From 28504fd59471c0036f63f5dcdc52f263fe7c13622adb4e201715d39793a67645 Mon Sep 17 00:00:00 2001 From: Mohd Saquib Date: Thu, 2 Mar 2023 07:44:19 +0000 Subject: [PATCH] Accepting request 1068619 from home:msaquib:branches:network:vpn - update to 2.5.9: * Optional ciphers in --data-ciphers Ciphers in --data-ciphers can now be prefixed with a ? to mark those as optional and only use them if the SSL library supports them. * when compiling from a git checkout, put proper branch names into windows builds * do not include auth-token in pulled-option digest (interferes with persist-tun when auth-token is in use, GH #200). * fix corner case that might lead to leaked file descriptor * fix parser bug (parse_line()) that can lead to buffer overflows on malformed command line or server ccd file handling. Not exploitable. * pull-filter: ignore leading spaces in option names (work around server side bug with erroneous extra spaces) * push: do not add leading spaces to "out of renegotiations" pushed auth-token fix NULL pointer crash on "openvpn --show-tls" with mbedtls OBS-URL: https://build.opensuse.org/request/show/1068619 OBS-URL: https://build.opensuse.org/package/show/network:vpn/openvpn?expand=0&rev=187 --- openvpn-2.5.8.tar.gz | 3 --- openvpn-2.5.8.tar.gz.asc | 16 ---------------- openvpn-2.5.9.tar.gz | 3 +++ openvpn-2.5.9.tar.gz.asc | 16 ++++++++++++++++ openvpn.changes | 21 +++++++++++++++++++++ openvpn.spec | 2 +- 6 files changed, 41 insertions(+), 20 deletions(-) delete mode 100644 openvpn-2.5.8.tar.gz delete mode 100644 openvpn-2.5.8.tar.gz.asc create mode 100644 openvpn-2.5.9.tar.gz create mode 100644 openvpn-2.5.9.tar.gz.asc diff --git a/openvpn-2.5.8.tar.gz b/openvpn-2.5.8.tar.gz deleted file mode 100644 index b172c6d..0000000 --- a/openvpn-2.5.8.tar.gz +++ /dev/null @@ -1,3 +0,0 @@ -version https://git-lfs.github.com/spec/v1 -oid sha256:a6f315b7231d44527e65901ff646f87d7f07862c87f33531daa109fb48c53db2 -size 1875551 diff --git a/openvpn-2.5.8.tar.gz.asc b/openvpn-2.5.8.tar.gz.asc deleted file mode 100644 index 2ba3cc8..0000000 --- a/openvpn-2.5.8.tar.gz.asc +++ /dev/null @@ -1,16 +0,0 @@ ------BEGIN PGP SIGNATURE----- - -iQIzBAABCgAdFiEEVmH/adZUFVhLcg/Ai3QXs+uzswkFAmNbl+IACgkQi3QXs+uz -swmfqw/+I/X41ch6CudbrcmAvn83ja+ea1faFhWm1TNrK/Vf3shD30aeX7haCUYJ -IMPV4d+OgQftceKlsRmTkLOJW7CsSws3lV1eAirIfrxtHDF73yRHd+mFaY6iycJG -3Bm3P75FIlAo9e9huHun3quuSdr1m01+WNrJYdz2fS6SYV04KjnAaWrciJPCLXaE -HayTSvCn8+agZUJWUvIPsTtq3lLcZMxdHRCFTekeiDVPmMhRKR1G5aqFu2GTJ9j/ -Z8jOPswuzfnVVDUWo3uehjfAEI1xmNlYlg46dn+uWyUiFXH++bzJ8FSFV4bK/0vf -UahzAmWu2124J09Ij3O98gISk8j+1qAkVOlOvsZTf5y4eFR5Ef9CVWHgQ573a7QI -nO9OudjnWvD47HudHN4npol15d9DZ8r6fR1eSqG7yP7r0L2ol1yHwO+CrFXTNJXa -/LYq07iNnNzamskGshN09a0xLR4Uv2glxzuhplS91fquUgY1ykNLzbZ28QTjlKD8 -y5bJGU3wiQ057MVibfxfe3KCRRUAX3B3d340n7MxAIVraZT+gXof2+eVF+m/IK92 -mNSGHk0r530Gevwvnltexm7mqnw4sa30AgDLcAGJ7U8hmzX8bLIyHPgIrFL4j5r4 -EBtxcD8YBwt/MI2PwzJAuzmtQBqDeEXfRopxb5fKMDPkEXSwcvs= -=jlvY ------END PGP SIGNATURE----- diff --git a/openvpn-2.5.9.tar.gz b/openvpn-2.5.9.tar.gz new file mode 100644 index 0000000..6c6da55 --- /dev/null +++ b/openvpn-2.5.9.tar.gz @@ -0,0 +1,3 @@ +version https://git-lfs.github.com/spec/v1 +oid sha256:8794b7125998c68f30de654267a702b9581454ca1e7061511fcc5f99fea4bd32 +size 1840560 diff --git a/openvpn-2.5.9.tar.gz.asc b/openvpn-2.5.9.tar.gz.asc new file mode 100644 index 0000000..fa20344 --- /dev/null +++ b/openvpn-2.5.9.tar.gz.asc @@ -0,0 +1,16 @@ +-----BEGIN PGP SIGNATURE----- + +iQIzBAABCgAdFiEEVmH/adZUFVhLcg/Ai3QXs+uzswkFAmPsuVsACgkQi3QXs+uz +swmCnA/9HZonTX9ShsdohsrxMmFk0PwgOKWabjm82rFPLqcIx/3UOhEBJsmKwUnX ++aT/6qEgLTDc8O2YNofk3J+RPLbUoAf42orbCYYcz86AVKnqjBQ4Lmeo1GzkZM4F +8KqmovYGMR0taOHd/qVLOWsczYofrnDcc2gAjGJUhcrhGqajL4MX7zXMgiL/rMeZ +AsaGi95WbJaw17oWKgNb2XW2iQ1/LNtJPyB9E8L/1tIEolYrXAMrWn4L4A6h51j/ +Lo+HqRS85gawWR48g6nlP/sGmCamoQFF0SH7YX07qGL180i+ouDzH+WCGolKgJAW +V6s6TAJzXIGc7KV5Wvz6uWn0zjqXJQzXFhkWatjO+HbPKn7wnvgRFnzElTTh9Tdt +EkwtGek+/I8iQXOsLf+bk8bqv17C/6B84X52ZKxMCZU5mKF9es0SxKZK5tIR6J3q +6K/ILMLC5EFT5Vr55Ls4+upKZtcs+yvs1bo1QhM1pYJglwak1ZFDMZcXSU88I0k8 +ThGD1WGSvlHJTPu7LfRGMv57oUEJ9/5RE6ehcX/i5mg9O32ICtfS/kzKoJTAN61a +msVzBbamQafq92ZgtkCIk3v/0MXPwSHL/xIBckKM5foAVw/+zyG3kOYiMf3h1ho7 +TjiCJV1fySbazFkKEQKnHWoLSOPcpy0NWwEyNLwPmQGmANhZaLo= +=0TR5 +-----END PGP SIGNATURE----- diff --git a/openvpn.changes b/openvpn.changes index fd380d7..fa86df8 100644 --- a/openvpn.changes +++ b/openvpn.changes @@ -1,3 +1,24 @@ +------------------------------------------------------------------- +Thu Mar 2 07:34:31 UTC 2023 - Mohd Saquib + +- update to 2.5.9: + * Optional ciphers in --data-ciphers Ciphers in --data-ciphers + can now be prefixed with a ? to mark those as optional and only + use them if the SSL library supports them. + * when compiling from a git checkout, put proper branch names into + windows builds + * do not include auth-token in pulled-option digest (interferes + with persist-tun when auth-token is in use, GH #200). + * fix corner case that might lead to leaked file descriptor + * fix parser bug (parse_line()) that can lead to buffer overflows + on malformed command line or server ccd file handling. + Not exploitable. + * pull-filter: ignore leading spaces in option names (work around + server side bug with erroneous extra spaces) + * push: do not add leading spaces to "out of renegotiations" pushed + auth-token fix NULL pointer crash on "openvpn --show-tls" with + mbedtls + ------------------------------------------------------------------- Mon Feb 13 11:26:45 UTC 2023 - Thorsten Kukuk diff --git a/openvpn.spec b/openvpn.spec index 8c20884..b9d12a7 100644 --- a/openvpn.spec +++ b/openvpn.spec @@ -20,7 +20,7 @@ %define _rundir %{_localstatedir}/run %endif Name: openvpn -Version: 2.5.8 +Version: 2.5.9 Release: 0 Summary: Full-featured SSL VPN solution using a TUN/TAP Interface License: GPL-2.0-only WITH openvpn-openssl-exception