Hello community, here is the log from the commit of package strongswan for openSUSE:Factory checked in at 2012-06-01 07:24:16 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/strongswan (Old) and /work/SRC/openSUSE:Factory/.strongswan.new (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "strongswan", Maintainer is "[email protected]" Changes: -------- --- /work/SRC/openSUSE:Factory/strongswan/strongswan.changes 2012-05-10 14:34:47.000000000 +0200 +++ /work/SRC/openSUSE:Factory/.strongswan.new/strongswan.changes 2012-06-01 07:24:23.000000000 +0200 @@ -1,0 +2,10 @@ +Thu May 31 16:08:43 UTC 2012 - [email protected] + +- Updated to strongSwan 4.6.4 release: + - Fixed a security vulnerability in the gmp plugin. If this + plugin was used for RSA signature verification an empty or + zeroed signature was handled as a legitimate one + (bnc#761325, CVE-2012-2388). + - Fixed several issues with reauthentication and address updates. + +------------------------------------------------------------------- Old: ---- strongswan-4.6.3-fmt-warnings.patch strongswan-4.6.3-rpmlintrc strongswan-4.6.3.tar.bz2 strongswan-4.6.3.tar.bz2.sig New: ---- strongswan-4.6.4-fmt-warnings.patch strongswan-4.6.4-rpmlintrc strongswan-4.6.4.tar.bz2 strongswan-4.6.4.tar.bz2.sig ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ strongswan.spec ++++++ --- /var/tmp/diff_new_pack.Qmioi2/_old 2012-06-01 07:24:24.000000000 +0200 +++ /var/tmp/diff_new_pack.Qmioi2/_new 2012-06-01 07:24:24.000000000 +0200 @@ -17,7 +17,7 @@ Name: strongswan -Version: 4.6.3 +Version: 4.6.4 Release: 0 %define upstream_version %{version} %define strongswan_docdir %{_docdir}/%{name} ++++++ strongswan-4.6.3-fmt-warnings.patch -> strongswan-4.6.4-fmt-warnings.patch ++++++ ++++++ strongswan-4.6.3-rpmlintrc -> strongswan-4.6.4-rpmlintrc ++++++ ++++++ strongswan-4.6.3.tar.bz2 -> strongswan-4.6.4.tar.bz2 ++++++ ++++ 32210 lines of diff (skipped) -- To unsubscribe, e-mail: [email protected] For additional commands, e-mail: [email protected]
