[SCM] Debian packaging for XMLTooling-C branch, lenny, created. upstream/1.0-63-g2c81387

Russ Allbery rra at debian.org
Fri Sep 18 01:54:25 UTC 2009


The branch, lenny has been created
        at  2c8138735352eef7e8426f68c52af728866cab56 (commit)

- Shortlog ------------------------------------------------------------
commit 2c8138735352eef7e8426f68c52af728866cab56
Author: Russ Allbery <rra at debian.org>
Date:   Thu Sep 17 18:53:17 2009 -0700

    Redo how the security fixes are presented in the changelog

commit 88343a48ae479c277133c15f5aed8690512a0cdd
Author: Russ Allbery <rra at debian.org>
Date:   Thu Sep 17 13:41:36 2009 -0700

    Merge upstream changes between 1.2 and 1.2.2
    
    * Merge upstream changes between 1.2 and 1.2.2.
      - SECURITY: Correctly handle malformed URLs, closing a possibly
        exploitable buffer overflow.
      - SECURITY: Correctly honor the "use" attribute of <KeyDescriptor>
        SAML metadata to honor restrictions to signing or encryption.  This
        is a partial fix; the complete fix also requires a new version of
        the OpenSAML library.

-----------------------------------------------------------------------

-- 
Debian packaging for XMLTooling-C



More information about the Pkg-shibboleth-devel mailing list