summaryrefslogtreecommitdiff
AgeCommit message (Collapse)AuthorFilesLines
2014-05-29exim4 (4.82.1-1+dyson1) unstable; urgency=mediumHEADdyson/4.82.1-1+dyson1masterIgor Pashev1-0/+6
* Package for Dyson
2014-05-29Merge git://anonscm.debian.org/pkg-exim4/exim4Igor Pashev11-81/+102
Conflicts: debian/changelog debian/control debian/patches/series
2014-05-28exim 4.82.14.82.1-1Andreas Metzler1-0/+10
New upstream security release, fixing CVE-2014-2957. This is a remote code execution flaw in Exim version 4.82 (only) when built with DMARC support. Debian's binary packages are not built with DMARC support and therefore not vulnerable. However we want to fix this for people building their own binaries based on Debian's packaging.
2014-04-20Delete unapplied patch 65_saverandomseed.dpatchAndreas Metzler1-73/+0
Drop 65_saverandomseed.dpatch from source. It was never applied in a binary upload and is useless with gnutls v3 (nettle instad of gcrypt).
2014-04-12Rebuild against GnuTLS v3.4.82-8Andreas Metzler1-0/+7
2014-04-12Merge branch 'experimental'Andreas Metzler2-1/+13
Conflicts: debian/changelog
2014-04-06Bump exim4-base's dep on exim4-config to >= 4.82.4.82-7Andreas Metzler2-3/+19
4.82 deprecated $tls_bits, $tls_certificate_verified, $tls_cipher, $tls_peerdn, $tls_sni and introduced tls_in_*/tls_out_* variants of these variables which describe the respective status of the current incoming or outgoing TLS connection. The rationale for this is that a single exim process can now use both an incoming (message reception) and outgoing TLS connection (callout or cutthrough delivery) concurrently. With this change the "old" variables were mapped to tls_in_*, i.e. they expand to empty values on outgoing connections. (This is not yet documented.) Outgoing tls-connections can therefore not be detected by nonempty $tls_cipher anymore. exim4-config << 4.82 used this mechanism to prevent sending of plaintext AUTH information on unencrypted connections. Force a lockstep upgrade of exim4-config by bumping the version of exim4-base's dependency on exim4-config to >= 4.82. Closes: #742901, #736081
2014-04-05Build against GnuTLS v3.4.82-6Andreas Metzler2-3/+7
Now that GMP has been relicensed to LGPLv3+/GPLv2+ build exim against GnuTLS v3.
2014-02-25autopkgtest invokes python, add dependeny.Andreas Metzler2-1/+9
debian/tests/control: Add missing python test dependency, as debian/tests/security calls python. Closes: #740092
2014-02-12Upgrade to libdb5.34.82-5Andreas Metzler3-2/+10
Upgrade to libdb5.3-dev. Closes: #738637 Be paranoid and bump BDBVERSION in exim4-base.postinst from 3.0 (no idea why this did not read 5.1) to 5.3, therefore purging hints db on upgrades.
2014-02-10Mark 80_fix_ftbfs_hurd.diff as applied upstream.Andreas Metzler1-1/+1
2014-02-09Mark 80_fix_ftbfs_hurd.diff as forwarded.Andreas Metzler1-1/+1
2014-02-09Upload to unstable.4.82-4Andreas Metzler1-2/+2
2014-02-09Check gpg sig.Andreas Metzler4-1/+6
Add debian/upstream-signing-key.pgp (listed in debian/source/include-binaries) and update watchfile to check upstream signature.
2014-02-09GNU/hurd does not support IPV6_TCLASS yet.Andreas Metzler3-0/+21
80_fix_ftbfs_hurd.diff by Samuel Thibault fixes FTBFS on GNU/hurd due to missing support for TCLASS. Closes: #738445
2014-01-05exim4_files -> exim4-config_filesAndreas Metzler2-2/+9
Correct title/name of exim4-config_files(5). (Thanks, Heiko Schlittermann) Closes: #734212
2014-01-04exim4 (4.82-3+dyson1) unstable; urgency=lowdyson/4.82-3+dyson1Igor Pashev1-2/+4
* Package for Dyson * Added dyson-version.patch: fix building from git, but not from Exim git * Added SMF service * Build depends on dh-smf [illumos-any] * Build depends on libkstat-dev [illumos-any] * Made update-exim4defaults noop on Dyson * exim4-config supports SMF service * Added debian/README.SMF
2014-01-04SMF service is readyIgor Pashev4-5/+115
2014-01-04Build really depends on dh-smf [illumos-any]Igor Pashev1-1/+1
2014-01-04Added debian/README.SMFIgor Pashev2-0/+28
2014-01-03Made update-exim4defaults noop on DysonIgor Pashev3-2/+12
2014-01-02Added SMF service (template). Build depends on dh-smf [illumos-any]Igor Pashev4-0/+114
2014-01-01Build depends on libkstat-dev [illumos-any]Igor Pashev2-0/+2
2014-01-01fix building from git, but not from Exim gitIgor Pashev3-0/+29
2013-11-27Upload to unstable.4.82-3Andreas Metzler1-0/+6
2013-11-09Pull multiple fixes from GITexperimental/4.82-2Andreas Metzler5-0/+187
Pull two post-release fixes from upstream git master: + 75_unbind-ldap-connection.diff - Only unbind ldap connection if bind succeeded. + 77_close-the-server-side-of-TLS.diff - Correctly close the server side of TLS when forking for delivery. Pull 76_fix_ldap_option_setting.diff from Todd Lyons testing tree. See <http://mid.gmane.org/20131029200309.GA277075%40zedat.fu-berlin.de>.
2013-11-09upload to experimentalexperimental/4.82-1Andreas Metzler1-2/+2
2013-11-09Fix apropos by changing symlinks.Andreas Metzler2-2/+5
Drop exim4-config_files.5 symlinks for local_host_whitelist and local_sender_whitelist, add symlinks for host_local_deny_exceptions and sender_local_deny_exceptions instead. Closes: #661365
2013-11-09Bump Standards-VersionAndreas Metzler2-1/+7
2013-10-26New upstream version 4.82 rc5experimental/4.82_rc5-1Andreas Metzler1-0/+6
2013-10-12exim4 (4.82~rc3-1)4.82_rc3-1Andreas Metzler1-3/+2
2013-10-12send client certificates.Andreas Metzler4-0/+28
Add macros for sending a client certificate on outgoing TLS connections. (REMOTE_SMTP_TLS_CERTIFICATE/REMOTE_SMTP_PRIVATEKEY, REMOTE_SMTP_SMARTHOST_TLS_CERTIFICATE/REMOTE_SMTP_SMARTHOST_PRIVATEKEY) Closes: #677826
2013-10-12document 4.82~rc3 upstream changesAndreas Metzler1-0/+13
2013-10-03exim4 (4.82~rc2-1) experimental; urgency=low4.82_rc2-1Andreas Metzler3-36056/+4
Drop 80_addmanuallybuiltdocs.diff
2013-09-30Generate 2048bit key by default. LP: #1200581Andreas Metzler2-2/+8
2013-09-29fix typo.4.82_rc1-1Andreas Metzler1-5/+6
2013-09-29Add txt docs.Andreas Metzler3-0/+36056
80_addmanuallybuiltdocs.diff: Upstream rc tarball ships empty filter.txt and spec.txt, replace these with correct handbuilt versions.
2013-09-28Add bug closers.Andreas Metzler1-0/+6
2013-09-28Use tls_in_cipher/tls_out_cipher expansion.Andreas Metzler4-15/+18
Appling upstream's default configuration changes to Debian change 30_exim4-config_examples to use tls_in_cipher/tls_out_cipher instead of tls_out_cipher. - exim4-config therefore Breaks exim daemon << 4.82~rc1.
2013-09-28Drop unnecessary patches / unfuzz patches.Andreas Metzler18-922/+160
2013-09-28Start preparing 4.82_RC1 upload.Andreas Metzler1-0/+7
2013-09-14exim4 (4.80-9) unstable; urgency=low4.80-9Andreas Metzler1-0/+6
2013-09-01Upload to experimental4.80-8Andreas Metzler1-2/+3
2013-09-01tests/security is also a /bin/sh scriptAndreas Metzler2-2/+3
tests/daemon and tests/security do not use bashisms, change shebang to /bin/sh.
2013-09-01change shebang to /bin/shAndreas Metzler2-1/+2
tests/daemon does not bashisms, change shebang to /bin/sh.
2013-09-01tests/CVE-2010-4344.py is GPLv2. Add license header.Andreas Metzler2-0/+3
2013-09-01Merge autopkgtests from UbuntuAndreas Metzler6-0/+166
Merge autopkgtests from Ubuntu (Thanks Yolanda Robla for the pointer) Closes: #710018
2013-08-16filename is README.Debian.gzAndreas Metzler2-1/+3
eu.po: Fix last reference to /usr/share/doc/exim4-base/README.Debian (without either .html or .gz suffix). Closes: #394975
2013-08-16Remove pidfile after stopping the daemon.Andreas Metzler2-0/+6
Remove pidfile after stopping the daemon. Since exim does not remove it itself we do it in the initscript. Closes: #702988
2013-08-12bump standards-version.Andreas Metzler1-1/+1