OpenPKG CVS Repository
  http://cvs.openpkg.org/
  ____________________________________________________________________________

  Server: cvs.openpkg.org                  Name:   Ralf S. Engelschall
  Root:   /v/openpkg/cvs                   Email:  [EMAIL PROTECTED]
  Module: openpkg-src                      Date:   04-Sep-2007 10:29:06
  Branch: HEAD                             Handle: 2007090409290600

  Modified files:
    openpkg-src/fetchmail   fetchmail.patch fetchmail.spec

  Log:
    Security Fix (http://fetchmail.berlios.de/fetchmail-SA-2007-02.txt)

  Summary:
    Revision    Changes     Path
    1.10        +19 -0      openpkg-src/fetchmail/fetchmail.patch
    1.88        +1  -1      openpkg-src/fetchmail/fetchmail.spec
  ____________________________________________________________________________

  patch -p0 <<'@@ .'
  Index: openpkg-src/fetchmail/fetchmail.patch
  ============================================================================
  $ cvs diff -u -r1.9 -r1.10 fetchmail.patch
  --- openpkg-src/fetchmail/fetchmail.patch     6 Jan 2007 09:23:12 -0000       
1.9
  +++ openpkg-src/fetchmail/fetchmail.patch     4 Sep 2007 08:29:06 -0000       
1.10
  @@ -10,3 +10,22 @@
    #include <ctype.h> /* isspace() */
    #ifdef HAVE_MEMORY_H
    #include <memory.h>
  +
  +-----------------------------------------------------------------------------
  +
  +Security Fix
  +http://fetchmail.berlios.de/fetchmail-SA-2007-02.txt
  +
  +Index: sink.c
  +--- sink.c   (revision 5118)
  ++++ sink.c   (revision 5119)
  +@@ -262,7 +262,7 @@
  +     const char *md1 = "MAILER-DAEMON", *md2 = "MAILER-DAEMON@";
  + 
  +     /* don't bounce in reply to undeliverable bounces */
  +-    if (!msg->return_path[0] ||
  ++    if (!msg || !msg->return_path[0] ||
  +     strcmp(msg->return_path, "<>") == 0 ||
  +     strcasecmp(msg->return_path, md1) == 0 ||
  +     strncasecmp(msg->return_path, md2, strlen(md2)) == 0)
  +
  @@ .
  patch -p0 <<'@@ .'
  Index: openpkg-src/fetchmail/fetchmail.spec
  ============================================================================
  $ cvs diff -u -r1.87 -r1.88 fetchmail.spec
  --- openpkg-src/fetchmail/fetchmail.spec      20 Jul 2007 12:13:48 -0000      
1.87
  +++ openpkg-src/fetchmail/fetchmail.spec      4 Sep 2007 08:29:06 -0000       
1.88
  @@ -33,7 +33,7 @@
   Group:        Mail
   License:      GPL
   Version:      6.3.8
  -Release:      20070720
  +Release:      20070904
   
   #   package options
   %option       with_conf  no
  @@ .
______________________________________________________________________
OpenPKG                                             http://openpkg.org
CVS Repository Commit List                     openpkg-cvs@openpkg.org

Reply via email to