Commit Graph

50 Commits

Author SHA1 Message Date
谢炜 a68d38f682 默认不应用nss与gnutls打包补丁,打包过程中再应用 2023-10-19 12:07:33 +08:00
zhaikangning b3e836a3d7 update changlog curl-7.68.0-ok5.4 2023-09-19 10:40:33 +08:00
zhaikangning d03be5df49 fix(rules):(#187860) 2023-09-19 10:35:53 +08:00
zhaikangning aac955081b
!29 修复安全漏洞CVE-2023-27536
Merge pull request !29 from yaphets_z/openkylin/yangtze
2023-08-09 03:14:28 +00:00
zhaikangning 9f3e014e01
!27 修复安全漏洞CVE-2023-23916
Merge pull request !27 from whuyxa/openkylin/yangtze
2023-08-09 02:55:22 +00:00
yaphets-z ed6fc35d07 Repair CVE-2023-27536 2023-08-09 00:24:48 +08:00
whuyxa 5d29d8ab34 Repair CVE-2023-23916 2023-08-06 22:31:02 +08:00
zhaikangning cffffb273f
!25 CVE-2023-27534 安全更新
Merge pull request !25 from 周逸林/openkylin/yangtze
2023-07-30 12:53:14 +00:00
zyl 475059a423 修复CVE-2023-27534 ylzhou@whu.edu.cn
Sun, 30 Jul 2023 20:45:44 +0800
2023-07-30 20:46:08 +08:00
zhaikangning 01a24657ba
!11 CVE-2023-27538
Merge pull request !11 from icehole/openkylin/yangtze
2023-07-05 08:57:41 +00:00
icehole 8262994e72
update debian/changelog.
Signed-off-by: icehole <zmmxx@126.com>
2023-06-25 06:14:40 +00:00
icehole df20437aeb
update debian/changelog.
Signed-off-by: icehole <zmmxx@126.com>
2023-06-25 06:11:55 +00:00
icehole 441be574d0
update debian/changelog.
Signed-off-by: icehole <zmmxx@126.com>
2023-06-25 05:57:32 +00:00
icehole 18beffcacd
update lib/url.c.
Signed-off-by: icehole <zmmxx@126.com>
2023-06-25 04:54:39 +00:00
zhaikangning 59b772c35d !6 触发自动编包
* nothing but rebuild
2023-04-26 01:33:37 +00:00
zhaikangning 27b8c2d47f openldap: replace ldap_ prefix on private functions
Since openldap itself uses that prefix and with OpenĹDAP 2.5.4 (at
least) there's a symbol collision because of that.

The private functions now use the 'oldap_' prefix where it previously
used 'ldap_'.

github:https://github.com/curl/curl/pull/7005/commits
同步上游patch,解决编译问题:OpenĹDAP 2.5.4以及之后的版本因为部分函数命名冲突
2023-04-24 15:31:05 +08:00
liwenjie f01eeff54e CVE-2022-43552 安全更新:HTTP Proxy deny use-after-free. 2023-04-23 03:02:37 +00:00
liwenjie fb34ccfc76 update debian/changelog 2023-04-23 03:02:37 +00:00
liwenjie 5ecf029ee9 Repair CVE-2022-32206、CVE-2022-32208、CVE-2022-35252、CVE-2022-32221 2023-04-23 03:02:37 +00:00
liwenjie c32c45d15e Repair CVE-2022-27781、CVE-2022-27782 2023-04-23 03:02:37 +00:00
liwenjie 4889cdfa7c Repair CVE-2022-27774、CVE-2022-27775、CVE-2022-27776 2023-04-23 03:02:37 +00:00
liwenjie 3cb696cabc Repair CVE-2022-22576 2023-04-23 03:02:37 +00:00
liwenjie e217d423b7 openssl-use-OPENSSL_init_ssl-with-1.1.0 2023-04-23 03:02:37 +00:00
liwenjie c86a110111 Repair CVE-2021-22946、CVE-2021-22947 2023-04-23 03:02:37 +00:00
liwenjie 3fc587bd5f Repair CVE-2021-22924、CVE-2021-22925 2023-04-23 03:02:37 +00:00
liwenjie 23f277cb6b Repair CVE-2021-22898 2023-04-23 03:02:37 +00:00
liwenjie 69f172f2ce Repair CVE-2021-22890 2023-04-23 03:02:37 +00:00
liwenjie dfd3f7bbda Repair CVE-2021-22876 2023-04-23 03:02:37 +00:00
liwenjie 4915f017ee Repair CVE-2020-8284、CVE-2020-8285、CVE-2020-8286 2023-04-23 03:02:37 +00:00
liwenjie d0b4e70e20 Repair CVE-2020-8231 2023-04-23 03:02:37 +00:00
liwenjie 47acf01bf3 Repair CVE-2020-8177 2023-04-23 03:02:37 +00:00
liwenjie 70159f52e9 Repair CVE-2020-8169 2023-04-23 03:02:37 +00:00
handsome_feng dc3004c8e7 Revert "Rebuild with no changes"
This reverts commit bd9e7352aa.
2023-04-23 11:00:39 +08:00
handsome_feng bd9e7352aa Rebuild with no changes 2023-04-21 19:41:16 +08:00
luzhiping 7efd8e8685 update info 2022-08-22 16:34:21 +08:00
luoyaoming 13b15d0cb9 debian/rules: fix openkylin vendor 2022-06-06 11:03:21 +08:00
luoyaoming ba8bd7da00 debian/rules: fix openkylin vendor 2022-06-03 14:35:30 +08:00
openKylinBot 1aff21f6d4 changed debian/source/format to native 2022-05-13 20:09:08 +08:00
openKylinBot 69aab3b1e1 apply patches 2022-05-13 20:09:08 +08:00
openKylinBot ca8d9ca691 format patches 2022-05-13 20:09:08 +08:00
Ramakrishnan Muthukrishnan ba5d1c2c7d Build with NSS.
Origin: vendor
Forwarded: not-needed
Reviewed-by: Alessandro Ghedini <ghedo@debian.org>
Last-Update: 2015-08-12

Gbp-Pq: Name 99_nss.patch
2022-05-13 20:09:08 +08:00
Ramakrishnan Muthukrishnan 0e8c584d39 Build with GnuTLS.
Origin: vendor
Forwarded: not-needed
Reviewed-by: Alessandro Ghedini <ghedo@debian.org>
Last-Update: 2018-05-23

Gbp-Pq: Name 90_gnutls.patch
2022-05-13 20:09:08 +08:00
Benjamin Moody 2749cb5e03 In order to (partially) multi-arch-ify curl-config, remove all
mention of @includedir@ and @libdir@ from the script.  On Debian, the actual
header and library directories are architecture-dependent, but will always be
in the C compiler's default search path, so -I and -L options are not
necessary (and may be harmful in multi-arch environments.)
Origin: vendor
Bug-Debian: http://bugs.debian.org/731998
Forwarded: not-needed
Reviewed-by: Alessandro Ghedini <ghedo@debian.org>
Last-Update: 2017-01-10

Gbp-Pq: Name 11_omit-directories-from-config.patch
2022-05-13 20:09:08 +08:00
Alessandro Ghedini ef0e400332 Enable zsh completion generation
Origin: vendor
Forwarded: not-needed
Reviewed-by: Alessandro Ghedini <ghedo@debian.org>
Last-Update: 2016-08-03

Gbp-Pq: Name 08_enable-zsh.patch
2022-05-13 20:09:07 +08:00
Alessandro Ghedini 2e08d61d22 Do not disable debug symbols without --enable-debug
Origin: vendor
Bug-Debian: http://bugs.debian.org/693110
Forwarded: not-needed
Reviewed-by: Alessandro Ghedini <ghedo@debian.org>
Last-Update: 2012-11-16

Gbp-Pq: Name 07_do-not-disable-debug-symbols.patch
2022-05-13 20:09:07 +08:00
Ubuntu Developers e8cf753026 Always disable valgrind tests
Origin: vendor
Bug-Debian: http://bugs.debian.org/690968
Forwarded: not-needed
Last-Update: 2012-10-22

Gbp-Pq: Name 06_always-disable-valgrind.patch
2022-05-13 20:09:07 +08:00
Alessandro Ghedini 8657b98686 Work around libtool --as-needed reordering bug
Origin: vendor
Bug-Debian: http://bugs.debian.org/347650
Forwarded: not-needed
Reviewed-by: Alessandro Ghedini <ghedo@debian.org>
Last-Update: 2016-08-03

Gbp-Pq: Name 04_workaround_as_needed_bug.patch
2022-05-13 20:09:07 +08:00
Dirkjan Bussink 2562018221 [PATCH] Ensure TLS 1.3 works with GnuTLS
When SRP is requested in the priority string, GnuTLS will disable
support for TLS 1.3. Before this change, curl would always add +SRP to
the priority list, effectively always disabling TLS 1.3 support.

With this change, +SRP is only added to the priority list when SRP
authentication is also requested. This also allows updating the error
handling here to not have to retry without SRP. This is because SRP is
only added when requested and in that case a retry is not needed.

Gbp-Pq: Name git_tls13_gnutls.patch
2022-05-13 20:09:07 +08:00
openKylinBot 15ccb0d8ef Import Debian changes 7.68.0-ok1
curl (7.68.0-ok1) yangtze; urgency=medium

  * Build for openKylin.
2022-05-13 20:08:49 +08:00
openKylinBot c42ee20ced Import Upstream version 7.68.0 2022-05-13 20:08:48 +08:00