-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Sun, 14 Oct 2018 16:30:59 +0200 Source: rpcbind Binary: rpcbind Architecture: source amd64 Version: 1.2.5-0.1 Distribution: experimental Urgency: medium Maintainer: Anibal Monsalve Salazar <anibal@debian.org> Changed-By: Laurent Bigonville <bigon@debian.org> Description: rpcbind - converts RPC program numbers into universal addresses Closes: 831002 852066 867008 Changes: rpcbind (1.2.5-0.1) experimental; urgency=medium . * Non-maintainer upload. * New upstream release (Closes: #867008) - Bump libtirpc-dev build-dependency to >= 1.0.2 - d/p/07-Delete-the-unix-socket-only-if-we-have-created-it.patch, d/p/CVE-2015-7236.patch: Dropped, merged upstream - d/p/08-CVE-2017-8779.patch: Dropped, upstream fixed this in another way * Run the daemon as "_rpc" user instead of as root (Closes: #852066) * debian/control: Bump Standards-Version to 4.2.1 (no further changes) * debian/rules: Switch to dh sequences * debian/rpcbind.maintscript: Remove upstart init files * Bump debhelper compatibility version to 11 (Closes: #831002) * d/p/02-manpages.patch: Stop renaming rpcinfo.8 manpage to rpcinfo.7, section 8 is for "System management commands" which seems to fit properly * debian/rules: Enable all hardening as this is a network facing daemon * d/p/rpcinfo-Fix-stack-buffer-overflow.patch: Fix stack buffer overflow, cherry picked from upstream Checksums-Sha1: cd23c757bedc6ecc6e39daed2982d53ca973f41f 1482 rpcbind_1.2.5-0.1.dsc e9f8046b69b45efe2396a8cca1c1f090644c6d31 123502 rpcbind_1.2.5.orig.tar.bz2 e1f23e786e3d58230673ed009acc571e8c37bbe4 9688 rpcbind_1.2.5-0.1.debian.tar.xz cb0373fcd00262729657e03d6e6be2eaef1aaaa1 116548 rpcbind-dbgsym_1.2.5-0.1_amd64.deb b14fe0cfcbb983f6bf7aadfff8a58ab775d5699a 5825 rpcbind_1.2.5-0.1_amd64.buildinfo 454280303bef92ec06f04ae696f22bc062d11c47 45920 rpcbind_1.2.5-0.1_amd64.deb Checksums-Sha256: e1c8174d5c7331fdf4e6124168c4d8d292a71c166782ca92786b54ad9d2c3754 1482 rpcbind_1.2.5-0.1.dsc 2ce360683963b35c19c43f0ee2c7f18aa5b81ef41c3fdbd15ffcb00b8bffda7a 123502 rpcbind_1.2.5.orig.tar.bz2 7105c02ad9fd8efe539ad429f6612c3222037c9389c266c74c7048b4172f01fb 9688 rpcbind_1.2.5-0.1.debian.tar.xz d81eaed810eb7eb682592d68f9f757e92aad3419d5d0c8b1806e58f0ef17697f 116548 rpcbind-dbgsym_1.2.5-0.1_amd64.deb 710315af417d4f1b321cd5e02d4213fdb972ce69983fed1708c8fadd3fbcc5ca 5825 rpcbind_1.2.5-0.1_amd64.buildinfo 2c3d0d2b57fbb12da06b241953d6e2f5cdd90776081dd9e42b97bc78cd11ac1c 45920 rpcbind_1.2.5-0.1_amd64.deb Files: 4a8285f5200df8eb65622fb381a169cb 1482 net standard rpcbind_1.2.5-0.1.dsc ed46f09b9c0fa2d49015f6431bc5ea7b 123502 net standard rpcbind_1.2.5.orig.tar.bz2 8ae239e659671efbd7a777c64c5015d4 9688 net standard rpcbind_1.2.5-0.1.debian.tar.xz f9fb3fe36950580273064784fce0f811 116548 debug optional rpcbind-dbgsym_1.2.5-0.1_amd64.deb f2f41f4ce893f920be601526aad5f94d 5825 net standard rpcbind_1.2.5-0.1_amd64.buildinfo f1e74121492111c11c7ee0c2d844991f 45920 net standard rpcbind_1.2.5-0.1_amd64.deb -----BEGIN PGP SIGNATURE----- iQFFBAEBCAAvFiEEmRrdqQAhuF2x31DwH8WJHrqwQ9UFAlvDU4ERHGJpZ29uQGRl Ymlhbi5vcmcACgkQH8WJHrqwQ9UhKgf/UtQ6LX1n0FzOm5//9nfDOvSQSvqylKm6 arXWG2u5j9AwM5PZE3ORvEyGTlwl7Fwq8mT5FZS5IDB4Q8Z5c6y3macdAOx6d+Ja tFRovGZWNiJHnTR877Vg48Zmi9raQyulC8RzkosOhA0i06AkjHciaABrpeRgpT2m dXVImw+6PYNtYXIkJK2bGYgwdwrlU7mhWEzW0nNwOO4jpURcsQTq9/V2sX5T9mbh H9FUE2uqaDwlaYG8ZRN3UWxKQEiW0VbHsQDMQpoNIwxQzBn85aLopCEIiNQghlX0 8Pn3Y7zoAglIgFzaTqNokcjkR76q5aWcXE+vOR8WfR/t1Yp4u7mK+Q== =y/X9 -----END PGP SIGNATURE-----