Changelog for
libesmtp6_2_0-1.1.0-lp155.2.1.x86_64.rpm :
* Wed Jul 10 2024 Martin Jambor
- Added libesmtp-c99.patch which adds a required feature macro definition so that strlcpy function is properly declared in the standard header file. [boo#1225800]
* Tue Dec 27 2022 Paolo Stivanin - Update to 1.1.0:
* CVE-2019-19977: avoid potential stack overflow in NTLM authenticator.
* Migrate build system to Meson
* Remove GNU libltdl support, assume dlopen() always available.
* Use a linker map to restrict public symbols to API only.
* Add sentinel and ‘format printf’ attributes to function declarations.
* Remove getaddrinfo() implementation.
* Use strlcpy() for safer string copies, provide implementation for systems that need it.
* Update ‘application data’ APIs
* Add ‘smtp_get_server_name()’ API.
* Collect replacement functions into missing.c
* Prohibit Resent-Reply-To: header.
* Use canonic domain name of MTA where known
* Implement rfc2822date() with strftime() if available.
* add option for XDG file layout convention instead of ~/.authenticate
* OpenSSL + Remove support for OpenSSL versions before v1.1.0 + Update OpenSSL API calls used for modern versions + Require TLS v1 or higher
* Add add_ntlm.patch
* Drop the following patches: + libesmtp-removedecls.diff + libesmtp-1.0.4-bloat.patch + libesmtp-fix-cve-2019-19977.patch + libesmtp-openssl11.patch + libesmtp-tlsv12.patch
* Fri Aug 06 2021 Yifan Jiang - Add libesmtp-fix-cve-2019-19977.patch: Fix stack-based buffer over-read in ntlm/ntlmstruct.c (bsc#1160462 bsc#1189097).
* Mon Jan 14 2019 kukukAATTsuse.de- Use %license instead of %doc [bsc#1082318]
* Sat Mar 03 2018 jengelhAATTinai.de- Drop ineffective --with-pic. Drop %__-type macro indirections. Drop redundant %clean section.- Implement shared library packaging guideline.
* Fri Feb 16 2018 crrodriguezAATTopensuse.org- SSL support was silently lost on openSSL 1.1 update. libesmtp-openssl11.patch makes things work again.
* Fri Sep 30 2016 crrodriguezAATTopensuse.org- Add libesmtp-tlsv12.patch: All TLS clients must support and use the highest TLS version available if possible not only TLS 1.0. Patch sent to upstream long time ago, no response. website has also vanished from the internet (bsc#1005909).- Pass --disable-isoc to configure, pick the compiler\'s default C standard mode (currently gnu11).
* Mon Feb 04 2013 cooloAATTsuse.com- update license to new format
* Tue Aug 10 2010 dimstarAATTopensuse.org- Update to version 1.0.6: + Each component matched by match-domain() is either a single \'
*\' which matches anything or a case-insensitive comparison with a string of alphanumeric characters or a \'-\'.- Changes from version 1.0.5: + The Gmail server reports enhanced status codes but then fails to provide them in some cases. The parser is now tolerant of this but warns the application using a new event flag SMTP_EV_SYNTAXWARNING that it is progressing despite the syntax error. + Fixed bug where To, Cc, Bcc etc. accepted only single values instead of a list. + Fix reversed comparison on the return value of gettimeofday().- Drop upstream fixed patches libesmtp-1.0.4-multiple-cc.patch and libestmp-commonname.diff.- Cleaned spec file using spec-cleaner.
* Wed Apr 28 2010 freitagAATTnovell.com- Add libestmp-commonname.diff to do stricter check on commonName bnc#585393.