Revisions of dnsmasq

Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 748378 from Reinhard Max's avatar Reinhard Max (rmax) (revision 75)
- bsc#1154849, CVE-2019-14834, dnsmasq-CVE-2019-14834.patch:
  memory leak in the create_helper() function in /src/helper.c
- bsc#1143454: Require user(tftp) instead of creating it ourselves.
- Package contrib/lease-tools/dhcp_release6.
- bsc#1152539: include config files from /etc/dnsmasq.d/*.conf .
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 632188 from Dirk Mueller's avatar Dirk Mueller (dirkmueller) (revision 67)
- add missing prereq on the group to be created (bsc#1106446)
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 548087 from Ismail Dönmez's avatar Ismail Dönmez (namtrac) (revision 65)
- Update keyring 

- Get rid of python dependency due to examples. (fate#323526)

- Security update to version 2.78:
  * bsc#1060354, CVE-2017-14491: 2 byte heap based overflow.
  * bsc#1060355, CVE-2017-14492: heap based overflow.
  * bsc#1060360, CVE-2017-14493: stack based overflow.
  * bsc#1060361, CVE-2017-14494: DHCP - info leak.
  * bsc#1060362, CVE-2017-14495: DNS - OOM DoS.
  * bsc#1060364, CVE-2017-14496: DNS - DoS Integer underflow.
  * Fix DHCP relaying, broken in 2.76 and 2.77.
  * For other changes, see
    http://www.thekelleys.org.uk/dnsmasq/CHANGELOG
- Obsoleted patches:
  * Fix-crash-introduced-in-2675f2061525bc954be14988d643.patch
  * Handle-binding-upstream-servers-to-an-interface.patch
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 416775 from Reinhard Max's avatar Reinhard Max (rmax) (revision 62)
- Update to 2.76:
  * Include 0.0.0.0/8 in DNS rebind checks.
  * Enhance --add-subnet to allow arbitrary subnet addresses.
  * Respect the --no-resolv flag in inotify code. Fixes bug
    which caused dnsmasq to fail to start if a resolv-file
    was a dangling symbolic link, even of --no-resolv set.
  * Fix crash when an A or AAAA record is defined locally,
    in a hosts file, and an upstream server sends a reply
    that the same name is empty (CVE-2015-8899, bsc#983273).
  * Fix failure to correctly calculate cache-size when reading a
    hosts-file fails.
  * Fix wrong answer to simple name query when --domain-needed
    set, but no upstream servers configured.
  * Return REFUSED when running out of forwarding table slots,
    not SERVFAIL.
  * Add --max-port configuration.
  * Add --script-arp and two new functions for the dhcp-script.
  * Extend --add-mac to allow a new encoding of the MAC address
    as base64, by configurting --add-mac=base64
  * Add --add-cpe-id option.
  * Don't crash with divide-by-zero if an IPv6 dhcp-range is
    declared as a whole /64.
    (ie xx::0 to xx::ffff:ffff:ffff:ffff)
  * Add support for a TTL parameter in --host-record and --cname.
  * Add --dhcp-ttl option.
  * Add --tftp-mtu option.
  * Check return-code of inet_pton() when parsing dhcp-option.
  * Fix wrong value for EDNS UDP packet size when using
    --servers-file to define upstream DNS servers.
  * Add dhcp_release6 to contrib/lease-tools.
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 404054 from Reinhard Max's avatar Reinhard Max (rmax) (revision 61)
- dnsmasq-groups.patch: Initialize the supplementary groups of the
  dnsmasq user (bsc#859298).
Stephan Kulow's avatar Stephan Kulow (coolo) accepted request 312722 from Rusmir Duško's avatar Rusmir Duško (nemysis) (revision 57)
Please accept these changes.
Displaying revisions 21 - 40 of 96
openSUSE Build Service is sponsored by