Change logs for gnupg source package in Vivid

  • gnupg (1.4.18-7ubuntu1) vivid; urgency=medium
    
      * Resynchronise with Debian.  Remaining changes:
        - Disable mlock() test since it fails with ulimit 0 (on buildds).
        - Set gpg (or gpg2) and gpgsm to use a passphrase agent by default.
        - Only suggest gnupg-curl and libldap; recommendations are pulled into
          minimal, and we don't need the keyserver utilities in a minimal Ubuntu
          system.
        - Remove the Win32 build.
        - Build using dh-autoreconf.
        - Disable inline assembler for ppc64el.
        - Enable SHA-512 support in gpgv-udeb.
    
    gnupg (1.4.18-7) unstable; urgency=medium
    
      * import a series of DoS and vulnerabilities from upstream, including
        CVE-2014-3591
     -- Colin Watson <email address hidden>   Sun, 08 Mar 2015 09:26:02 +0000
  • gnupg (1.4.18-6ubuntu1) vivid; urgency=medium
    
      * Resynchronise with Debian (LP: #1371766).  Remaining changes:
        - Disable mlock() test since it fails with ulimit 0 (on buildds).
        - Set gpg (or gpg2) and gpgsm to use a passphrase agent by default.
        - Only suggest gnupg-curl and libldap; recommendations are pulled into
          minimal, and we don't need the keyserver utilities in a minimal Ubuntu
          system.
        - Remove the Win32 build.
        - Build using dh-autoreconf.
        - Disable inline assembler for ppc64el.
        - Enable SHA-512 support in gpgv-udeb.
    
    gnupg (1.4.18-6) unstable; urgency=medium
    
      * revert to debhelper 7
      * simplify upstream doc synchronization.
    
    gnupg (1.4.18-5) unstable; urgency=medium
    
      [ Daniel Kahn Gillmor ]
      * move to debhelper 9
      * add build and runtime support for larger RSA keys (Closes: #739424)
      * fix runtime errors on bad input (Closes: #771987)
      * deprecate insecure one-argument variant for gpg --verify of detached
        signatures (Closes: #771992)
      * sync documentation with upstream.
      * Standards-Version: bump to 3.9.6 (no changes needed).
    
      [ David Prévot ]
      * Update POT and PO files, and ensure the translations get rebuild
      * Update French translation (Closes: #769571)
      * Update Danish Translation, thanks to Joe Hansen
      * Update Ukrainian translation, thanks to Yuri Chornoivan
      * Update Russian translation, thanks to Ineiev
      * Update Chinese (traditional) translation, thanks to Jedi Lin
      * Update Italian translation, thanks to Milo Casagrande
      * Update Polish translation, thanks to Jakub Bogusz
      * Update Spanish translation, thanks to Manuel "Venturi" Porras Peralta
        (Closes: #770726)
      * Update Dutch translation, thanks to Frans Spiesschaert (Closes: #770816)
      * Update Czech translation, thanks to Roman Pavlik
     -- Colin Watson <email address hidden>   Tue, 20 Jan 2015 17:20:15 +0000
  • gnupg (1.4.18-4ubuntu2) vivid; urgency=medium
    
      * Enable SHA-512 support in gpgv-udeb, since Ubuntu's Release.gpg is
        signed using that digest algorithm (thanks, Nathan Rennie-Waldock;
        LP: #1403982).
     -- Colin Watson <email address hidden>   Wed, 14 Jan 2015 11:23:40 +0000
  • gnupg (1.4.18-4ubuntu1) vivid; urgency=medium
    
      * Resynchronise with Debian. Remaining changes:
        - Disable mlock() test since it fails with ulimit 0 (on buildds).
        - Set gpg (or gpg2) and gpgsm to use a passphrase agent by default.
        - Only suggest gnupg-curl and libldap; recommendations are pulled into
          minimal, and we don't need the keyserver utilities in a minimal Ubuntu
          system.
        - Remove the Win32 build.
        - Build using dh-autoreconf
        - Disable inline assembler for ppc64el.
    
    gnupg (1.4.18-4) unstable; urgency=medium
    
      * Remove Daniel Leidert from Uploaders at his request.
      * fix typo in gpg.info (closes: #760288)
      * Fix regression in keyserver filter (closes: #760392)
      * added myself to uploaders
    
    gnupg (1.4.18-3) unstable; urgency=medium
    
      [ Eric Dorland ]
      * debian/gbp.conf: Add git-buildpackage config and use pristine-tar.
      * debian/control: Switch to git for VCS.
      * debian/control: Add Eric Dorland to Uploaders.
      * Run wrap-and-sort over the debian files.
    
      [ Daniel Kahn Gillmor ]
      * check signatures on upstream tarballs (closes: #711744).
    
      [ Thijs Kinkhorst ]
      * Document possible license of doc/OpenPGP (closes: #745408).
    
    gnupg (1.4.18-2) unstable; urgency=medium
    
      [ Cyril Brulebois ]
      * Fix gpgv-udeb by adding --enable-sha256, which is needed to validate
        Release files. (Closes: 753985).
      * Run the check target in the udeb build directory.
    
    gnupg (1.4.18-1) unstable; urgency=medium
    
      * New upstream release.
        - Drops obsolete Russian manpage (closes: #737033).
      * Add parcimonie to Suggests (closes: #752260).
      * Build udebs with --enable-minimal.
     -- Marc Deslauriers <email address hidden>   Thu, 30 Oct 2014 15:19:49 -0400
  • gnupg (1.4.16-1.2ubuntu1) utopic; urgency=medium
    
      * Resynchronise with Debian. Remaining changes:
        - Disable mlock() test since it fails with ulimit 0 (on buildds).
        - Set gpg (or gpg2) and gpgsm to use a passphrase agent by default.
        - Only suggest gnupg-curl and libldap; recommendations are pulled into
          minimal, and we don't need the keyserver utilities in a minimal Ubuntu
          system.
        - Remove the Win32 build.
        - Build using dh-autoreconf
        - Disable inline assembler for ppc64el.
    
    gnupg (1.4.16-1.2) unstable; urgency=high
    
      * Non-maintainer upload with maintainers approval.
      * CVE-2014-4617: Avoid DoS due to garbled compressed data packets.
        Apply upstream commit to stop a possible DoS using garbled compressed
        data packets which can be used to put gpg into an infinite loop.
        (Closes: #752497)
    
    gnupg (1.4.16-1.1) unstable; urgency=low
    
      * Non-Maintainer Upload.
      * Initialize trustdb before clearing it (Closes: #735363)
     -- Marc Deslauriers <email address hidden>   Thu, 26 Jun 2014 14:41:40 -0400