Accepting request 148341 from server:proxy

update to 3.2.6, fix for CVE-2012-5643 (forwarded request 148340 from computersalat)

OBS-URL: https://build.opensuse.org/request/show/148341
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/squid?expand=0&rev=4
This commit is contained in:
Stephan Kulow 2013-01-14 08:49:45 +00:00 committed by Git OBS Bridge
commit 3be724147d
9 changed files with 49 additions and 36 deletions

View File

@ -2,10 +2,10 @@
<HTML> <HTML>
<HEAD> <HEAD>
<META NAME="GENERATOR" CONTENT="LinuxDoc-Tools 0.9.66"> <META NAME="GENERATOR" CONTENT="LinuxDoc-Tools 0.9.66">
<TITLE>Squid 3.2.5 release notes</TITLE> <TITLE>Squid 3.2.6 release notes</TITLE>
</HEAD> </HEAD>
<BODY> <BODY>
<H1>Squid 3.2.5 release notes</H1> <H1>Squid 3.2.6 release notes</H1>
<H2>Squid Developers</H2> <H2>Squid Developers</H2>
<HR> <HR>
@ -72,7 +72,7 @@ for Applied Network Research and members of the Web Caching community.</EM>
<HR> <HR>
<H2><A NAME="s1">1.</A> <A HREF="#toc1">Notice</A></H2> <H2><A NAME="s1">1.</A> <A HREF="#toc1">Notice</A></H2>
<P>The Squid Team are pleased to announce the release of Squid-3.2.5 for <P>The Squid Team are pleased to announce the release of Squid-3.2.6 for
testing.</P> testing.</P>
<P>This new release is available for download from <P>This new release is available for download from
<A HREF="http://www.squid-cache.org/Versions/v3/3.2/">http://www.squid-cache.org/Versions/v3/3.2/</A> or the <A HREF="http://www.squid-cache.org/Versions/v3/3.2/">http://www.squid-cache.org/Versions/v3/3.2/</A> or the

View File

@ -1,3 +0,0 @@
version https://git-lfs.github.com/spec/v1
oid sha256:a823de016ca80680f979f3c74ba481775062b4de5924b21d58d1863254283912
size 2893104

View File

@ -1,20 +0,0 @@
File: squid-3.2.5.tar.bz2
Date: Mon Dec 10 10:16:15 UTC 2012
Size: 2893104
MD5 : ddb329f92056aa58a56db6a2eeea0c02
SHA1: 6b945d41a9c0e993b978186b846035a241e79a7e
Key : 0xFF5CF463 <squid3@treenet.co.nz>
fingerprint = EA31 CC5E 9488 E516 8D2D CC5E B268 E706 FF5C F463
keyring = http://www.squid-cache.org/pgp.asc
keyserver = subkeys.pgp.net
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.12 (GNU/Linux)
iQEcBAABAgAGBQJQxcSsAAoJELJo5wb/XPRjikEIANGXmlZFreiKJm7GjCf3FIOT
Relj7MfKAY6smt0RqZVFoOSnNRf59NQbkkHkDlXKOkUWwtbWRb0U0YQo5Zi0BHlf
yw4xtkw1kbTLR5TCayLvuViBjMajC0Rjca22YnK0CttijG7qQOmTtX0JVYMZZHBl
WTKv9rckXz9fmeLTCH57TGz1H1ekAzC2gmY/AzYqmlgDvuioZPnhgiQUgfqsnmII
pxwUXNldZ0eK/WOwKGi+ReyWSgR4P/nlko3K28/yomADWYSH/al1xFmVWxeJPdoq
ejzYCA1KYg4jYszscLOuUW/2ajnzXpxl3a2R7oilg6hRir22j+QZiGnbU/DItTo=
=0bG7
-----END PGP SIGNATURE-----

3
squid-3.2.6.tar.bz2 Normal file
View File

@ -0,0 +1,3 @@
version https://git-lfs.github.com/spec/v1
oid sha256:d48567bdd703e86900b9456f8bbdb554729fa15f579c6f2212bcd2ab6dca3324
size 2893158

20
squid-3.2.6.tar.bz2.asc Normal file
View File

@ -0,0 +1,20 @@
File: squid-3.2.6.tar.bz2
Date: Wed Jan 9 02:06:27 UTC 2013
Size: 2893158
MD5 : 87915ad83aebafc7af6871c770b23339
SHA1: 00d6020959bc2ebb5ce1e1037211bb143c6ec1e4
Key : 0xFF5CF463 <squid3@treenet.co.nz>
fingerprint = EA31 CC5E 9488 E516 8D2D CC5E B268 E706 FF5C F463
keyring = http://www.squid-cache.org/pgp.asc
keyserver = subkeys.pgp.net
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.12 (GNU/Linux)
iQEcBAABAgAGBQJQ7NRJAAoJELJo5wb/XPRjRe4H/RHn9uno3yFoGdGvUKISB9rK
q458KYXJpSNi5PgUjykS9p/lfqFYPaDVRjhlcwReLdVepE0TqNSB2c9sAHmjNWDv
kWT3FORiWcDe69LuYZx1q88MMJ95vBZI/c91zTFDfCMi0tq8lopfDOfU9sFhkeaB
+8vGVFOx+IF79SZCq8mqdrjGpQPapuRA9Tx0Yj49iYsyVVTkwqJafjTfTyCk0udA
GivODIFZcjvz4zDRMwsI4z7LkOsQuyfYM7jiUCOc2O9JI6WqVkor5b01CxdPtZdt
UnGfBaGMOPed6kWy45fiiTx2qLaCcwoIvXv20yFQErSfIukSwx5h5CkuGll5EpU=
=hlS1
-----END PGP SIGNATURE-----

View File

@ -2,7 +2,7 @@ Index: src/cf.data.pre
=================================================================== ===================================================================
--- src/cf.data.pre.orig --- src/cf.data.pre.orig
+++ src/cf.data.pre +++ src/cf.data.pre
@@ -1073,6 +1073,8 @@ http_access deny CONNECT !SSL_ports @@ -1081,6 +1081,8 @@ http_access deny CONNECT !SSL_ports
# Adapt localnet in the ACL section to list your (internal) IP networks # Adapt localnet in the ACL section to list your (internal) IP networks
# from where browsing should be allowed # from where browsing should be allowed
http_access allow localnet http_access allow localnet
@ -11,7 +11,7 @@ Index: src/cf.data.pre
http_access allow localhost http_access allow localhost
# And finally deny all other access to this proxy # And finally deny all other access to this proxy
@@ -2774,6 +2776,10 @@ DOC_START @@ -2782,6 +2784,10 @@ DOC_START
Instead, if you want Squid to use the entire disk drive, Instead, if you want Squid to use the entire disk drive,
subtract 20% and use that value. subtract 20% and use that value.
@ -22,7 +22,7 @@ Index: src/cf.data.pre
'L1' is the number of first-level subdirectories which 'L1' is the number of first-level subdirectories which
will be created under the 'Directory'. The default is 16. will be created under the 'Directory'. The default is 16.
@@ -2888,7 +2894,7 @@ DOC_START @@ -2896,7 +2902,7 @@ DOC_START
NOCOMMENT_START NOCOMMENT_START
# Uncomment and adjust the following to add a disk cache directory. # Uncomment and adjust the following to add a disk cache directory.
@ -31,7 +31,7 @@ Index: src/cf.data.pre
NOCOMMENT_END NOCOMMENT_END
DOC_END DOC_END
@@ -3395,7 +3401,7 @@ DOC_END @@ -3407,7 +3413,7 @@ DOC_END
NAME: logfile_rotate NAME: logfile_rotate
TYPE: int TYPE: int

View File

@ -37,7 +37,7 @@ Index: helpers/external_acl/LM_group/ext_lm_group_acl.cc
=================================================================== ===================================================================
--- helpers/external_acl/LM_group/ext_lm_group_acl.cc.orig --- helpers/external_acl/LM_group/ext_lm_group_acl.cc.orig
+++ helpers/external_acl/LM_group/ext_lm_group_acl.cc +++ helpers/external_acl/LM_group/ext_lm_group_acl.cc
@@ -545,8 +545,7 @@ main(int argc, char *argv[]) @@ -546,8 +546,7 @@ main(int argc, char *argv[])
if (!DefaultDomain) if (!DefaultDomain)
DefaultDomain = xstrdup(machinedomain); DefaultDomain = xstrdup(machinedomain);
} }
@ -90,7 +90,7 @@ Index: helpers/ntlm_auth/smb_lm/ntlm_smb_lm_auth.cc
=================================================================== ===================================================================
--- helpers/ntlm_auth/smb_lm/ntlm_smb_lm_auth.cc.orig --- helpers/ntlm_auth/smb_lm/ntlm_smb_lm_auth.cc.orig
+++ helpers/ntlm_auth/smb_lm/ntlm_smb_lm_auth.cc +++ helpers/ntlm_auth/smb_lm/ntlm_smb_lm_auth.cc
@@ -680,7 +680,7 @@ manage_request() @@ -683,7 +683,7 @@ manage_request()
int int
main(int argc, char *argv[]) main(int argc, char *argv[])
{ {

View File

@ -1,3 +1,16 @@
-------------------------------------------------------------------
Sun Jan 13 20:09:22 UTC 2013 - chris@computersalat.de
- Changes to squid-3.2.6 (09 Jan 2013):
- Regression Bug 3731: TOS setsockopt() requires int value
- Regression Bug 3712: Rotating logs overwrites the previous log
- Bug 3727: LLVM compile errors in kerberos_ldap_group
- Bug 3650: Negotiate auth missing challenge token
- Additional fixes for CVE-2012-5643 / SQUID:2012-1
* http://www.squid-cache.org/Advisories/SQUID-2012_1.txt
* http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-5643
- rebase nobuilddates, config patches
------------------------------------------------------------------- -------------------------------------------------------------------
Sun Dec 30 14:56:38 UTC 2012 - chris@computersalat.de Sun Dec 30 14:56:38 UTC 2012 - chris@computersalat.de

View File

@ -1,7 +1,7 @@
# #
# spec file for package squid # spec file for package squid
# #
# Copyright (c) 2012 SUSE LINUX Products GmbH, Nuernberg, Germany. # Copyright (c) 2013 SUSE LINUX Products GmbH, Nuernberg, Germany.
# #
# All modifications and additions to the file contributed by third parties # All modifications and additions to the file contributed by third parties
# remain the property of their copyright owners, unless otherwise agreed # remain the property of their copyright owners, unless otherwise agreed
@ -23,7 +23,7 @@ Name: squid
Summary: Squid Version 3.2 WWW Proxy Server Summary: Squid Version 3.2 WWW Proxy Server
License: GPL-2.0+ License: GPL-2.0+
Group: Productivity/Networking/Web/Proxy Group: Productivity/Networking/Web/Proxy
Version: 3.2.5 Version: 3.2.6
Release: 0 Release: 0
Url: http://www.squid-cache.org/Versions/v3/3.2 Url: http://www.squid-cache.org/Versions/v3/3.2
Source0: http://www.squid-cache.org/Versions/v3/3.2/%{name}-%{version}.tar.bz2 Source0: http://www.squid-cache.org/Versions/v3/3.2/%{name}-%{version}.tar.bz2
@ -135,8 +135,8 @@ The most important of these new features are:
* Cache Manager access changes * Cache Manager access changes
First STABLE release Date: 02 Aug 2010 First STABLE release Date: 02 Aug 2010
Latest Release: 3.2.5 Latest Release: 3.2.6
Latest Release Date: 10 Dec 2012 Latest Release Date: 08 Jan 2013
%prep %prep
%gpg_verify %{S:1} %gpg_verify %{S:1}