00 2004 Jay Fenlason 7:2.5.STABLE3-6.3E
- Include patch for CAN-2004-0541: ntlm auth helper buffer overflow
vulnerability.
Wed Mar 31 00:00:00 2004 Jay Fenlason 7:2.5.STABLE3-5.3E
- Quiet the triggerpostun scriptlet.
Mon Mar 8 23:00:00 2004 Jay Fenlason 7:2.5.STABLE3-4.3E
- Backport security fix for %00 hole. See CAN-2004-0189:
The \"%xx\" URL decoding function in Squid 2.5STABLE4 and earlier allows
remote attackers to bypass url_regex ACLs via a URL with a NULL
(\"%00\") characterm, which causes Squid to use only a portion of the
requested URL when comparing it against the access control lists.
- Backport security fix that adds urllogin acl type that can be used to
protect vulnerable Microsoft Internet Explorer clients.
Thu Sep 18 00:00:00 2003 Jeremy Katz 7:2.5.STABLE3-3.3E
- always exit successfully from scriptlets
- change from notting to make trigger \"safer\" (#101634)
Thu Jul 17 00:00:00 2003 Jay Fenlason 7:2.5.STABLE3-2.3E
- Fix the triggerpostun to use $errordir instead of $DIR
- Add the epoch number to the triggerpostun conditional
Tue Jul 8 00:00:00 2003 Jay Fenlason 7:2.5.STABLE3-1.3E
- re-enable pie
- removed --with-winbind-auth-challenge. Bugzilla #78691 should\'ve been
opened against Samba instead of Squid. And since I\'m busy upgrading to
Samba 3.0.0. . .
- Added fakeauth to --enable-ntlm-auth-helpers
- Added winbind to --enable-basic-auth-helpers
Tue Jul 1 00:00:00 2003 Jay Fenlason 7:2.5.STABLE3-0.3E
- Spec file change to enable the nul storage module. bugzilla #74654
- Upgrade to 2.5STABLE3 with current official patches.
- Added --enable-auth=\"basic,ntlm\": closes bugzilla #90145
- Added --with-winbind-auth-challenge: closes bugzilla #78691
- Added --enable-useragent-log and --enable-referer-log, closes
- bugzilla #91884
Thu Jun 5 00:00:00 2003 Elliot Lee
- rebuilt
Wed Jan 22 23:00:00 2003 Tim Powers
- rebuilt
Wed Jan 15 23:00:00 2003 Bill Nottingham 7:2.5.STABLE1-1
- update to 2.5.STABLE1
Wed Nov 27 23:00:00 2002 Tim Powers 7:2.4.STABLE7-5
- remove unpackaged files from the buildroot
Wed Aug 28 00:00:00 2002 Nalin Dahyabhai 2.4.STABLE7-4
- rebuild
Thu Aug 1 00:00:00 2002 Karsten Hopp
- don\'t raise an error if the config file is incomplete
set defaults instead (#69322, #70065)
Fri Jul 19 00:00:00 2002 Bill Nottingham 2.4.STABLE7-2
- don\'t strip binaries
Tue Jul 9 00:00:00 2002 Bill Nottingham
- update to 2.4.STABLE7
- fix restart (#53761)
Wed Jun 26 00:00:00 2002 Bill Nottingham
- add various upstream bugfix patches
Sat Jun 22 00:00:00 2002 Tim Powers
- automated rebuild
Fri May 24 00:00:00 2002 Tim Powers
- automated rebuild
Fri Mar 22 23:00:00 2002 Bill Nottingham
- 2.4.STABLE6
- turn off carp
Mon Feb 18 23:00:00 2002 Bill Nottingham
- 2.4.STABLE3 + patches
- turn off HTCP at request of maintainers
- leave SNMP enabled in the build, but disabled in the default config
Fri Jan 25 23:00:00 2002 Tim Powers
- rebuild against new libssl
Wed Jan 9 23:00:00 2002 Tim Powers
- automated rebuild
Mon Jan 7 23:00:00 2002 Florian La Roche
- require linuxdoc-tools instead of sgml-tools
Wed Sep 26 00:00:00 2001 Bill Nottingham
- update to 2.4.STABLE2
Tue Sep 25 00:00:00 2001 Bill Nottingham
- add patch to fix FTP crash
Tue Aug 7 00:00:00 2001 Bill Nottingham
- fix uninstall (#50411)
Tue Jul 24 00:00:00 2001 Bill Nottingham
- add some buildprereqs (#49705)
Mon Jul 23 00:00:00 2001 Bill Nottingham
- update FAQ
Wed Jul 18 00:00:00 2001 Bill Nottingham
- own /etc/squid, /usr/lib/squid
Wed Jun 13 00:00:00 2001 Nalin Dahyabhai
- rebuild in new environment
- s/Copyright:/License:/
Wed Apr 25 00:00:00 2001 Bill Nottingham
- update to 2.4.STABLE1 + patches
- enable some more configure options (#24981)
- oops, ship /etc/sysconfig/squid
Fri Mar 2 23:00:00 2001 Nalin Dahyabhai
- rebuild in new environment
Tue Feb 6 23:00:00 2001 Trond Eivind Glomsr�d
- improve i18n
- make the initscript use the standard OK/FAILED
Tue Jan 23 23:00:00 2001 Bill Nottingham
- change i18n mechanism
Fri Jan 19 23:00:00 2001 Bill Nottingham
- fix path references in QUICKSTART (#15114)
- fix initscript translations (#24086)
- fix shutdown logic (#24234), patch from
- add /etc/sysconfig/squid for daemon options & shutdown timeouts
- three more bugfixes from the Squid people
- update FAQ.sgml
- build and ship auth modules (#23611)
Thu Jan 11 23:00:00 2001 Bill Nottingham
- initscripts translations
Mon Jan 8 23:00:00 2001 Bill Nottingham
- add patch to use mkstemp (gregAATTwirex.com)
Fri Dec 1 23:00:00 2000 Bill Nottingham
- rebuild because of broken fileutils
Sat Nov 11 23:00:00 2000 Bill Nottingham
- fix the acl matching cases (only need the second patch)
Tue Nov 7 23:00:00 2000 Bill Nottingham
- add two patches to fix domain ACLs
- add 2 bugfix patches from the squid people
Sat Jul 29 00:00:00 2000 Bill Nottingham
- clean up init script; fix condrestart
- update to STABLE4, more bugfixes
- update FAQ
Wed Jul 19 00:00:00 2000 Nalin Dahyabhai
- fix syntax error in init script
- finish adding condrestart support
Sat Jul 15 00:00:00 2000 Bill Nottingham
- move initscript back
Thu Jul 13 00:00:00 2000 Prospector
- automatic rebuild
Fri Jul 7 00:00:00 2000 Bill Nottingham
- prereq /etc/init.d
- add bugfix patch
- update FAQ
Fri Jun 30 00:00:00 2000 Bill Nottingham
- fix init script
Wed Jun 28 00:00:00 2000 Bill Nottingham
- don\'t prereq new initscripts
Tue Jun 27 00:00:00 2000 Bill Nottingham
- initscript munging
Sun Jun 11 00:00:00 2000 Bill Nottingham
- rebuild for exciting FHS stuff
Thu Jun 1 00:00:00 2000 Bill Nottingham
- fix init script again (#11699)
- add --enable-delay-pools (#11695)
- update to STABLE3
- update FAQ
Sat Apr 29 00:00:00 2000 Bill Nottingham
- fix init script (#11087)
Sat Apr 8 00:00:00 2000 Bill Nottingham
- three more bugfix patches from the squid people
- buildprereq jade, sgmltools
Mon Mar 27 00:00:00 2000 Florian La Roche
- make %pre more portable
Thu Mar 16 23:00:00 2000 Bill Nottingham
- bugfix patches
- fix dependency on /usr/local/bin/perl
Sat Mar 4 23:00:00 2000 Bill Nottingham
- 2.3.STABLE2
Mon Feb 14 23:00:00 2000 Bill Nottingham
- Yet More Bugfix Patches
Tue Feb 8 23:00:00 2000 Bill Nottingham
- add more bugfix patches
- --enable-heap-replacement
Mon Jan 31 23:00:00 2000 Cristian Gafton
- rebuild to fix dependencies
Fri Jan 28 23:00:00 2000 Bill Nottingham
- grab some bugfix patches
Mon Jan 10 23:00:00 2000 Bill Nottingham
- 2.3.STABLE1 (whee, another serial number)
Tue Dec 21 23:00:00 1999 Bernhard Rosenkraenzer
- Fix compliance with ftp RFCs
(http://www.wu-ftpd.org/broken-clients.html)
- Work around a bug in some versions of autoconf
- BuildPrereq sgml-tools - we\'re using sgml2html
Tue Oct 19 00:00:00 1999 Bill Nottingham
- add a couple of bugfix patches
Thu Oct 14 00:00:00 1999 Bill Nottingham
- update to 2.2.STABLE5.
- update FAQ, fix URLs.
Sun Sep 12 00:00:00 1999 Cristian Gafton
- transform restart in reload and add restart to the init script
Wed Sep 1 00:00:00 1999 Bill Nottingham
- add squid user as user 23.
Tue Aug 17 00:00:00 1999 Bill Nottingham
- initscript munging
- fix conflict between logrotate & squid -k (#4562)
Thu Jul 29 00:00:00 1999 Bill Nottingham
- put cachemgr.cgi back in /usr/lib/squid
Thu Jul 15 00:00:00 1999 Bill Nottingham
- add webdav bugfix patch (#4027)
Tue Jul 13 00:00:00 1999 Bill Nottingham
- fix path to config in squid.init (confuses linuxconf)
Thu Jul 8 00:00:00 1999 Bill Nottingham
- 2.2.STABLE4
Thu Jun 10 00:00:00 1999 Dale Lovelace
- logrotate changes
- errors from find when /var/spool/squid or
- /var/log/squid didn\'t exist
Fri May 21 00:00:00 1999 Bill Nottingham
- 2.2.STABLE3
Fri Apr 23 00:00:00 1999 Bill Nottingham
- update to 2.2.STABLE.2
Mon Apr 19 00:00:00 1999 Bill Nottingham
- update to 2.2.STABLE1
Fri Apr 16 00:00:00 1999 Bill Nottingham
- don\'t need to run groupdel on remove
- fix useradd
Tue Apr 13 00:00:00 1999 Bill Nottingham
- fix effective_user (bug #2124)
Tue Apr 6 00:00:00 1999 Bill Nottingham
- strip binaries
Fri Apr 2 00:00:00 1999 Bill Nottingham
- duh. adduser does require a user name.
- add a serial number
Wed Mar 31 00:00:00 1999 Bill Nottingham
- add an adduser in %pre, too
Thu Mar 25 23:00:00 1999 Bill Nottingham
- oog. chkconfig must be in %preun, not %postun
Wed Mar 24 23:00:00 1999 Bill Nottingham
- switch to using group squid
- turn off icmp (insecure)
- update to 2.2.DEVEL3
- build FAQ docs from source
Tue Mar 23 23:00:00 1999 Bill Nottingham
- logrotate changes
Sun Mar 21 23:00:00 1999 Cristian Gafton
- auto rebuild in the new build environment (release 4)
Wed Feb 10 23:00:00 1999 Bill Nottingham
- update to 2.2.PRE2
Wed Dec 30 23:00:00 1998 Bill Nottingham
- cache & log dirs shouldn\'t be world readable
- remove preun script (leave logs & cache AATT uninstall)
Tue Dec 29 23:00:00 1998 Bill Nottingham
- fix initscript to get cache_dir correct
Fri Dec 18 23:00:00 1998 Bill Nottingham
- update to 2.1.PATCH2
- merge in some changes from RHCN version
Sun Oct 11 00:00:00 1998 Cristian Gafton
- strip binaries
- version 1.1.22
Mon May 11 00:00:00 1998 Cristian Gafton
- don\'t make packages conflict with each other...
Sun May 3 00:00:00 1998 Cristian Gafton
- added a proxy auth patch from Alex deVries
- fixed initscripts
Fri Apr 10 00:00:00 1998 Cristian Gafton
- rebuilt for Manhattan
Fri Mar 20 23:00:00 1998 Cristian Gafton
- upgraded to 1.1.21/1.NOVM.21
Mon Mar 2 23:00:00 1998 Cristian Gafton
- updated the init script to use reconfigure option to restart squid instead
of shutdown/restart (both safer and quicker)
Sat Feb 7 23:00:00 1998 Cristian Gafton
- upgraded to 1.1.20
- added the NOVM package and tryied to reduce the mess in the spec file
Wed Jan 7 23:00:00 1998 Cristian Gafton
- first build against glibc
- patched out the use of setresuid(), which is available only on kernels
2.1.44 and later