Changelog for
proftpd-debugsource-1.3.3g-2.4.test.3.x86_64.rpm :
* Fri Nov 18 2011 chrisAATTcomputersalat.de- fix for bnc#731347
* no (hostname -s) in post section
* reworked basic conf patch
* Fri Nov 11 2011 chrisAATTcomputersalat.de- fix changelog
* RELEASE_NOTES-1.3.3g is lacking of important info- fix for CVE-2011-4130 (bnc#729830)
* https://bugzilla.novell.com/show_bug.cgi?id=729830 (upstream) http://bugs.proftpd.org/show_bug.cgi?id=3711 => fixed with version 1.3.3g
* Thu Nov 10 2011 chrisAATTcomputersalat.de- update to 1.3.3g (http://www.proftpd.org/docs/RELEASE_NOTES-1.3.3g) + New \"NoEmptyFragments\" TLSOption added; see the TLSOptions documentation for details. + Fixed mod_sql_mysql \"Alarm clock\" bug on FreeBSD. (http://www.proftpd.org/docs/NEWS-1.3.3g) - Bug 3702 - ProFTPD with mod_sql_mysql dies of \"Alarm clock\" on FreeBSD. - Bug 3704 - Enable OpenSSL countermeasure against SSLv3/TLSv1 BEAST attacks. To disable this countermeasure, which may cause interoperability issues with some clients, use the NoEmptyFragments TLSOption. - Bug 3711 - Response pool use-after-free memory corruption error.
* Tue Oct 04 2011 chrisAATTcomputersalat.de- update to 1.3.3f + Fixes segfault if mod_sql_mysql and \"SQLAuthenticate groupsetfast\" configuration used. + Fixes mod_wrap syslog level (regression from Bug#3317). + Fixes mod_ifsession segfault if regular expression patterns used in a
section.
* Fri Apr 29 2011 chrisAATTcomputersalat.de- push to Factory o fix changelog (not in sequence) o fix license (GPL -> GPLv2+) o remove Author from description o remove obsolete extra source proftpd.conf
* Fri Apr 08 2011 chrisAATTcomputersalat.de- update to 1.3.3e + Display messages work properly again. + Fixes plaintext command injection vulnerability in FTPS implementation (i.e. mod_tls). See http://bugs.proftpd.org/show_bug.cgi?id=3624 for details. + Fixes CVE-2011-1137 (badly formed SSH messages cause DoS). See http://bugs.proftpd.org/show_bug.cgi?id=3586 for details. + Performance improvements, especially during server startup/restarts.
* Sun Jan 30 2011 chrisAATTcomputersalat.de- update to 1.3.3d + Fixed sql_prepare_where() buffer overflow (Bug#3536) + Fixed CPU spike when handling .ftpaccess files. + Fixed handling of SFTP uploads when compression is used.
* Fri Oct 22 2010 msebenAATTgmail.com- update to 1.3.3c + Fixed Telnet IAC stack overflow vulnerability (ZDI-CAN-925) + Fixed directory traversal bug in mod_site_misc + Fixed SQLite authentications using \"SQLAuthType Backend\"
* Fri Oct 22 2010 chrisAATTcomputersalat.de- clenaup spec- fix doc pkg o should not provide pkgconfig
* Fri Oct 15 2010 chrisAATTcomputersalat.de- update to 1.3.3b + Fixed SFTP directory listing bug + Avoid corrupting utmpx databases on FreeBSD + Avoid null pointer dereferences during data transfers + Fixed \"AuthAliasOnly on\" anonymous logins- rpmlint: no-pkg-config-provides o add BuildReq pkg-config- removed changes from spec
* Wed Jul 07 2010 chrisAATTcomputersalat.de- update to 1.3.3a + Added Japanese translation + Many mod_sftp bugfixes + Fixed SSL_shutdown() errors caused by OpenSSL 0.9.8m and later + Fixed handling of utmp/utmpx format changes on FreeBSD- rpmlint: self-obsoletion
* Wed May 05 2010 msebenAATTnovell.com- fix build : dir-or-file-in-var-run badness : /var/run/proftpd dir is marked as ghost and it is created in init script now
* Fri Apr 09 2010 msebenAATTnovell.com- added ncurses-devel to buildrequires to fix ftptop message : \"no curses or ncurses library on this system\"
* Fri Feb 26 2010 chrisAATTcomputersalat.de- added info for \"STABLE\" versions only
* Thu Feb 25 2010 chrisAATTcomputersalat.de- update to 1.3.3 o Fixed mod_ban whitelisting using mod_ifsession. o Fixed per-user/group/class \"HideFiles none\" configurations. - 1.3.3rc4 o Fixed mod_tls compilation using OpenSSL installations older than 0.9.7. o Fixed mod_sftp compilation on AIX. o Fixed RADIUS authentication on 64-bit platforms o Fixed memory leak in SCP downloads. o New configuration directives SQLPasswordUserSalt The SQLPasswordUserSalt directive can be used to configure per-user salt data to be added to the encrypted password for a user. The salt can be the user name, or it can be the result of a SQL query. More information can be found in doc/contrib/mod_sql_passwd.html#SQLPasswordUserSalt.
* Wed Feb 10 2010 diego.ercolaniAATTgmail.com- update to 1.3.3rc3- try to be compatible with osc :-)
* Sun Dec 20 2009 chrisAATTcomputersalat.de- update to 1.3.2c o Bug and regression fixes.- removed obsolete CVE patch
* Mon Oct 26 2009 msebenAATTnovell.com- fixed CVE-2009-3639 : mod_tls security issue (bnc#549740)
* Wed Sep 16 2009 alexandreAATTexatati.com.br- Update tarball to its upstream version without bzipped patch;- Removed blank spaces at enf of lines on spec file;- Replaced tab characters on spec file.
* Wed Sep 16 2009 chrisAATTcomputersalat.de- update to 1.3.2 (1.3.2a) o many bugfixes, read ChangeLog or NEWS o include 1.3.2a upstream patch o removed old patches
* proftpd-1.3.1-umode_t.patch
* proftpd-1.3.1-O_CREAT.patch
* proftpd-1.3.1-libcap.patch
* proftpd-1.3.1-CVE-2009-0542.patch
* proftpd-1.3.1-CVE-2009-0543.patch o reworked basic.conf.patch- spec mods o removed ^#----- o removed {rel} o clean
* rm -rf RPM_BUILD_ROOT o added sub sqlite- fixed deps o BuildRequires: sqlite3-devel unixODBC-devel- rpmlint o description-shorter-than-summary o source-or-patch-not-bzipped proftpd-1.3.2a.patch
* Tue Jul 07 2009 chrisAATTcomputersalat.de- added proftpd.passwd o it is an initial passwd for virtuser and anonymous login works well with it :)
* Mon Jul 06 2009 chrisAATTcomputersalat.de- added ftpasswd.patch- rework of basic.conf patch- removed README.AIX
* Wed Apr 15 2009 chrisAATTcomputersalat.de- added basic.conf patch- added dist.patch o fix for xinetd, logrotate, pam- some more subpackages o ldap, mysql, pgsql, radius- added ftpasswd for simple virtuser support- added auth DIR /etc/proftpd/auth o passwd for virtuser- added conf.d DIR /etc/proftpd/conf.d o configs for inclusion- added log DIR /var/log/proftpd- beautify init file- beautify spec file