From edaa3c6bd025e0bd94642e75f6bff639bde70a559992754dd3f24bad4bb3f558 Mon Sep 17 00:00:00 2001 From: Dominique Leuenberger Date: Wed, 16 Mar 2016 09:35:38 +0000 Subject: [PATCH] Accepting request 370476 from GNOME:Apps Resub with freshly downloaded keyring. OBS-URL: https://build.opensuse.org/request/show/370476 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/pidgin-otr?expand=0&rev=22 --- pidgin-otr-4.0.1.tar.gz | 3 -- pidgin-otr-4.0.1.tar.gz.asc | 7 ---- pidgin-otr-4.0.2.tar.gz | 3 ++ pidgin-otr-4.0.2.tar.gz.asc | 17 ++++++++ pidgin-otr.changes | 13 ++++-- pidgin-otr.keyring | 84 +++++++++++++++++++++++++------------ pidgin-otr.spec | 11 +++-- 7 files changed, 92 insertions(+), 46 deletions(-) delete mode 100644 pidgin-otr-4.0.1.tar.gz delete mode 100644 pidgin-otr-4.0.1.tar.gz.asc create mode 100644 pidgin-otr-4.0.2.tar.gz create mode 100644 pidgin-otr-4.0.2.tar.gz.asc diff --git a/pidgin-otr-4.0.1.tar.gz b/pidgin-otr-4.0.1.tar.gz deleted file mode 100644 index a7cea7e..0000000 --- a/pidgin-otr-4.0.1.tar.gz +++ /dev/null @@ -1,3 +0,0 @@ -version https://git-lfs.github.com/spec/v1 -oid sha256:1b781f48c27bcc9de3136c0674810df23f7d6b44c727dbf4dfb24067909bf30a -size 496879 diff --git a/pidgin-otr-4.0.1.tar.gz.asc b/pidgin-otr-4.0.1.tar.gz.asc deleted file mode 100644 index 551c986..0000000 --- a/pidgin-otr-4.0.1.tar.gz.asc +++ /dev/null @@ -1,7 +0,0 @@ ------BEGIN PGP SIGNATURE----- -Version: GnuPG v1.4.11 (GNU/Linux) - -iD8DBQBURiFR3tZOuyuofFwRAnVjAJ45uY5oAQ9FweF81uwVVmYdlE9S0ACePktI -K1l18MiFLbAmWgN1TYCSz7U= -=4jaA ------END PGP SIGNATURE----- diff --git a/pidgin-otr-4.0.2.tar.gz b/pidgin-otr-4.0.2.tar.gz new file mode 100644 index 0000000..fa6b5b3 --- /dev/null +++ b/pidgin-otr-4.0.2.tar.gz @@ -0,0 +1,3 @@ +version https://git-lfs.github.com/spec/v1 +oid sha256:f4b59eef4a94b1d29dbe0c106dd00cdc630e47f18619fc754e5afbf5724ebac4 +size 515627 diff --git a/pidgin-otr-4.0.2.tar.gz.asc b/pidgin-otr-4.0.2.tar.gz.asc new file mode 100644 index 0000000..ef8c653 --- /dev/null +++ b/pidgin-otr-4.0.2.tar.gz.asc @@ -0,0 +1,17 @@ +-----BEGIN PGP SIGNATURE----- +Version: GnuPG v1 + +iQIVAwUAVt4GmfJN4I9CwqutAQLYgQ/+MXUFZJTMJs/lltwDDkKI0nXIK4w9BuTa +/SnYuSE9b/PxCE/X75XHYj60YyG8O2rIR+lH0poGXMleHTgVhQTeOXq+YYkAV0G5 +mfPluUSaT4Z5slWxArIeA6Jou1LYRs1Byn31JeJg9s+/KxRzE2qk0N9Ib/Aa2g1o +G89Hm0oRyvG/WQJTlCWV2OWSZUzmdwDKt86uBiAAtlAqzp17txEQvP/KQTRnelBN +bPtNfP09YkD8D7h99ewaIUysVNJOigMIau9uip0wwFf+b2mKIfJ26cdi04Ws3tz/ +ipeDnnSLn0gGhEDqeXPVtKKehKxZ1zDgtGGSqPVTmufB31iPC1wFh5Sez6tBpD+9 +s/1JqkMZWYwLwL9Mf3T2hmDJdqGFeAXouQoXTNToN3IPo+tJyPeTtoiwZJEcmHPE +rIPL4JI8Ey97Dc0UnxOqXBJF5SKOXO3m2mEvtWYJSWmnhaRxKS227J+pQa7J0V2c +Rr4AbApG2YVPs6rOuZlyrLlqFWeQ3MaXlfnJNhArWOAYjZQdKfSeJyAg95LX0TgD +V1DwARh8DD3/5mQODe9kIla9Xf9B2pMkfNrIso/UnkqQucswqp0zGMk1c8gUd9Gf +l+ab3DZPSDOx4OpB7nBffJANrbBJkPJDwtyDyX6wGmUWePGKDkyqt4z/rPOask3D +8SbOVKjteyg= +=B3pf +-----END PGP SIGNATURE----- diff --git a/pidgin-otr.changes b/pidgin-otr.changes index 08a70ca..8b18682 100644 --- a/pidgin-otr.changes +++ b/pidgin-otr.changes @@ -1,3 +1,10 @@ +------------------------------------------------------------------- +Fri Mar 11 07:31:22 UTC 2016 - astieger@suse.com + +- Update to version 4.0.2 (boo#970498, CVE-2015-8833): + + Fix use-after-free issue during SMP (CVE-2015-8833). + + Updated translations. + ------------------------------------------------------------------- Tue Nov 25 12:44:11 UTC 2014 - dimstar@opensuse.org @@ -7,9 +14,9 @@ Tue Nov 25 12:44:11 UTC 2014 - dimstar@opensuse.org ------------------------------------------------------------------- Tue Oct 21 19:15:45 UTC 2014 - andreas.stieger@gmx.de -- pidgin-otr 4.0.1: - - Fix max message size for Novell Groupwise. - - Updated translations. +- Update to version 4.0.1: + + Fix max message size for Novell Groupwise. + + Updated translations. - Verify source signature: add pidgin-otr.keyring. - Drop pidgin-otr-fix-max-msg-length-groupwize.patch: fixed upstream. diff --git a/pidgin-otr.keyring b/pidgin-otr.keyring index 80fc17a..4bf6e65 100644 --- a/pidgin-otr.keyring +++ b/pidgin-otr.keyring @@ -1,30 +1,60 @@ -----BEGIN PGP PUBLIC KEY BLOCK----- -Version: SKS 1.1.0 +Version: GnuPG v1 -mQGiBEGuU5kRBACNWahvxEOQ1QN0+ds1ji5JR0VtAyPhOQn3m1FSexgyzvNzVClYpx/7nvli -mKabImUHQRaOEln+7/lFz3aoMyHQUJaa8ftc6GwgpBCOQkk8itPUv2TgjkQb/DrCtIhGgRay -tph35i8gCHlU7Dy7HPIfCrfhtDgxHAOLAJEx+qWvlwCg1sgrsDjCQ9w24m1z/zMgEeHcwsME -AIqt6SqLlQqsNrj+cLyFjOLUN1u/v4HMxq2HK04qiusNye+/RwNI0suZX2hPy9NE6COfOJnP -+j+Tyl22Xgeq1YFt+NJXUeV4iJ/vpT86stoC0GDNyV7MMSee0QS+S70vpOK73EQd2CH9LDks -VEuEhWeUUWETs7brRFpU55WO/Fy7A/4uv/jypgnAWGdq6908MTU3PCjQ/nOYH55xKELaasAZ -3Zsqe+EYn87JTyaL2NQvguWX0zVZCzDlM1MtQizEOZbWeiOhyYCzqIVNf9Ao5SSWu2czrLx6 -E93kI57EezGhgOaZozZ9/l37F/pENHcu4t15JIcBD4YSdjUZqGgPSM4sY7QhT1RSIERldiBU -ZWFtIDxvdHJAY3lwaGVycHVua3MuY2E+iEYEEBECAAYFAkGvc7sACgkQyyhygoBySXsh6ACg -1DGTgtga5e1ci0GBdYV4RoTC3xQAoJkIq/VjnuFtigVmHrBBu2nLW0a+iF4EExECAB4FAkGu -U5kCGwMGCwkIBwMCAxUCAwMWAgECHgECF4AACgkQ3tZOuyuofFwKRgCdHe4ozbAEpC7B67N7 -Dro51LJP8W0AoItbsNlIkaCp0bZIVFyrJ+ycLnoZiJwEEAEBAAYFAkGuV2QACgkQRlGJMStI -9vXhYgP/cEtYz+DBC/FWtI8TYScwZQCZh15l82lUao7fTi98++URArAUl0CyCdRnS9qjiS5a -VAbG6fcbgZyGtBLF/8d4+KrfBJgyLk/I6/n5M1A9zh0E7dXjIcP6ngwD40Jrr+DhV98FirK3 -qWbpasWplgh9LqQbmtsd6kjbO5xeF3Wc6/OJAhwEEAECAAYFAk3mCdcACgkQUn55uqO1OZhC -3A//dRx6enzMg8J1X3x5can77DbjmxF10gk6FstNbPGqp7EyLNo00yUGO0dfGYGQexR7jXEl -jGrpkTj9IFu9CNJDV4g2GL7w7hQ0L3WCUf+MVTBmWLKK3km3qh4qkmlBejg5pSt/3mBNypSE -sugAw1EGlLOdCwUhMLWbPRGCM8XhHG8K33cWUaizxyGUB+XEjNIOWF/NVVAhdasmC5M2Eo5/ -Tx/lD08bQUVDX1o4dcwbADWXtaa6QtucJEAbs9AggiGUOpeOyEcq5NZ5NtmsTYsvvjwBLdkw -gtjMdSfJe3+1oaWsEXuseu14Z7IGL6A6Deu9A/FgabNc1hx9y5XdH+uVe27t/JBmV7/o+5t8 -9DdzQl0Iv9YBZn6CeknAN2UEjvISot01ijIfZsmjARE9Yib0epgIRKKXTFrgeRmNcHYZiiJP -q9kdJyajXvanD+QC55SetFqJwZ/0t4MLv/xAcSx4qR5YdCh240Pb6HO8sDj8egFIsIqwLhQq -7OuaF+2Wq9tAd1hZvUZNVkHdHtTfJYCUjx50FyvWkz/mtlB90gXIUT+Wk+cojEAW/1kO3CZZ -ICbO7/68p8BUeANa95uH5IfFpJZaqLipwoF+Z/PPKnUbB0rOf8F+3fFETBFM1UfHMTRm8jcw -/kSx/QnJ+k7XSc6C3/rHwoUOd5Q/sCeQA5/hLJg= -=cyu2 +mQINBFbcavcBEAC/msxCfUylpRAFSJSoosbl8VPxPAWSse2uuGpb3cuV4trOWxpa +r97C+eAFJokovFGbhPAYRxoOmLEpgR0T8UhoWk4UtnDfTBoi7vIrq4o0AbClSAuG +QVZIq8/0MmLsV95CDECpHgEOkvWmNgB0QdeWfTOF6KSr4udvtcIzX2Gvqdruj0bY +AkrV3QlX+xVAdvXDnxh/aX5lzRpUaqSUEw3R2QfQKdo5AMT4aqlJgUvDxgGzs4Ju +9yNFdfrhziy5/EoO1uEvAX4XMdZIDVNZaF/PARa0IVP9zO4kBCjrWA38R+pAei7j +wSaxBmfWlZdb98zV69Ok2sbJrA4HRuA38cjhoFXzGJ+j3HZMEpsKIQgf35m2d/fj +zONRisKC9/9nwOtvtiaRTpN6N0bzhe0X/cbcR4LRxDWm5BuRV96EyWmG4Asy51c6 +nuDCKE1sAtdclgwMees+EYdipa/CbnsynnNHiD+Ms9wdvSm3D0piW+NITaSJGYik +pb5FvdFDNOa7e2DKbwQrudSWwDdLhPJOtk47OQUnmZaA0aBY0VuzW4s+8vlT0qqB +79r8wiYiyeHs+r+CtowBx73vtFb61ZeVujAVwJxsEZGZXoeKNawlbY8jjqA1G4Jc +/pxIRSYjKEfICp0AsU2FXZSnjYGKrPxjbOgVcmUIIy4ENe5npRAVs7SFZQARAQAB +tC9PVFIgRGV2IFRlYW0gKFNpZ25pbmcgS2V5KSA8b3RyQGN5cGhlcnB1bmtzLmNh +PokCOAQTAQIAIgUCVtxq9wIbAwYLCQgHAwIGFQgCCQoLBBYCAwECHgECF4AACgkQ +8k3gj0LCq61FSA//dOgq4lGVhhLU9h70JL2dRvSh3EkS04LNZScXoMRC6lCvTUGV +brht5JV0Cvx9phVu9u0axmWgurZiL1RMzCdyoDrSfYLhqbMw1ZS2vFhGgjcnZQFk +ZZLM8mNZ9bjxW+jL/qk81kRpGF6mTfm4XKUeZ5OR/H0j4HIb/A1dLlKBWxVksl+2 +lasZXPyPgrZggrSU+eI91b72iDakYT9fyHAbntD7PEJifW10b0VMlQLn1kioDVe1 +1Qsf9hMMPwNwp1+4ij2X1nyD19V4FanWDs+7Zr3bDN+cU6s4xhgEpvrF+QFwj1OB +UPTr6tOnh+9VZu98Qa264G5zDIy1K3YX1bV7DfYcnj1uonwlVzVbzEA38kGZioLQ +EIPqtOD/UVZWEZwVWo9NXYtO4MmZbN5tsi4OBJzSHDUdqpl3VNQb+XHTvAvu+Lve +D1LZ33ZIjcC8M43FmWXQVBFxblI6RWrSCDByarawDmScbeLB1Q5sx0rVL/bi1Zdx +7lL9je7DhggiSmeGrlhnC956KMbq36MuAUGY62X9LcNAM6ZqbSMPbytjsKOAJ2u0 +wiBlJ0XCrl5ud6JffuMhC4uIhaBB8xw9ioFVRNENPgH02W7atGUCw9+Nl0yIfuGX +2x29e5bMINkKrCM/Ql3iatATLOY09xoIjJbFcC5JWt/Z7G66kbkdoik6KC+IRgQQ +EQIABgUCVtxuNQAKCRDe1k67K6h8XK0LAKCVPip2xIg5fdjCtA3IUd9C9Crv4QCg +qwF2gBF4klDErKFOVLl6Lkj7NgOJAhwEEAECAAYFAlbcbkkACgkQRnVkt1Bdpiu1 +hQ/5AQ6zxZmUmVuaotINgk+9q6bd87X2zbCiy9C2QsPOCiMARMS6L4V6fHn8IXRy +xD1SlqbgGlUKpPb1Cs2Bd9BA+VHmYlYqlYzbhF4FiVlYRtREkVQo2FH01QqzyIEB +FewBZMj9B5DWAI2RoLxRzDOlHjGjOVi2PDxF+1fgtvtOYhmdcmbLWIB0GRQb2xmR +4/HeI+JyAVWYVPSqtWPCGkyL5SwhUT9xDuBJAMsbcLWNQizlJfenan69J/Ba2VtT +6oQCINGOG1m16cs6+jfUwPuMEbQejLnmpz26R7QvtbHXbP/GI/NWb8hmupThF3Pf +NbY7VcPZO81yT3Zj0Jm9mxmgr2ppV2A11YhkoobznhXpQ/L4HWXvfiUiGoToIXtG +8Q2+2t06+oJTCBB3XYrvdRG2WWTvoR52K2Wgaok7ZyZmz+BlZuKuXEa4NsbXBmrV +uwgQCtKm1DUf6jJ2NqQK7j/0/t8MfZK2CWoHUuKHXf5IIkGbiHk8EsOUSr5okkjr +LlLhma7/SoWB1VDYqLoGirdfApw6PsnGK1REcxMJA2Hrq05RA85ghqn/PVl0a61K +qZyquEGqNBNNDREwuoQ+2vRp/iZcXijTYnzE8dSBWsJ8eCCF9zl2sA7VZ0t0oQy5 +HfvPHPWDRgGqeYXDHThMiDkYC7LTwxyKhIsPbAjtRQMjQmeJARwEEAEIAAYFAlbc +cp4ACgkQQuhqKhH0jTZTxgf9GELODCeyb7P4rmvhYqb/f2QtQS3SO836xBSHzBsA +SUp2Opy1QkIB2Z86Zdg5gm6ofipu1ZvQn02rM5taZ2/IkUdmvwn2e7WQL6JTtYSr +Gbv+zn6/rNBA9iZIjEe+KuYszZmWTl8ewR7udDHn6P5jHH2/npEsgue/oNOZ4Bil +CUaqUM+JZ5wcbf2rursd3/4c7o3eqgjloAN+DuZmN2Hcp/zMTxX9yoMZXhJTxoYG +hAasI01GnMJHAUOKWV6FAcJL90C3o2dMOi26/2MlKsfjEKe4xA8/NWZqK690I0Rk +qhqzZUVnDkjHs0lgRLhpFQDoG7zInAlRb1ce7nhaelkvUIkCHAQQAQoABgUCVt9a +kAAKCRCVhthLcNyujGBdD/sGmPF/GS8fOxtWh1Sgxc0R0+CVDhbheN2Tc6HG+sPq +kkpsKIEryjiwOBtFDiIWiHJfTJSzX8ET6JBipek9R0twh9mx886W92RS8tS1HnVc +3zXpglfZNmiW/43VbcsUMLPx49nMzE7I8K2Fw1b61OTOX7JPQp2XSQmWkHaiFppg +fnBNNJ/IUjXQEcOAD7RlZ3VY+UjH1vP0Q5znneLFrtmnUEuv7krvJkv4Sj151PKu +HlZOND68niAB10FqjL87cnwORiAq9qFJILxQS0jLAhDmtrvlrN1KAHrPqplznUuB +9VRaf+Vl2exQsuIZ/Qe8SSjIPEpD6rOyLdwuybiKcEckqTuhTJaFPjgBA+28D6vi +JrVC3wCbd1L/J1sd/t94nteTgBgmAmh6/TXKAofBnPZQJg+6DTd9FL73WLVoLJ8h +W9nXO/ToaCVKMtQjhe+JI9GaGUfx7OdwY9Z71T5AKs6SeVvVUizjMwYor/JiZm0B +ri0GszkssxpnWIvmIJmW8PfKltyeWISw1zgosVwuvTeXUTscnZ0ahWGjuMKWcOwC +P/fh3ea5ArpSegrRHJDAOiASJvYqzOWAmCGGl/4Uaa/EMB/XX2g3/L3tMChsuwyF +CGJ3wFrF9aDGc7T+Np4j01d4TbNur/4Df9yh/8LvQm/Xmwufeogk3orLQje6OmS4 +/g== +=Hb6J -----END PGP PUBLIC KEY BLOCK----- diff --git a/pidgin-otr.spec b/pidgin-otr.spec index d2d4d37..f77ee6e 100644 --- a/pidgin-otr.spec +++ b/pidgin-otr.spec @@ -1,7 +1,7 @@ # # spec file for package pidgin-otr # -# Copyright (c) 2014 SUSE LINUX Products GmbH, Nuernberg, Germany. +# Copyright (c) 2016 SUSE LINUX GmbH, Nuernberg, Germany. # # All modifications and additions to the file contributed by third parties # remain the property of their copyright owners, unless otherwise agreed @@ -17,7 +17,7 @@ Name: pidgin-otr -Version: 4.0.1 +Version: 4.0.2 Release: 0 Summary: "Off The Record" end-to-end encryption plugin for gaim License: GPL-2.0+ @@ -25,17 +25,16 @@ Group: Productivity/Networking/Instant Messenger Url: http://www.cypherpunks.ca/otr/ Source: http://www.cypherpunks.ca/otr/%{name}-%{version}.tar.gz Source2: http://www.cypherpunks.ca/otr/%{name}-%{version}.tar.gz.asc -# https://otr.cypherpunks.ca/gpgkey.asc -Source3: pidgin-otr.keyring +Source3: https://otr.cypherpunks.ca/gpgkey.asc#/pidgin-otr.keyring BuildRequires: gtk2-devel BuildRequires: intltool BuildRequires: libotr-devel >= 4.0.0 BuildRequires: pidgin-devel BuildRequires: update-desktop-files -%requires_ge pidgin Provides: gaim-otr = %{version} Obsoletes: gaim-otr <= 3.0.0 BuildRoot: %{_tmppath}/%{name}-%{version}-build +%requires_ge pidgin %description This is a gaim plugin which implements Off-the-Record (OTR) @@ -69,7 +68,7 @@ compromised. make %{?_smp_mflags} %install -make DESTDIR=%{buildroot} install %{?_smp_mflags} +make %{?_smp_mflags} DESTDIR=%{buildroot} install find %{buildroot} -type f -name "*.la" -delete -print %find_lang pidgin-otr