389-ds-base (2.3.1+dfsg1-1+deb12u1) bookworm; urgency=high
authorAndrej Shadura <andrewsh@debian.org>
Thu, 16 Jan 2025 16:16:37 +0000 (17:16 +0100)
committerAndrej Shadura <andrewsh@debian.org>
Thu, 16 Jan 2025 16:16:37 +0000 (17:16 +0100)
commit312d950b47dc1cf9916ef8ad5ec3a13299ff514c
treef7e74d4102e478f0f7d934a3b59272cde22dc837
parent4eced1444bd226421bb30fa13855b829c3c5d734
parent8263b384bc9926d24dd6ba80e5d9c976e2a73e8b
389-ds-base (2.3.1+dfsg1-1+deb12u1) bookworm; urgency=high

  * Non-maintainer upload.
  * Apply security patches from the upstream:
    - CVE-2024-2199 and CVE-2024-8445: Crash when modifying userPassword
      using malformed input (Closes: #1072531, #1082852).
    - CVE-2024-5953: Denial of service while attempting to log in with
      a user with a malformed hash in their password.
    - CVE-2024-3657: Failure on the directory server with specially-crafted
      LDAP query leading to denial of service.

[dgit import unpatched 389-ds-base 2.3.1+dfsg1-1+deb12u1]
128 files changed:
debian/389-ds-base-dev.install
debian/389-ds-base-libs.install
debian/389-ds-base-libs.lintian-overrides
debian/389-ds-base.default
debian/389-ds-base.dirs
debian/389-ds-base.install
debian/389-ds-base.links
debian/389-ds-base.lintian-overrides
debian/389-ds-base.postinst
debian/389-ds-base.postrm
debian/389-ds-base.prerm
debian/README.Debian
debian/changelog
debian/cockpit-389-ds.install
debian/control
debian/copyright
debian/gitlab-ci.yml
debian/patches/5610-fix-linking.diff
debian/patches/CVE-2024-2199.patch
debian/patches/CVE-2024-3657.patch
debian/patches/CVE-2024-5953.patch
debian/patches/CVE-2024-8445.patch
debian/patches/allow-newer-crates.diff
debian/patches/dont-run-rpm.diff
debian/patches/fix-saslpath.diff
debian/patches/series
debian/patches/use-packaged-rust-registry.diff
debian/python3-lib389.install
debian/rules
debian/source/format
debian/source/include-binaries
debian/source/lintian-overrides
debian/tests/control
debian/tests/setup
debian/vendor/concread/.cargo-checksum.json
debian/vendor/concread/CACHE.md
debian/vendor/concread/CODE_OF_CONDUCT.md
debian/vendor/concread/CONTRIBUTORS.md
debian/vendor/concread/Cargo.toml
debian/vendor/concread/LICENSE.md
debian/vendor/concread/Makefile
debian/vendor/concread/README.md
debian/vendor/concread/asan_test.sh
debian/vendor/concread/benches/arccache.rs
debian/vendor/concread/benches/hashmap_benchmark.rs
debian/vendor/concread/src/arcache/ll.rs
debian/vendor/concread/src/arcache/mod.rs
debian/vendor/concread/src/arcache/traits.rs
debian/vendor/concread/src/bptree/asynch.rs
debian/vendor/concread/src/bptree/impl.rs
debian/vendor/concread/src/bptree/mod.rs
debian/vendor/concread/src/cowcell/asynch.rs
debian/vendor/concread/src/cowcell/mod.rs
debian/vendor/concread/src/ebrcell/mod.rs
debian/vendor/concread/src/hashmap/asynch.rs
debian/vendor/concread/src/hashmap/impl.rs
debian/vendor/concread/src/hashmap/mod.rs
debian/vendor/concread/src/internals/bptree/cursor.rs
debian/vendor/concread/src/internals/bptree/iter.rs
debian/vendor/concread/src/internals/bptree/macros.rs
debian/vendor/concread/src/internals/bptree/mod.rs
debian/vendor/concread/src/internals/bptree/node.rs
debian/vendor/concread/src/internals/bptree/states.rs
debian/vendor/concread/src/internals/hashmap/cursor.rs
debian/vendor/concread/src/internals/hashmap/iter.rs
debian/vendor/concread/src/internals/hashmap/macros.rs
debian/vendor/concread/src/internals/hashmap/mod.rs
debian/vendor/concread/src/internals/hashmap/node.rs
debian/vendor/concread/src/internals/hashmap/simd.rs
debian/vendor/concread/src/internals/hashmap/states.rs
debian/vendor/concread/src/internals/lincowcell/mod.rs
debian/vendor/concread/src/internals/lincowcell_async/mod.rs
debian/vendor/concread/src/internals/mod.rs
debian/vendor/concread/src/lib.rs
debian/vendor/concread/src/threadcache/mod.rs
debian/vendor/concread/src/unsound.rs
debian/vendor/concread/src/unsound2.rs
debian/vendor/concread/src/unsound3.rs
debian/vendor/concread/src/utils.rs
debian/vendor/concread/static/arc_1.png
debian/vendor/concread/static/arc_2.png
debian/vendor/concread/static/cow_1.png
debian/vendor/concread/static/cow_2.png
debian/vendor/concread/static/cow_3.png
debian/vendor/concread/static/cow_arc_1.png
debian/vendor/concread/static/cow_arc_2.png
debian/vendor/concread/static/cow_arc_3.png
debian/vendor/concread/static/cow_arc_4.png
debian/vendor/concread/static/cow_arc_5.png
debian/vendor/concread/static/cow_arc_6.png
debian/vendor/concread/static/cow_arc_7.png
debian/vendor/concread/static/cow_arc_8.png
debian/vendor/concread/static/cow_arc_9.png
debian/vendor/uuid/.cargo-checksum.json
debian/vendor/uuid/CODEOWNERS
debian/vendor/uuid/CODE_OF_CONDUCT.md
debian/vendor/uuid/CONTRIBUTING.md
debian/vendor/uuid/COPYRIGHT
debian/vendor/uuid/Cargo.toml
debian/vendor/uuid/LICENSE-APACHE
debian/vendor/uuid/LICENSE-MIT
debian/vendor/uuid/README.md
debian/vendor/uuid/README.tpl
debian/vendor/uuid/benches/format_str.rs
debian/vendor/uuid/benches/invalid_parse_str.rs
debian/vendor/uuid/benches/mod.rs
debian/vendor/uuid/benches/serde_support.rs
debian/vendor/uuid/benches/slog_support/mod.rs
debian/vendor/uuid/benches/slog_support/parse_str.rs
debian/vendor/uuid/benches/valid_parse_str.rs
debian/vendor/uuid/src/adapter/compact.rs
debian/vendor/uuid/src/adapter/mod.rs
debian/vendor/uuid/src/builder/error.rs
debian/vendor/uuid/src/builder/mod.rs
debian/vendor/uuid/src/error.rs
debian/vendor/uuid/src/lib.rs
debian/vendor/uuid/src/parser/error.rs
debian/vendor/uuid/src/parser/mod.rs
debian/vendor/uuid/src/prelude.rs
debian/vendor/uuid/src/serde_support.rs
debian/vendor/uuid/src/slog_support.rs
debian/vendor/uuid/src/test_util.rs
debian/vendor/uuid/src/v1.rs
debian/vendor/uuid/src/v3.rs
debian/vendor/uuid/src/v4.rs
debian/vendor/uuid/src/v5.rs
debian/vendor/uuid/src/winapi_support.rs
debian/watch