-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Mon, 07 Sep 2009 16:14:29 -0700 Source: shibboleth-sp2 Binary: libapache2-mod-shib2 libshibsp3 libshibsp-dev libshibsp-doc shibboleth-sp2-schemas Architecture: source i386 all Version: 2.2.1+dfsg-1 Distribution: unstable Urgency: high Maintainer: Debian Shib Team <pkg-shibboleth-devel@lists.alioth.debian.org> Changed-By: Russ Allbery <rra@debian.org> Description: libapache2-mod-shib2 - Federated web single sign-on system (Apache module) libshibsp-dev - Federated web single sign-on system (development) libshibsp-doc - Federated web single sign-on system (API docs) libshibsp3 - Federated web single sign-on system (runtime) shibboleth-sp2-schemas - Federated web single sign-on system (schemas) Changes: shibboleth-sp2 (2.2.1+dfsg-1) unstable; urgency=high . * New upstream release. - SECURITY: Fix improper handling of certificate names containing nul characters. - SECURITY: Correctly validate the use attribute of KeyDescriptors, preventing use of a key for signing or for encryption if its use field says it may not be used for that purpose. - New shib-metagen script for generating Shibboleth SP metadata. - Support preserving form data across user authentication. - Support internal server redirection while maintaining protection. - Fix incompatibility between lazy sessions and servlet containers. - Fix some problems with dynamic metadata resolution. - Fix incompatibility with mod_include. - Fix single logout via SOAP. - Fix shibd crash with invalid metadata. - Fix crash in chaining attribute resolver. - Avoid infinite loop on empty attribute mapped to REMOTE_USER. - Fix handling of some Unicode data in relaystate data in URLs. - Correctly return Success to LogoutRequest where appropriate. - Avoid chunked encoding in back-channel calls. - Correctly check Recipient values in assertions. - Fix attributePrefix handling in some contexts. - Fix generated metadata DiscoveryResponse. - Fix handling of unsigned responses with encryption. - Fix handling of InProcess property. * Rename library package for upstream SONAME bump. * Tighten build dependencies and schema package dependencies on opensaml2 and xmltooling. * Build against Xerces-C 3.0. * Dynamically determine the Debian and upstream package versions for get-orig-source from debian/changelog. * Update libapache2-mod-shib2's README.Debian for changes to the TestShib web pages. * Use the automatically-extracted package version as the version number for the man pages. * Update standards version to 3.8.3. - Create /var/run/shibboleth in the init script if it doesn't exist. - Don't ship /var/run/shibboleth in the package. - Remove /var/run/shibboleth in postrm if it exists. Checksums-Sha1: a3bd54e1311d9ad5d12aa171a555347fbee4d055 1649 shibboleth-sp2_2.2.1+dfsg-1.dsc 4900ff07d5cba4d432408bd4b38964701db0556a 818408 shibboleth-sp2_2.2.1+dfsg.orig.tar.gz 7246c42539a0967748ea5c1fd4f1c6efc5fbf140 15946 shibboleth-sp2_2.2.1+dfsg-1.diff.gz 04278108cd1931ee87d1fcccf48791efd85a821e 230508 libapache2-mod-shib2_2.2.1+dfsg-1_i386.deb 0247a896cfe18c4deab6a9f6e229ed7789d4c5cb 947622 libshibsp3_2.2.1+dfsg-1_i386.deb 68fa75e33ab65fa5f7a09a8a85b22050b24a5cd8 44040 libshibsp-dev_2.2.1+dfsg-1_i386.deb bfaf20dc02a31a8a38e9bc24233d38e5cac5f7a4 327000 libshibsp-doc_2.2.1+dfsg-1_all.deb a54569fed31386e377c6f8f79c673770c0b02d41 16982 shibboleth-sp2-schemas_2.2.1+dfsg-1_all.deb Checksums-Sha256: 57f090816abe8490c860b3922c94df05f900daac61b229d1a97058387fc16f40 1649 shibboleth-sp2_2.2.1+dfsg-1.dsc dba2471da9cca7073ef34e8f55dd083c56e9d80e301799525d4bbd6e26e76ea2 818408 shibboleth-sp2_2.2.1+dfsg.orig.tar.gz 5fb4c25e018e66c868a2d031ea1f654f8e4db176dd9d9b578a26720cbfac0ee5 15946 shibboleth-sp2_2.2.1+dfsg-1.diff.gz f2c8199ea568ccd6d8459277646bd08c5343c575de03f73c375c46de1eadd222 230508 libapache2-mod-shib2_2.2.1+dfsg-1_i386.deb bebaf37b35978fd14e020c394828e238b63232293f4d91f6746fd556d8188b7d 947622 libshibsp3_2.2.1+dfsg-1_i386.deb f1fdf83b76b39d69c0661b55e8eb93c2ebd3f105beff379accd867a924fa3549 44040 libshibsp-dev_2.2.1+dfsg-1_i386.deb 8fcc46b17572ca3671603b92510612e35ccc727ed1a909991d26b31a70dd113b 327000 libshibsp-doc_2.2.1+dfsg-1_all.deb 97e307b27a1bb24d6c4a0b7f22e4faa7e3acaf5aad37d9d6da8ac6aa59c65f26 16982 shibboleth-sp2-schemas_2.2.1+dfsg-1_all.deb Files: 91ca9397abb7181759449188cf4d2bd6 1649 web extra shibboleth-sp2_2.2.1+dfsg-1.dsc 668c6e705eb7c78ea2c3cbfcd16ea88c 818408 web extra shibboleth-sp2_2.2.1+dfsg.orig.tar.gz b0cc072a6cfbcbf24e97478d849cda8d 15946 web extra shibboleth-sp2_2.2.1+dfsg-1.diff.gz eb4a847f880abc9d8407f0abd9606ec2 230508 web extra libapache2-mod-shib2_2.2.1+dfsg-1_i386.deb 9455a440ea09ec0a949a2a42ebe2678c 947622 libs extra libshibsp3_2.2.1+dfsg-1_i386.deb 2fc427159f26b42e4ab412c3fe6cc91f 44040 libdevel extra libshibsp-dev_2.2.1+dfsg-1_i386.deb 58f94042f0ad46de20b9fdc5c85c9575 327000 doc extra libshibsp-doc_2.2.1+dfsg-1_all.deb 7b23bb436ea745a206d97aefa744c190 16982 text extra shibboleth-sp2-schemas_2.2.1+dfsg-1_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.9 (GNU/Linux) iEYEARECAAYFAkqlq6AACgkQ+YXjQAr8dHYD4QCgyqBmvZl1A+IA4MlMdmOMC8Tj evEAn1FUDlBxtfy2PvxmkL4GWPvk/Va4 =VJqN -----END PGP SIGNATURE----- Accepted: libapache2-mod-shib2_2.2.1+dfsg-1_i386.deb to pool/main/s/shibboleth-sp2/libapache2-mod-shib2_2.2.1+dfsg-1_i386.deb libshibsp-dev_2.2.1+dfsg-1_i386.deb to pool/main/s/shibboleth-sp2/libshibsp-dev_2.2.1+dfsg-1_i386.deb libshibsp-doc_2.2.1+dfsg-1_all.deb to pool/main/s/shibboleth-sp2/libshibsp-doc_2.2.1+dfsg-1_all.deb libshibsp3_2.2.1+dfsg-1_i386.deb to pool/main/s/shibboleth-sp2/libshibsp3_2.2.1+dfsg-1_i386.deb shibboleth-sp2-schemas_2.2.1+dfsg-1_all.deb to pool/main/s/shibboleth-sp2/shibboleth-sp2-schemas_2.2.1+dfsg-1_all.deb shibboleth-sp2_2.2.1+dfsg-1.diff.gz to pool/main/s/shibboleth-sp2/shibboleth-sp2_2.2.1+dfsg-1.diff.gz shibboleth-sp2_2.2.1+dfsg-1.dsc to pool/main/s/shibboleth-sp2/shibboleth-sp2_2.2.1+dfsg-1.dsc shibboleth-sp2_2.2.1+dfsg.orig.tar.gz to pool/main/s/shibboleth-sp2/shibboleth-sp2_2.2.1+dfsg.orig.tar.gz