[SCM] Debian packaging for XMLTooling-C branch, lenny, created. upstream/1.0-63-g2c81387
Russ Allbery
rra at debian.org
Fri Sep 18 01:54:25 UTC 2009
The branch, lenny has been created
at 2c8138735352eef7e8426f68c52af728866cab56 (commit)
- Shortlog ------------------------------------------------------------
commit 2c8138735352eef7e8426f68c52af728866cab56
Author: Russ Allbery <rra at debian.org>
Date: Thu Sep 17 18:53:17 2009 -0700
Redo how the security fixes are presented in the changelog
commit 88343a48ae479c277133c15f5aed8690512a0cdd
Author: Russ Allbery <rra at debian.org>
Date: Thu Sep 17 13:41:36 2009 -0700
Merge upstream changes between 1.2 and 1.2.2
* Merge upstream changes between 1.2 and 1.2.2.
- SECURITY: Correctly handle malformed URLs, closing a possibly
exploitable buffer overflow.
- SECURITY: Correctly honor the "use" attribute of <KeyDescriptor>
SAML metadata to honor restrictions to signing or encryption. This
is a partial fix; the complete fix also requires a new version of
the OpenSAML library.
-----------------------------------------------------------------------
--
Debian packaging for XMLTooling-C
More information about the Pkg-shibboleth-devel
mailing list