]> git.proxmox.com Git - mirror_frr.git/blob - debian/changelog
ldpd: changes for code maintainability
[mirror_frr.git] / debian / changelog
1 frr (9.0~dev-1) UNRELEASED; urgency=medium
2
3 * FRR Dev 9.0
4
5 -- Donatas Abraitis <donatas@opensourcerouting.org> Tue, 07 Feb 2023 16:00:00 +0500
6
7 frr (8.5-1) UNRELEASED; urgency=medium
8
9 * New upstream release FRR 8.5
10
11 -- Donatas Abraitis <donatas@opensourcerouting.org> Tue, 07 Feb 2023 16:00:00 +0500
12
13 frr (8.4.2-1) unstable; urgency=medium
14
15 * new upstream release FRR 8.4.2
16 * drop all patches in debian/patches/, they got merged upstream
17
18 -- David Lamparter <equinox-debian@diac24.net> Mon, 23 Jan 2023 17:32:02 +0100
19
20 frr (8.4.1-2) unstable; urgency=medium
21
22 * commit to git tarball as source instead of dist tarball
23 * ditch unneeded sphinx missing files patch
24 * fix clippy symbol lookup issue (build SEGV on mips64el)
25 * correctly mark :native for libelf-dev & libpython3-dev to fix cross-build
26 * use mutex for zserv stats (atomic uint64_t is too wide for 32-bit archs)
27
28 -- David Lamparter <equinox-debian@diac24.net> Fri, 06 Jan 2023 14:59:57 +0100
29
30 frr (8.4.1-1) unstable; urgency=medium
31
32 * New upstream release FRR 8.4.1 (closes: #1017518)
33 * New frr@ systemd service unit to run inside network namespace
34 * egrep to grep -E
35 * upstream fix ospfd crash (PR 8876) (closes: #981139)
36 * upstream fix isisd parsing issues CVE-2022-26125, CVE-2022-26126 and
37 babeld parsing issues CVE-2022-26127, CVE-2022-26128, CVE-2022-26129
38 (closes: #1008010)
39 * upstream fix bgpd out-of-bounds read CVE-2022-37032 (closes: #1021016)
40 * upstream fix bgpd UAF CVE-2022-37035 (closes: #1016978)
41 * libyang-related pcre3 dep replaced with pcre2 (closes: #1000032)
42 * disable ELF magic on mips64el
43 * fixed texinfo figure installation directory
44 * enable dh_sphinxdoc to get rid of embedded javascript in frr-doc
45 * removed bogus iproute dependency choice
46
47 -- David Lamparter <equinox-debian@diac24.net> Mon, 02 Jan 2023 14:46:06 +0100
48
49 frr (8.4-0) unstable; urgency=medium
50
51 * New upstream release FRR 8.4
52
53 -- Jafar Al-Gharaibeh <jafar@atcorp.com> Tue, 01 Nov 2022 10:00:00 +0500
54
55 frr (8.3-0) unstable; urgency=medium
56
57 * New upstream release FRR 8.3
58
59 -- Jafar Al-Gharaibeh <jafar@atcorp.com> Wed, 13 Jul 2022 10:00:00 +0500
60
61 frr (8.2-0) unstable; urgency=medium
62
63 * New upstream release FRR 8.2
64
65 -- Jafar Al-Gharaibeh <jafar@atcorp.com> Tue, 01 Mar 2022 10:00:00 +0500
66
67 frr (8.1-1) unstable; urgency=medium
68
69 * New upstream release FRR 8.1
70 * Upload to unstable.
71
72 -- Ondřej Surý <ondrej@debian.org> Sat, 13 Nov 2021 13:32:48 +0100
73
74 frr (8.1-0) unstable; urgency=medium
75
76 * New upstream release FRR 8.1
77
78 -- Jafar Al-Gharaibeh <jafar@atcorp.com> Tue, 02 Nov 2021 14:00:00 +0500
79
80 frr (8.0-0) unstable; urgency=medium
81
82 * New upstream release FRR 8.0
83
84 -- Martin Winter <mwinter@opensourcerouting.org> Wed, 21 Jul 2021 13:42:00 +0200
85
86 frr (7.5.1-1) unstable; urgency=medium
87
88 * Update the d/gbp.conf for 7.5.1 release
89 * Use wrap-and-sort -a to unify debian/ wrapping and sorting
90 * Work around the sphinx-build error that doesn't copy images to texinfo
91 * Change the upstream-tag in d/gbp.conf to track the upstream tarballs
92
93 -- Ondřej Surý <ondrej@debian.org> Mon, 08 Mar 2021 09:40:19 +0100
94
95 frr (7.5-1) unstable; urgency=medium
96
97 * New upstream version 7.5
98
99 -- Ondřej Surý <ondrej@debian.org> Sun, 14 Feb 2021 21:38:50 +0100
100
101 frr (7.4-2) unstable; urgency=medium
102
103 * Bump libyang dependency to >= 1.0.184-1~
104 * Make the autopkgtest more resilient (Closes: #980111)
105 * Adjust the ax_python.m4 to hardcode python3.9
106
107 -- Ondřej Surý <ondrej@debian.org> Sun, 07 Feb 2021 13:15:07 +0100
108
109 frr (7.4-1.1) unstable; urgency=medium
110
111 * Non-maintainer upload.
112 * Backport upstream fix for FTBFS with Python 3.9. (Closes: #972767)
113
114 -- Adrian Bunk <bunk@debian.org> Thu, 21 Jan 2021 16:06:12 +0200
115
116 frr (7.4-1) unstable; urgency=medium
117
118 [ Ondřej Surý ]
119 * Use dh_installinit capabilities to install frr.tmpfile
120 * Remove unused debian/watchfrr.rc file
121 * Add missing lsof dependency
122 * Remove mention of pkg.frr.snmp build profile from debian/README.Debian
123 * Make lsb-base a hard dependency
124 * Update gbp.conf for 7.4 release
125 * Update and simplify d/watch
126 * Change the debian source format from 3.0 (git) to 3.0 (quilt)
127 * Convert the package to dh compat level 10
128 * Add myself to Uploaders
129 * Bump standards version to 4.5.0.2 (latest) - no change
130 * Use wrap-and-sort -a to unify debian/ wrapping and sorting
131 * Work around the sphinx-build error that doesn't copy images to texinfo
132 (Properly closes: #955067)
133 * Depend on debhelper >= 9.20160709 and drop dh-systemd dependency
134 (Closes: #958626)
135
136 -- Ondřej Surý <ondrej@debian.org> Mon, 10 Aug 2020 11:50:45 +0200
137
138 frr (7.3.1-1) unstable; urgency=medium
139
140 [ David Lamparter ]
141 * allow cross-compile with sbuild --host
142
143 [ Ondřej Surý ]
144 * Add myself to Uploaders
145 * Add d/gbp.conf
146 * Update changelog for 7.3.1-1~1.gbp2292a4 release
147 * Change the source format from git to quilt to use git-buildpackage
148 * Don't install frr-doc texinfo images, they are gone (Closes: #955067)
149 * Bump the dh_compat to 10
150
151 -- Ondřej Surý <ondrej@debian.org> Mon, 01 Jun 2020 08:41:03 +0200
152
153 frr (7.3-1) unstable; urgency=medium
154
155 * new upstream release
156
157 -- David Lamparter <equinox-debian@diac24.net> Tue, 25 Feb 2020 17:45:16 +0100
158
159 frr (7.2.1-1) unstable; urgency=medium
160
161 * new upstream release
162 * daemon man pages renamed to frr-* (closes: #944392)
163 * fix/improve multi-arch markers on doc
164 * fix git URLs to point to debian branch
165
166 -- David Lamparter <equinox-debian@diac24.net> Mon, 20 Jan 2020 17:06:21 +0100
167
168 frr (7.2-1) unstable; urgency=medium
169
170 * New upstream release
171
172 -- Jafar Al-Gharaibeh <jafar@atcorp.com> Sun, 03 Nov 2019 18:45:23 +0100
173
174 frr (6.0.2-2) unstable; urgency=medium
175
176 * remove bogus libjson0 build-dep (closes: #921349)
177 * fix broken systemd dependency spec
178 * add proper Conflicts: for quagga and pimd (closes: #921376)
179
180 -- David Lamparter <equinox-debian@diac24.net> Mon, 04 Feb 2019 22:16:07 +0100
181
182 frr (6.0.2-1) unstable; urgency=medium
183
184 * Packaging has been more or less completely reworked, based off the old
185 Quagga packaging that hung around in git. Refer to "changelog-auto.in"
186 in the source root directory for the old changelog.
187 * Initial release of FRR for Debian. (closes: #863249)
188
189 -- David Lamparter <equinox-debian@diac24.net> Sun, 27 Jan 2019 17:27:02 +0100
190
191 frr (6.0-2) testing; urgency=medium
192
193 * add install-info to build deps
194 * remove trailing whitespace from control
195 * cleanup tcp-zebra configure options
196 * drop unused SMUX client OID MIBs
197 * remove /proc check
198 * remove --enable-poll
199 * remove libtool .la files
200 * drop texlive-latex-base, texlive-generic-recommended build deps
201 * consistently allow python2 or python3
202 * remove bad USE_* options, add WERROR
203 * drop libncurses5 dep
204 * remove backports mechanism
205 * use better dependency for pythontools (binNMU compatible)
206 * remove bogus shlib:Depends on frr-dbg
207 * create frr-snmp and frr-rpki-rtrlib
208 * make frr-pythontools a "Recommends:"
209 * use redistclean target
210 * update to Debian Policy version 4.2.1
211 * raise debhelper compat level to 9
212 * ditch development-only files
213 * modernise dh_missing and use fail mode
214 * disable zeromq and FPM
215 * always install /etc/init.d/frr
216 * put frr-doc package in 'doc' section
217 * install HTML docs, drop tools/
218 * fix install for {frr,rfptest,ospfclient}
219 * add watch file
220 * change python dependency and shebang to python3:any
221 * use set -e in maintscripts
222 * put myself in as maintainer
223 * update copyright file
224 * closes: #863249
225
226 -- David Lamparter <equinox-debian@diac24.net> Thu, 25 Oct 2018 16:36:50 +0200
227
228 frr (6.0-1) RELEASED; urgency=medium
229
230 * New Enabled: PIM draft Unnumbered
231
232 -- FRRouting-Dev <dev@lists.frrouting.org> Wed, 18 Oct 2017 17:01:42 -0700
233
234 frr (3.0-1) RELEASED; urgency=medium
235
236 * Added Debian 9 Backport
237
238 -- FRRouting-Dev <dev@lists.frrouting.org> Mon, 16 Oct 2017 03:28:00 -0700
239
240 frr (3.0-0) RELEASED; urgency=medium
241
242 * New Enabled: BGP Shutdown Message
243 * New Enabled: BGP Large Community
244 * New Enabled: BGP RFC 7432 Partial Support w/ Ethernet VPN
245 * New Enabled: BGP EVPN RT-5
246 * New Enabled: LDP RFC 5561
247 * New Enabled: LDP RFC 5918
248 * New Enabled: LDP RFC 5919
249 * New Enabled: LDP RFC 6667
250 * New Enabled: LDP RFC 7473
251 * New Enabled: OSPF RFC 4552
252 * New Enabled: ISIS SPF Backoff draft
253 * New Enabled: PIM Unnumbered Interfaces
254 * New Enabled: PIM RFC 4611
255 * New Enabled: PIM Sparse Mode
256 * New Enabled: NHRP RFC 2332
257 * New Enabled: Label Manager
258 * Switched from hardening-wrapper to dpkg-buildflags.
259
260 -- FRRouting-Dev <dev@lists.frrouting.org> Fri, 13 Oct 2017 16:17:26 -0700
261
262 frr (2.0-0) RELEASED; urgency=medium
263
264 * Switchover to FRR
265
266 -- FRRouting-Dev <dev@lists.frrouting.org> Mon, 23 Jan 2017 16:30:22 -0400
267
268 quagga (0.99.24+cl3u5) RELEASED; urgency=medium
269
270 * Closes: CM-12846 - Resolve Memory leaks in 'show ip bgp neighbor json'
271 * Closes: CM-5878 - Display all ospf peers with 'show ip ospf neighbor detail all'
272 * Closes: CM-5794 - Add support for IPv6 static to null0
273 * Closes: CM-13060 - Reduce JSON memory usage.
274 * Closes: CM-10394 - protect 'could not get instance' error messages with debug
275 * Closes: CM-11173 - Move netlink error messages undeer a debug
276 * Closes: CM-13328 - Fixes route missing in hardware after reboot
277
278 -- dev-support <dev-support@cumulusnetworks.com> Fri, 11 Nov 2016 22:13:29 -0400
279
280 quagga (0.99.24+cl3u4) RELEASED; urgency=medium
281
282 * Closes: CM-12687 - Buffer overflow in zebra RA code
283
284 -- dev-support <dev-support@cumulusnetworks.com> Wed, 31 Aug 2016 12:36:10 -0400
285
286 quagga (0.99.24+cl3u3) RELEASED; urgency=medium
287
288 * New Enabled: Merge up-to 0.99.24 code from upstream
289 * New Enabled: Additional CLI simplification
290 * New Enabled: Various Bug Fixes
291
292 -- dev-support <dev-support@cumulusnetworks.com> Thu, 04 Aug 2016 08:43:36 -0700
293
294 quagga (0.99.23.1-1+cl3u2) RELEASED; urgency=medium
295
296 * New Enabled: VRF - See Documentation for how to use
297 * New Enabled: Improved interface statistics
298 * New Enabled: Various vtysh improvements
299 * New Enabled: Numerous compile warnings and SA fixes
300 * New Enabled: Improved priviledge handlingA
301 * New Enabled: Various OSPF CLI fixes
302 * New Enabled: Prefix-list Performance Improvements.
303 * New Enabled: Allow more than 1k peers in Quagga
304 and Performance Improvements
305 * New Enabled: Systemd integration
306 * New Enabled: Various ISIS fixes
307 * New Enabled: BGP MRT improvements
308 * New Enabled: Lowered default MRAI timers
309 * New Enabled: Lowered default 'timers connect'
310 * New Enabled: 'bgp log-neighbor-changes' enabled by default
311 * New Enabled: BGP default keepalive to 3s and holdtime to 9s
312 * New Enabled: OSPF spf timers are now '0 50 5000' by default
313 * New Enabled: BGP hostname is displayed by default
314 * New Enabled: BGP 'no-as-set' is the default for
315 'bgp as-path multipath-relax"
316 * New Enabled: RA is on by default if using 5549 on an interface
317 * New Enabled: peer-group restrictions relaxed, update-groups determine
318 outbund policy anyway
319 * New Enabled: BGP enabled 'maximum-paths 64' by default
320 * New Enabled: OSPF "log-adjacency-changes" on by default
321 * New Enabled: Zebra: Add IPv6 protocol filtering support
322 * and setting src of IPv6 routes.
323 * New Enabled: BGP and OSPF JSON commands added.
324 * New Enabled: BGP Enable multiple instances support by default
325 * New Enabled: 'banner motd file' command
326 * New Enabled: Remove bad default passwords from default conf
327 * New Enabled: BGP addpath TX
328 * New Enabled: Simplified configuration for BGP Unnumbered
329
330 * New Deprecated: Remove unused 'show memory XXX' functionality
331 * New Deprecated: Remove babel protocol
332
333 * Closes: CM-10435 Addition on hidden command
334 "bfd multihop/singlehop" and "ptm-enable" per interface command
335 * Closes: CM-9974 Get route counts right for show ip route summary
336 * Closes: CM-9786 BGP memory leak in peer hostname
337 * Closes: CM-9340 BGP: Ensure correct sequence of processing at exit
338 * Closes: CM-9270 ripd: Fix crash when a default route is passed to rip
339 * Closes: CM-9255 BGPD crash around bgp_config_write ()
340 * Closes: CM-9134 ospf6d: Fix for crash when non area 0 network
341 entered first
342 * Closes: CM-8934 OSPFv3: Check area before scheduling SPF
343 * Closes: CM-8514 zebra: Crash upon disabling a link
344 * Closes: CM-8295 BGP crash in group_announce_route_walkcb
345 * Closes: CM-8191 BGP: crash in update_subgroup_merge()
346 * Closes: CM-8015 lib: Memory reporting fails over 2GB
347 * Closes: CM-7926 BGP: crash from not NULLing freed pointers
348
349 -- dev-support <dev-support@cumulusnetworks.com> Wed, 04 May 2016 16:22:52 -0700
350
351 quagga (0.99.23.1-1) unstable; urgency=medium
352
353 * New upstream release
354 * Added .png figures for info files to quagga-doc package.
355 * Changed dependency from iproute to iproute2 (thanks to Andreas
356 Henriksson). Closes: #753736
357 * Added texlive-fonts-recommended to build-depends to get ecrm1095 font
358 (thanks to Christoph Biedl). Closes: #651545
359
360 -- Christian Brunotte <ch@debian.org> Tue, 30 Sep 2014 00:20:12 +0200
361
362 quagga (0.99.23-1) unstable; urgency=low
363
364 * New upstream release
365 * Removed debian/patches/readline-6.3.diff which was already in upstream.
366
367 -- Christian Hammers <ch@debian.org> Tue, 08 Jul 2014 09:15:48 +0200
368
369 quagga (0.99.22.4-4) unstable; urgency=medium
370
371 * Fix build failure with readline-6.3 (thanks to Matthias Klose).
372 Closes: #741774
373
374 -- Christian Hammers <ch@debian.org> Sun, 23 Mar 2014 15:28:42 +0100
375
376 quagga (0.99.22.4-3) unstable; urgency=low
377
378 * Added status to init script (thanks to Peter J. Holzer). Closes: #730625
379 * Init script now sources /lib/lsb/init-functions.
380 * Switched from hardening-wrapper to dpkg-buildflags.
381
382 -- Christian Hammers <ch@debian.org> Wed, 01 Jan 2014 19:12:01 +0100
383
384 quagga (0.99.22.4-2) unstable; urgency=low
385
386 * Fixed typo in package description (thanks to Davide Prina).
387 Closes: #625860
388 * Added Italian Debconf translation (thanks to Beatrice Torracca)
389 Closes: #729798
390
391 -- Christian Hammers <ch@debian.org> Tue, 26 Nov 2013 00:47:11 +0100
392
393 quagga (0.99.22.4-1) unstable; urgency=high
394
395 * SECURITY:
396 "ospfd: CVE-2013-2236, stack overrun in apiserver
397
398 the OSPF API-server (exporting the LSDB and allowing announcement of
399 Opaque-LSAs) writes past the end of fixed on-stack buffers. This leads
400 to an exploitable stack overflow.
401
402 For this condition to occur, the following two conditions must be true:
403 - Quagga is configured with --enable-opaque-lsa
404 - ospfd is started with the "-a" command line option
405
406 If either of these does not hold, the relevant code is not executed and
407 the issue does not get triggered."
408 Closes: #726724
409
410 * New upstream release
411 - ospfd: protect vs. VU#229804 (malformed Router-LSA)
412 (Quagga is said to be non-vulnerable but still adds some protection)
413
414 -- Christian Hammers <ch@debian.org> Thu, 24 Oct 2013 22:58:37 +0200
415
416 quagga (0.99.22.1-2) unstable; urgency=low
417
418 * Added autopkgtests (thanks to Yolanda Robla). Closes: #710147
419 * Added "status" command to init script (thanks to James Andrewartha).
420 Closes: #690013
421 * Added "libsnmp-dev" to Build-Deps. There not needed for the official
422 builds but for people who compile Quagga themselves to activate the
423 SNMP feature (which for licence reasons cannot be done by Debian).
424 Thanks to Ben Winslow). Closes: #694852
425 * Changed watchquagga_options to an array so that quotes can finally
426 be used as expected. Closes: #681088
427 * Fixed bug that prevented restarting only the watchquagga daemon
428 (thanks to Harald Kappe). Closes: #687124
429
430 -- Christian Hammers <ch@debian.org> Sat, 27 Jul 2013 16:06:25 +0200
431
432 quagga (0.99.22.1-1) unstable; urgency=low
433
434 * New upstream release
435 - ospfd restore nexthop IP for p2p interfaces
436 - ospfd: fix LSA initialization for build without opaque LSA
437 - ripd: correctly redistribute ifindex routes (BZ#664)
438 - bgpd: fix lost passwords of grouped neighbors
439 * Removed 91_ld_as_needed.diff as it was found in the upstream source.
440
441 -- Christian Hammers <ch@debian.org> Mon, 22 Apr 2013 22:21:20 +0200
442
443 quagga (0.99.22-1) unstable; urgency=low
444
445 * New upstream release.
446 - [bgpd] The semantics of default-originate route-map have changed.
447 The route-map is now used to advertise the default route conditionally.
448 The old behaviour which allowed to set attributes on the originated
449 default route is no longer supported.
450 - [bgpd] this version of bgpd implements draft-idr-error-handling. This was
451 added in 0.99.21 and may not be desirable. If you need a version
452 without this behaviour, please use 0.99.20.1. There will be a
453 runtime configuration switch for this in future versions.
454 - [isisd] is in "beta" state.
455 - [ospf6d] is in "alpha/experimental" state
456 - More changes are documented in the upstream changelog!
457 * debian/watch: Adjusted to new savannah.gnu.org site, thanks to Bart
458 Martens.
459 * debian/patches/99_CVE-2012-1820_bgp_capability_orf.diff removed as its
460 in the changelog.
461 * debian/patches/99_distribute_list.diff removed as its in the changelog.
462 * debian/patches/10_doc__Makefiles__makeinfo-force.diff removed as it
463 was just for Debian woody.
464
465 -- Christian Hammers <ch@debian.org> Thu, 14 Feb 2013 00:22:00 +0100
466
467 quagga (0.99.21-4) unstable; urgency=medium
468
469 * Fixed regression bug that caused OSPF "distribute-list" statements to be
470 silently ignored. The patch has already been applied upstream but there
471 has been no new Quagga release since then.
472 Thanks to Hans van Kranenburg for reporting. Closes: #697240
473
474 -- Christian Hammers <ch@debian.org> Sun, 06 Jan 2013 15:50:32 +0100
475
476 quagga (0.99.21-3) unstable; urgency=high
477
478 * SECURITY:
479 CVE-2012-1820 - Quagga contained a bug in BGP OPEN message handling.
480 A denial-of-service condition could be caused by an attacker controlling
481 one of the pre-configured BGP peers. In most cases this means, that the
482 attack must be originated from an adjacent network. Closes: #676510
483
484 -- Christian Hammers <ch@debian.org> Fri, 08 Jun 2012 01:15:32 +0200
485
486 quagga (0.99.21-2) unstable; urgency=low
487
488 * Renamed babeld.8 to quagga-babeld.8 as it conflicted with the
489 original mapage of the babeld package which users might want to
490 install in parallel as it is slightly more capable. Closes: #671916
491
492 -- Christian Hammers <ch@debian.org> Thu, 10 May 2012 07:53:01 +0200
493
494 quagga (0.99.21-1) unstable; urgency=low
495
496 * New upstream release
497 - [bgpd] BGP multipath support has been merged
498 - [bgpd] SAFI (Multicast topology) support has been extended to propagate
499 the topology to zebra.
500 - [bgpd] AS path limit functionality has been removed
501 - [babeld] a new routing daemon implementing the BABEL ad-hoc mesh routing
502 protocol has been merged.
503 - [isisd] a major overhaul has been picked up. Please note that isisd is
504 STILL NOT SUITABLE FOR PRODUCTION USE.
505 - a lot of bugs have been fixed
506 * Added watchquagga daemon.
507 * Added DEP-3 conforming patch comments.
508
509 -- Christian Hammers <ch@debian.org> Sun, 06 May 2012 15:33:33 +0200
510
511 quagga (0.99.20.1-1) unstable; urgency=high
512
513 * SECURITY:
514 CVE-2012-0249 - Quagga ospfd DoS on malformed LS-Update packet
515 CVE-2012-0250 - Quagga ospfd DoS on malformed Network-LSA data
516 CVE-2012-0255 - Quagga bgpd DoS on malformed OPEN message
517 * New upstream release. Closes: #664033
518
519 -- Christian Hammers <ch@debian.org> Fri, 16 Mar 2012 22:14:05 +0100
520
521 quagga (0.99.20-4) unstable; urgency=low
522
523 * Switch to dpkg-source 3.0 (quilt) format.
524 * Switch to changelog-format-1.0.
525
526 -- Christian Hammers <ch@debian.org> Sat, 25 Feb 2012 18:52:06 +0100
527
528 quagga (0.99.20-3) unstable; urgency=low
529
530 * Added --sysconfdir back to the configure options (thanks to Sven-Haegar
531 Koch). Closes: #645649
532
533 -- Christian Hammers <ch@debian.org> Tue, 18 Oct 2011 00:24:37 +0200
534
535 quagga (0.99.20-2) unstable; urgency=low
536
537 * Bumped standards version to 0.9.2.
538 * Migrated to "dh" build system.
539 * Added quagga-dbg package.
540
541 -- Christian Hammers <ch@debian.org> Fri, 14 Oct 2011 23:59:26 +0200
542
543 quagga (0.99.20-1) unstable; urgency=low
544
545 * New upstream release:
546 "The primary focus of this release is a fix of SEGV regression in ospfd,
547 which was introduced in 0.99.19. It also features a series of minor
548 improvements, including better RFC compliance in bgpd, better support
549 of FreeBSD and some enhancements to isisd."
550 * Fixes off-by-one bug (removed 20_ospf6_area_argv.dpatch). Closes: #519488
551
552 -- Christian Hammers <ch@debian.org> Fri, 30 Sep 2011 00:59:24 +0200
553
554 quagga (0.99.19-1) unstable; urgency=high
555
556 * SECURITY:
557 "This release provides security fixes, which address assorted
558 vulnerabilities in bgpd, ospfd and ospf6d (CVE-2011-3323,
559 CVE-2011-3324, CVE-2011-3325, CVE-2011-3326 and CVE-2011-3327).
560 * New upstream release.
561 * Removed incorporated debian/patches/92_opaque_lsa_enable.dpatch.
562 * Removed incorporated debian/patches/93_opaque_lsa_fix.dpatch.
563 * Removed obsolete debian/README.Debian.Woody and README.Debian.MD5.
564
565 -- Christian Hammers <ch@debian.org> Tue, 27 Sep 2011 00:16:27 +0200
566
567 quagga (0.99.18-1) unstable; urgency=low
568
569 * SECURITY:
570 "This release fixes 2 denial of services in bgpd, which can be remotely
571 triggered by malformed AS-Pathlimit or Extended-Community attributes.
572 These issues have been assigned CVE-2010-1674 and CVE-2010-1675.
573 Support for AS-Pathlimit has been removed with this release."
574 * Added Brazilian Portuguese debconf translation. Closes: #617735
575 * Changed section for quagga-doc from "doc" to "net".
576 * Added patch to fix FTBFS with latest GCC. Closes: #614459
577
578 -- Christian Hammers <ch@debian.org> Tue, 22 Mar 2011 23:13:34 +0100
579
580 quagga (0.99.17-4) unstable; urgency=low
581
582 * Added comment to init script (thanks to Marc Haber). Closes: #599524
583
584 -- Christian Hammers <ch@debian.org> Thu, 13 Jan 2011 23:53:29 +0100
585
586 quagga (0.99.17-3) unstable; urgency=low
587
588 * Fix FTBFS with ld --as-needed (thanks to Matthias Klose at Ubuntu).
589 Closes: #609555
590
591 -- Christian Hammers <ch@debian.org> Thu, 13 Jan 2011 23:27:06 +0100
592
593 quagga (0.99.17-2) unstable; urgency=low
594
595 * Added Danisch Debconf translation (thanks to Joe Dalton). Closes: #596259
596
597 -- Christian Hammers <ch@debian.org> Sat, 18 Sep 2010 12:20:07 +0200
598
599 quagga (0.99.17-1) unstable; urgency=high
600
601 * SECURITY:
602 "This release provides two important bugfixes, which address remote crash
603 possibility in bgpd discovered by CROSS team.":
604 1. Stack buffer overflow by processing certain Route-Refresh messages
605 CVE-2010-2948
606 2. DoS (crash) while processing certain BGP update AS path messages
607 CVE-2010-2949
608 Closes: #594262
609
610 -- Christian Hammers <ch@debian.org> Wed, 25 Aug 2010 00:52:48 +0200
611
612 quagga (0.99.16-1) unstable; urgency=low
613
614 * New upstream release. Closes: #574527
615 * Added chrpath to debian/rules to fix rpath problems that lintian spottet.
616
617 -- Christian Hammers <ch@debian.org> Sun, 21 Mar 2010 17:05:40 +0100
618
619 quagga (0.99.15-2) unstable; urgency=low
620
621 * Applied patch for off-by-one bug in ospf6d that caused a segmentation
622 fault when using the "area a.b.c.d filter-list prefix" command (thanks
623 to Steinar H. Gunderson). Closes: 519488
624
625 -- Christian Hammers <ch@debian.org> Sun, 14 Feb 2010 20:02:03 +0100
626
627 quagga (0.99.15-1) unstable; urgency=low
628
629 * New upstream release
630 "This fixes some annoying little ospfd and ospf6d regressions, which made
631 0.99.14 a bit of a problem release (...) This release still contains a
632 regression in the "no ip address ..." command, at least on Linux.
633 See bug #486, which contains a workaround patch. This release should be
634 considered a 1.0.0 release candidate. Please test this release as widely
635 as possible."
636 * Fixed wrong port number in zebra.8 (thanks to Thijs Kinkhorst).
637 Closes: #517860
638 * Added Russian Debconf tanslation (thanks to Yuri Kozlov).
639 Closes: #539464
640 * Removed so-version in build-dep to libreadline-dev on request of
641 Matthias Klose.
642 * Added README.source with reference to dpatch as suggested by lintian.
643 * Bumped standards versionto 3.8.3.
644
645 -- Christian Hammers <ch@debian.org> Sun, 13 Sep 2009 18:12:06 +0200
646
647 quagga (0.99.14-1) unstable; urgency=low
648
649 * New upstream release
650 "This release contains a regression fix for ospf6d, various small fixes
651 and some hopefully very significant bgpd stability fixes.
652 This release should be considered a 1.0.0 release candidate. Please test
653 this release as widely as possible."
654 * Fixes bug with premature LSA aging in ospf6d. Closes: #535030
655 * Fixes section number in zebra.8 manpage. Closes: #517860
656
657 -- Christian Hammers <ch@debian.org> Sat, 25 Jul 2009 00:40:38 +0200
658
659 quagga (0.99.13-2) unstable; urgency=low
660
661 * Added Japanese Debconf translation (thanks to Hideki Yamane).
662 Closes: #510714
663 * When checking for obsoleted config options in preinst, print filename
664 where it occures (thanks to Michael Bussmann). Closes: #339489
665
666 -- Christian Hammers <ch@debian.org> Sun, 19 Jul 2009 17:13:23 +0200
667
668 quagga (0.99.13-1) unstable; urgency=low
669
670 * New upstream release
671 "This release is contains a number of small fixes, for potentially
672 irritating issues, as well as small enhancements to vtysh and support
673 for linking to PCRE (a much faster regex library)."
674 * Added build-dep to gawk as configure required it for memtypes.awk
675 * Replaced build-dep to gs-gpl with ghostscript as requested by lintian
676 * Minor changes to copyright and control files to make lintian happy.
677
678 -- Christian Hammers <ch@debian.org> Wed, 24 Jun 2009 17:53:28 +0200
679
680 quagga (0.99.12-1) unstable; urgency=high
681
682 * New upstream release
683 "This release fixes an urgent bug in bgpd where it could hit an assert
684 if it received a long AS_PATH with a 4-byte ASN." Noteworthy bugfixes:
685 + [bgpd] Fix bgp ipv4/ipv6 accept handling
686 + [bgpd] AS4 bugfix by Chris Caputo
687 + [bgpd] Allow accepted peers to progress even if realpeer is in Connect
688 + [ospfd] Switch Fletcher checksum back to old ospfd version
689
690 -- Christian Hammers <ch@debian.org> Mon, 22 Jun 2009 00:16:33 +0200
691
692 quagga (0.99.11-1) unstable; urgency=low
693
694 * New upstream release
695 "Most regressions in 0.99 over 0.98 are now believed to be fixed. This
696 release should be considered a release-candidate for a new stable series."
697 + bgpd: Preliminary UI and Linux-IPv4 support for TCP-MD5 merged
698 + zebra: ignore dead routes in RIB update
699 + [ospfd] Default route needs to be refreshed after neighbour state change
700 + [zebra:netlink] Set proto/scope on all route update messages
701 * Removed debian/patches/20_*bgp*md5*.dpatch due to upstream support.
702
703 -- Christian Hammers <ch@debian.org> Thu, 09 Oct 2008 22:56:38 +0200
704
705 quagga (0.99.10-1) unstable; urgency=medium
706
707 * New upstream release
708 + bgpd: 4-Byte AS Number support
709 + Sessions were incorrectly reset if a partial AS-Pathlimit attribute
710 was received.
711 + Advertisement of Multi-Protocol prefixes (i.e. non-IPv4) had been
712 broken in the 0.99.9 release. Closes: #467656
713
714 -- Christian Hammers <ch@debian.org> Tue, 08 Jul 2008 23:32:42 +0200
715
716 quagga (0.99.9-6) unstable; urgency=low
717
718 * Fixed FTBFS by adding a build-dep to libpcre3-dev (thanks to Luk Claes).
719 Closes: #469891
720
721 -- Christian Hammers <ch@debian.org> Sat, 12 Apr 2008 12:53:51 +0200
722
723 quagga (0.99.9-5) unstable; urgency=low
724
725 * C.J. Adams-Collier and Paul Jakma suggested to build against libpcre3
726 which is supposed to be faster.
727
728 -- Christian Hammers <ch@debian.org> Sun, 02 Mar 2008 13:19:42 +0100
729
730 quagga (0.99.9-4) unstable; urgency=low
731
732 * Added hardening-wrapper to the build-deps (thanks to Moritz Muehlenhoff).
733
734 -- Christian Hammers <ch@debian.org> Tue, 29 Jan 2008 22:33:56 +0100
735
736 quagga (0.99.9-3) unstable; urgency=low
737
738 * Replaced the BGP patch by a new one so that the package builds again
739 with kernels above 2.6.21!
740 * debian/control:
741 + Moved quagga-doc to section doc to make lintian happy.
742 * Added Spanish debconf translation (thanks to Carlos Galisteo de Cabo).
743 Closes: #428574
744 * debian/control: (thanks to Marco Rodrigues)
745 + Bump Standards-Version to 3.7.3 (no changes needed).
746 + Add Homepage field.
747
748 -- Christian Hammers <ch@debian.org> Mon, 28 Jan 2008 22:29:18 +0100
749
750 quagga (0.99.9-2.1) unstable; urgency=low
751
752 * Non-maintainer upload.
753 * debian/rules: fixed bashisms. (Closes: #459122)
754
755 -- Miguel Angel Ruiz Manzano <debianized@gmail.com> Tue, 22 Jan 2008 14:37:21 -0300
756
757 quagga (0.99.9-2) unstable; urgency=low
758
759 * Added CVE id for the security bug to the last changelog entry.
760 Closes: 442133
761
762 -- Christian Hammers <ch@debian.org> Tue, 25 Sep 2007 22:01:31 +0200
763
764 quagga (0.99.9-1) unstable; urgency=high
765
766 * SECURITY:
767 "This release fixes two potential DoS conditions in bgpd, reported by Mu
768 Security, where a bgpd could be crashed if a peer sent a malformed OPEN
769 message or a malformed COMMUNITY attribute. Only configured peers can do
770 this, hence we consider these issues to be very low impact." CVE-2007-4826
771
772 -- Christian Hammers <ch@debian.org> Wed, 12 Sep 2007 21:12:41 +0200
773
774 quagga (0.99.8-1) unstable; urgency=low
775
776 * New upstream version.
777
778 -- Christian Hammers <ch@debian.org> Fri, 17 Aug 2007 00:07:04 +0200
779
780 quagga (0.99.7-3) unstable; urgency=medium
781
782 * Applied patch for FTBFS with linux-libc-dev (thanks to Andrew J. Schorr
783 and Lucas Nussbaum). Closes: #429003
784
785 -- Christian Hammers <ch@debian.org> Fri, 22 Jun 2007 21:34:55 +0200
786
787 quagga (0.99.7-2) unstable; urgency=low
788
789 * Added Florian Weimar as co-maintainer. Closes: 421977
790 * Added Dutch debconf translation (thanks to Bart Cornelis).
791 Closes: #420932
792 * Added Portuguese debconf translation (thanks to Rui Branco).
793 Closes: #421185
794 * Improved package description (thanks to Reuben Thomas).
795 Closes: #418933
796 * Added CVE Id to 0.99.6-5 changelog entry.
797
798 -- Christian Hammers <ch@debian.org> Wed, 02 May 2007 20:27:12 +0200
799
800 quagga (0.99.7-1) unstable; urgency=low
801
802 * New upstream release. Closes: #421553
803
804 -- Christian Hammers <ch@debian.org> Mon, 30 Apr 2007 14:22:34 +0200
805
806 quagga (0.99.6-6) unstable; urgency=medium
807
808 * Fixes FTBFS with tetex-live. Closes: #420468
809
810 -- Christian Hammers <ch@debian.org> Mon, 23 Apr 2007 21:34:13 +0200
811
812 quagga (0.99.6-5) unstable; urgency=high
813
814 * SECURITY:
815 The bgpd daemon was vulnerable to a Denial-of-Service. Configured peers
816 could cause a Quagga bgpd to, typically, assert() and abort. The DoS
817 could be triggered by peers by sending an UPDATE message with a crafted,
818 malformed Multi-Protocol reachable/unreachable NLRI attribute.
819 This is CVE-2007-1995 and Quagga Bug#354. Closes: #418323
820
821 -- Christian Hammers <ch@debian.org> Thu, 12 Apr 2007 23:21:58 +0200
822
823 quagga (0.99.6-4) unstable; urgency=low
824
825 * Improved note in README.Debian for SNMP self-builders (thanks to Matthias
826 Wamser). Closes: #414788
827
828 -- Christian Hammers <ch@debian.org> Wed, 14 Mar 2007 02:18:57 +0100
829
830 quagga (0.99.6-3) unstable; urgency=low
831
832 * Updated German Debconf translation (thanks to Matthias Julius).
833 Closes: #409327
834
835 -- Christian Hammers <ch@debian.org> Sat, 10 Feb 2007 15:06:16 +0100
836
837 quagga (0.99.6-2) unstable; urgency=low
838
839 * Updated config.guess/config.sub as suggested by lintian.
840 * Corrected README.Debian text regarding the WANT_SNMP flag.
841
842 -- Christian Hammers <ch@debian.org> Sun, 17 Dec 2006 01:45:37 +0100
843
844 quagga (0.99.6-1) unstable; urgency=low
845
846 * New upstream release. Closes: #402361
847
848 -- Christian Hammers <ch@debian.org> Mon, 11 Dec 2006 00:28:09 +0100
849
850 quagga (0.99.5-5) unstable; urgency=high
851
852 * Changed Depends on adduser to Pre-Depends to avoid uninstallability
853 in certain cases (thanks to Steve Langasek, Lucas Nussbaum).
854 Closes: #398562
855
856 -- Christian Hammers <ch@debian.org> Wed, 15 Nov 2006 17:46:34 +0100
857
858 quagga (0.99.5-4) unstable; urgency=low
859
860 * Added default PAM file and some explanations regarding PAM authentication
861 of vtysh which could prevent the start at boot-time when used wrong.
862 Now PAM permits anybody to access the vtysh tool (a malicious user could
863 build his own vtysh without PAM anyway) and the access is controled by
864 the read/write permissions of the vtysh socket which are only granted to
865 users belonging to the quaggavty group (thanks to Wakko Warner).
866 Closes: #389496
867 * Added "case" to prerm script so that the Debconf question is not called a
868 second time in e.g. "new-prerm abort-upgrade" after being NACKed in the
869 old-prerm.
870
871 -- Christian Hammers <ch@debian.org> Fri, 3 Nov 2006 01:22:15 +0100
872
873 quagga (0.99.5-3) unstable; urgency=medium
874
875 * Backport CVS fix for an OSPF DD Exchange regression (thanks to Matt
876 Brown). Closes: #391040
877
878 -- Christian Hammers <ch@debian.org> Wed, 25 Oct 2006 19:47:11 +0200
879
880 quagga (0.99.5-2) unstable; urgency=medium
881
882 * Added LSB info section to initscript.
883 * Removed unnecessary depends to libncurses5 to make checklib happy.
884 The one to libcap should remain though as it is just temporarily
885 unused.
886
887 -- Christian Hammers <ch@debian.org> Thu, 21 Sep 2006 00:04:07 +0200
888
889 quagga (0.99.5-1) unstable; urgency=low
890
891 * New upstream release. Closes: #38704
892 * Upstream fixes ospfd documentary inconsistency. Closes: #347897
893 * Changed debconf question in prerm to "high" (thanks to Rafal Pietrak).
894
895 -- Christian Hammers <ch@debian.org> Mon, 11 Sep 2006 23:43:42 +0200
896
897 quagga (0.99.4-4) unstable; urgency=low
898
899 * Recreate /var/run if not present because /var is e.g. on a tmpfs
900 filesystem (thanks to Martin Pitt). Closes: #376142
901 * Removed nonexistant option from ospfd.8 manpage (thanks to
902 David Medberry). Closes: 378274
903
904 -- Christian Hammers <ch@debian.org> Sat, 15 Jul 2006 20:22:12 +0200
905
906 quagga (0.99.4-3) unstable; urgency=low
907
908 * Removed invalid semicolon from rules file (thanks to Philippe Gramoulle).
909
910 -- Christian Hammers <ch@debian.org> Tue, 27 Jun 2006 23:36:07 +0200
911
912 quagga (0.99.4-2) unstable; urgency=high
913
914 * Set urgency to high as 0.99.4-1 fixes a security problem!
915 * Fixed building of the info file.
916
917 -- Christian Hammers <ch@debian.org> Sun, 14 May 2006 23:04:28 +0200
918
919 quagga (0.99.4-1) unstable; urgency=low
920
921 * New upstream release to fix a security problem in the telnet interface
922 of the BGP daemon which could be used for DoS attacks (CVE-2006-2276).
923 Closes: 366980
924
925 -- Christian Hammers <ch@debian.org> Sat, 13 May 2006 19:54:40 +0200
926
927 quagga (0.99.3-3) unstable; urgency=low
928
929 * Added CVE numbers for the security patch in 0.99.3-2.
930
931 -- Christian Hammers <ch@debian.org> Sat, 6 May 2006 17:14:22 +0200
932
933 quagga (0.99.3-2) unstable; urgency=high
934
935 * SECURITY:
936 Added security bugfix patch from upstream BTS for security problem
937 that could lead to injected routes when using RIPv1.
938 CVE-2006-2223 - missing configuration to disable RIPv1 or require
939 plaintext or MD5 authentication
940 CVE-2006-2224 - lack of enforcement of RIPv2 authentication requirements
941 Closes: #365940
942 * First amd64 upload.
943
944 -- Christian Hammers <ch@debian.org> Thu, 4 May 2006 00:22:09 +0200
945
946 quagga (0.99.3-1) unstable; urgency=low
947
948 * New upstream release
949
950 -- Christian Hammers <ch@debian.org> Wed, 25 Jan 2006 13:37:27 +0100
951
952 quagga (0.99.2-1) unstable; urgency=low
953
954 * New upstream release
955 Closes: #330248, #175553
956
957 -- Christian Hammers <ch@debian.org> Wed, 16 Nov 2005 00:25:52 +0100
958
959 quagga (0.99.1-7) unstable; urgency=low
960
961 * Changed debian/rules check for mounted /proc directory to check
962 for /proc/1 as not all systems (e.g. 2.6 arm kernels) have
963 /proc/kcore which is a optional feature only (thanks to Lennert
964 Buytenhek). Closes: #335695
965 * Added Swedish Debconf translation (thanks to Daniel Nylander).
966 Closes: #331367
967
968 -- Christian Hammers <ch@debian.org> Thu, 27 Oct 2005 20:53:19 +0200
969
970 quagga (0.99.1-6) unstable; urgency=low
971
972 * Fixed debconf dependency as requested by Joey Hess.
973
974 -- Christian Hammers <ch@debian.org> Mon, 26 Sep 2005 20:47:35 +0200
975
976 quagga (0.99.1-5) unstable; urgency=low
977
978 * Rebuild with libreadline5-dev as build-dep as requested by
979 Matthias Klose. Closes: #326306
980 * Made initscript more fault tolerant against missing lines in
981 /etc/quagga/daemons (thanks to Ralf Hildebrandt). Closes: #323774
982 * Added dependency to adduser.
983
984 -- Christian Hammers <ch@debian.org> Tue, 13 Sep 2005 21:42:17 +0200
985
986 quagga (0.99.1-4) unstable; urgency=low
987
988 * Added French Debconf translation (thanks to Mohammed Adnene Trojette).
989 Closes: #319324
990 * Added Czech Debconf translation (thanks to Miroslav Kure).
991 Closes: #318127
992
993 -- Christian Hammers <ch@debian.org> Sun, 31 Jul 2005 04:19:41 +0200
994
995 quagga (0.99.1-3) unstable; urgency=low
996
997 * A Debconf question now asks the admin before upgrading if the daemon
998 should really be stopped as this could lead to the loss of network
999 connectivity or BGP flaps (thanks to Michael Horn and Achilleas Kotsis).
1000 Also added a hint about setting Quagga "on hold" to README.Debian.
1001 Closes: #315467
1002 * Added patch to build on Linux/ARM.
1003
1004 -- Christian Hammers <ch@debian.org> Sun, 10 Jul 2005 22:19:38 +0200
1005
1006 quagga (0.99.1-2) unstable; urgency=low
1007
1008 * Fixed SNMP enabled command in debian/rules (thanks to Christoph Kluenter).
1009 Closes: #306840
1010
1011 -- Christian Hammers <ch@debian.org> Sat, 4 Jun 2005 14:04:01 +0200
1012
1013 quagga (0.99.1-1) unstable; urgency=low
1014
1015 * New upstream version. Among others:
1016 - BGP graceful restart and "match ip route-source" added
1017 - support for interface renaming
1018 - improved threading for better responsivness under load
1019 * Switched to dpatch to make diffs cleaner.
1020 * Made autoreconf unnecessary.
1021 * Replaced quagga.dvi and quagga.ps by quagga.pdf in quagga-doc.
1022 (the PostScript would have needed Makefile corrections and PDF
1023 is more preferable anyway)
1024 * Added isisd to the list of daemons in /etc/init.d/quagga (thanks
1025 to Ernesto Elbe).
1026 * Added hint for "netlink-listen: overrun" messages (thanks to
1027 Hasso Tepper).
1028 * Added preinst check that bails out if old smux options are in use
1029 as Quagga would not start up else anyway (thanks to Bjorn Mork).
1030 Closes: #308320
1031
1032 -- Christian Hammers <ch@debian.org> Fri, 13 May 2005 01:18:24 +0200
1033
1034 quagga (0.98.3-7) unstable; urgency=high
1035
1036 * Removed SNMP support as linking against NetSNMP introduced a dependency
1037 to OpenSSL which is not compatible to the GPL which governs this
1038 application (thanks to Faidon Liambotis). See README.Debian for more
1039 information. Closes: #306840
1040 * Changed listening address of ospf6d and ripngd from 127.0.0.1 to "::1".
1041 * Added build-dep to groff to let drafz-zebra-00.txt build correctly.
1042
1043 -- Christian Hammers <ch@debian.org> Wed, 4 May 2005 20:08:14 +0200
1044
1045 quagga (0.98.3-6) testing-proposed-updates; urgency=high
1046
1047 * Removed "Recommends kernel-image-2.4" as aptitude then
1048 installes a kernel-image for an arbitrary architecture as long
1049 as it fullfill that recommendation which can obviously fatal
1050 at the next reboot :) Also it is a violation of the policy
1051 which mandates a reference to real packages (thanks to Holger Levsen).
1052 Closes: #307281
1053
1054 -- Christian Hammers <ch@debian.org> Tue, 3 May 2005 22:53:39 +0200
1055
1056 quagga (0.98.3-5) unstable; urgency=high
1057
1058 * The patch which tried to remove the OpenSSL dependency, which is
1059 not only unneccessary but also a violation of the licence and thus RC,
1060 stopped working a while ago, since autoreconf is no longer run before
1061 building the binaries. So now ./configure is patched directly (thanks
1062 to Faidon Liambotis for reporting). Closes: #306840
1063 * Raised Debhelper compatibility level from 3 to 4. Nothing changed.
1064 * Added build-dep to texinfo (>= 4.7) to ease work for www.backports.org.
1065
1066 -- Christian Hammers <ch@debian.org> Fri, 29 Apr 2005 02:31:03 +0200
1067
1068 quagga (0.98.3-4) unstable; urgency=low
1069
1070 * Removed Debconf upgrade note as it was considered a Debconf abuse
1071 and apart from that so obvious that it was not even worth to be
1072 put into NEWS.Debian (thanks to Steve Langasek). Closes: #306384
1073
1074 -- Christian Hammers <ch@debian.org> Wed, 27 Apr 2005 00:10:24 +0200
1075
1076 quagga (0.98.3-3) unstable; urgency=medium
1077
1078 * Adding the debconf module due to a lintian suggestion is a very
1079 bad idea if no db_stop is called as the script hangs then (thanks
1080 to Tore Anderson for reporting). Closes: #306324
1081
1082 -- Christian Hammers <ch@debian.org> Mon, 25 Apr 2005 21:55:58 +0200
1083
1084 quagga (0.98.3-2) unstable; urgency=low
1085
1086 * Added debconf confmodule to postinst as lintian suggested.
1087
1088 -- Christian Hammers <ch@debian.org> Sun, 24 Apr 2005 13:16:00 +0200
1089
1090 quagga (0.98.3-1) unstable; urgency=low
1091
1092 * New upstream release.
1093 Mmost notably fixes last regression in bgpd (reannounce of prefixes
1094 with changed attributes works again), race condition in netlink
1095 handling while using IPv6, MTU changes handling in ospfd and several
1096 crashes in ospfd, bgpd and ospf6d.
1097
1098 -- Christian Hammers <ch@debian.org> Mon, 4 Apr 2005 12:51:24 +0200
1099
1100 quagga (0.98.2-2) unstable; urgency=low
1101
1102 * Added patch to let Quagga compile with gcc-4.0 (thanks to
1103 Andreas Jochens). Closes: #300949
1104
1105 -- Christian Hammers <ch@debian.org> Fri, 25 Mar 2005 19:33:30 +0100
1106
1107 quagga (0.98.2-1) unstable; urgency=medium
1108
1109 * Quoting the upstream announcement:
1110 The 0.98.1 release unfortunately was a brown paper bag release with
1111 respect to ospfd. [...] 0.98.2 has been released, with one crucial change
1112 to fix the unfortunate mistake in 0.98.1, which caused problems if
1113 ospfd became DR.
1114 * Note: the upstream tarball had a strange problem, apparently redhat.spec
1115 was twice in it? At least debuild gave a strange error message so I
1116 unpacked it by hand. No changes were made to the .orig.tar.gz!
1117
1118 -- Christian Hammers <ch@debian.org> Fri, 4 Feb 2005 01:31:36 +0100
1119
1120 quagga (0.98.1-1) unstable; urgency=medium
1121
1122 * New upstream version
1123 "fixing a fatal OSPF + MD5 auth regression, and a non-fatal high-load
1124 regression in bgpd which were present in the 0.98.0 release."
1125 * Upstream version fixes bug in ospfd that could lead to crash when OSPF
1126 packages had a MTU > 1500. Closes: #290566
1127 * Added notice regarding capability kernel support to README.Debian
1128 (thanks to Florian Weimer). Closes: #291509
1129 * Changed permission setting in postinst script (thanks to Bastian Blank).
1130 Closes: #292690
1131
1132 -- Christian Hammers <ch@debian.org> Tue, 1 Feb 2005 02:01:27 +0100
1133
1134 quagga (0.98.0-3) unstable; urgency=low
1135
1136 * Fixed problem in init script. Closes: #290317
1137 * Removed obsolete "smux peer enable" patch.
1138
1139 -- Christian Hammers <ch@debian.org> Fri, 14 Jan 2005 17:37:27 +0100
1140
1141 quagga (0.98.0-2) unstable; urgency=low
1142
1143 * Updated broken TCP MD5 patch for BGP (thanks to John P. Looney
1144 for telling me).
1145
1146 -- Christian Hammers <ch@debian.org> Thu, 13 Jan 2005 02:03:54 +0100
1147
1148 quagga (0.98.0-1) unstable; urgency=low
1149
1150 * New upstream release
1151 * Added kernel-image-2.6 as alternative to 2.4 to the recommends
1152 (thanks to Faidon Liambotis). Closes: #289530
1153
1154 -- Christian Hammers <ch@debian.org> Mon, 10 Jan 2005 19:36:17 +0100
1155
1156 quagga (0.97.5-1) unstable; urgency=low
1157
1158 * New upstream version.
1159 * Added Czech debconf translation (thanks to Miroslav Kure).
1160 Closes: #287293
1161 * Added Brazilian debconf translation (thanks to Andre Luis Lopes).
1162 Closes: #279352
1163
1164 -- Christian Hammers <ch@debian.org> Wed, 5 Jan 2005 23:49:57 +0100
1165
1166 quagga (0.97.4-2) unstable; urgency=low
1167
1168 * Fixed quagga.info build problem.
1169
1170 -- Christian Hammers <ch@debian.org> Wed, 5 Jan 2005 22:38:01 +0100
1171
1172 quagga (0.97.4-1) unstable; urgency=low
1173
1174 * New upstream release.
1175
1176 -- Christian Hammers <ch@debian.org> Tue, 4 Jan 2005 01:45:22 +0100
1177
1178 quagga (0.97.3-2) unstable; urgency=low
1179
1180 * Included isisd in the daemon list.
1181 * Wrote an isisd manpage.
1182 * It is now ensured that zebra is always the last daemon to be stopped.
1183 * (Thanks to Hasso Tepper for mailing me a long list of suggestions
1184 which lead to this release)
1185
1186 -- Christian Hammers <ch@debian.org> Sat, 18 Dec 2004 13:14:55 +0100
1187
1188 quagga (0.97.3-1) unstable; urgency=medium
1189
1190 * New upstream version.
1191 - Fixes important OSPF bug.
1192 * Added ht-20040911-smux.patch regarding Quagga bug #112.
1193 * Updated ht-20041109-0.97.3-bgp-md5.patch for BGP with TCP MD5
1194 (thanks to Matthias Wamser).
1195
1196 -- Christian Hammers <ch@debian.org> Tue, 9 Nov 2004 17:45:26 +0100
1197
1198 quagga (0.97.2-4) unstable; urgency=low
1199
1200 * Added Portuguese debconf translation (thanks to Andre Luis Lopes).
1201 Closes: #279352
1202 * Disabled ospfapi server by default on recommendation of Paul Jakma.
1203
1204 -- Christian Hammers <ch@debian.org> Sun, 7 Nov 2004 15:07:05 +0100
1205
1206 quagga (0.97.2-3) unstable; urgency=low
1207
1208 * Added Andrew Schorrs VTY Buffer patch from the [quagga-dev 1729].
1209
1210 -- Christian Hammers <ch@debian.org> Tue, 2 Nov 2004 00:46:56 +0100
1211
1212 quagga (0.97.2-2) unstable; urgency=low
1213
1214 * Changed file and directory permissions and ownerships according to a
1215 suggestion from Paul Jakma. Still not perfect though.
1216 * Fixed upstream vtysh.conf.sample file.
1217 * "ip ospf network broadcast" is now saved correctly. Closes: #244116
1218 * Daemon options are now in /etc/quagga/debian.conf to be user
1219 configurable (thanks to Simon Raven and Hasso Tepper). Closes: #266715
1220
1221 -- Christian Hammers <ch@debian.org> Tue, 26 Oct 2004 23:35:45 +0200
1222
1223 quagga (0.97.2-1) unstable; urgency=low
1224
1225 * New upstream version.
1226 Closes: #254541
1227 * Fixed warning on unmodular kernels (thanks to Christoph Biedl).
1228 Closes: #277973
1229
1230 -- Christian Hammers <ch@debian.org> Mon, 25 Oct 2004 00:47:04 +0200
1231
1232 quagga (0.97.1-2) unstable; urgency=low
1233
1234 * Version 0.97 introduced shared libraries. They are now included.
1235 (thanks to Raf D'Halleweyn). Closes: #277446
1236
1237 -- Christian Hammers <ch@debian.org> Wed, 20 Oct 2004 15:32:06 +0200
1238
1239 quagga (0.97.1-1) unstable; urgency=low
1240
1241 * New upstream version.
1242 * Removed some obsolete files from debian/patches.
1243 * Added patch from upstream bug 113. Closes: #254541
1244 * Added patch from upstream that fixes a compilation problem in the
1245 ospfclient code (thanks to Hasso Tepper).
1246 * Updated German debconf translation (thanks to Jens Nachtigall)
1247 Closes: #277059
1248
1249 -- Christian Hammers <ch@debian.org> Mon, 18 Oct 2004 01:16:35 +0200
1250
1251 quagga (0.96.5-11) unstable; urgency=low
1252
1253 * Fixed /tmp/buildd/* paths in binaries.
1254 For some unknown reason the upstream Makefile modified a .h file at
1255 the end of the "debian/rules build" target. During the following
1256 "make install" one library got thus be re*compiled* - with /tmp/buildd
1257 paths as sysconfdir (thanks to Peder Chr. Norgaard). Closes: #274050
1258
1259 -- Christian Hammers <ch@debian.org> Fri, 1 Oct 2004 01:21:02 +0200
1260
1261 quagga (0.96.5-10) unstable; urgency=medium
1262
1263 * The BGP routing daemon might freeze on network disturbances when
1264 their peer is also a Quagga/Zebra router.
1265 Applied patch from http://bugzilla.quagga.net/show_bug.cgi?id=102
1266 which has been confirmed by the upstream author.
1267 (thanks to Gunther Stammwitz)
1268 * Changed --enable-pam to --with-libpam (thanks to Hasso Tepper).
1269 Closes: #264562
1270 * Added patch for vtysh (thanks to Hasso Tepper). Closes: #215919
1271
1272 -- Christian Hammers <ch@debian.org> Mon, 9 Aug 2004 15:33:02 +0200
1273
1274 quagga (0.96.5-9) unstable; urgency=low
1275
1276 * Rewrote the documentation chapter about SNMP support. Closes: #195653
1277 * Added MPLS docs.
1278
1279 -- Christian Hammers <ch@debian.org> Thu, 29 Jul 2004 21:01:52 +0200
1280
1281 quagga (0.96.5-8) unstable; urgency=low
1282
1283 * Adjusted a grep in the initscript to also match a modprobe message
1284 from older modutils packages (thanks to Faidon Paravoid).
1285
1286 -- Christian Hammers <ch@debian.org> Wed, 28 Jul 2004 21:19:02 +0200
1287
1288 quagga (0.96.5-7) unstable; urgency=low
1289
1290 * Added a "cd /etc/quagga/" to the init script as quagga tries to load
1291 the config file first from the current working dir and then from the
1292 config dir which could lead to confusion (thanks to Marco d'Itri).
1293 Closes: #255078
1294 * Removed warning regarding problems with the Debian kernels from
1295 README.Debian as they are no longer valid (thanks to Raphael Hertzog).
1296 Closes: #257580
1297 * Added patch from Hasso Tepper that makes "terminal length 0" work
1298 in vtysh (thanks to Matthias Wamser). Closes: #252579
1299
1300 -- Christian Hammers <ch@debian.org> Thu, 8 Jul 2004 21:53:21 +0200
1301
1302 quagga (0.96.5-6) unstable; urgency=low
1303
1304 * Try to load the capability module as it is needed now.
1305
1306 -- Christian Hammers <ch@debian.org> Tue, 8 Jun 2004 23:25:29 +0200
1307
1308 quagga (0.96.5-5) unstable; urgency=low
1309
1310 * Changed the homedir of the quagga user to /etc/quagga/ to allow
1311 admins to put ~/.ssh/authorized_keys there (thanks to Matthias Wamser).
1312 Closes: #252577
1313
1314 -- Christian Hammers <ch@debian.org> Sat, 5 Jun 2004 14:47:31 +0200
1315
1316 quagga (0.96.5-4) unstable; urgency=medium
1317
1318 * Fixed rules file to use the renamed ./configure option --enable-tcp-md5
1319 (thanks to Matthias Wamser). Closes: #252141
1320
1321 -- Christian Hammers <ch@debian.org> Tue, 1 Jun 2004 22:58:32 +0200
1322
1323 quagga (0.96.5-3) unstable; urgency=low
1324
1325 * Provided default binary package name to all build depends that were
1326 virtual packages (thanks to Goswin von Brederlow). Closes: #251625
1327
1328 -- Christian Hammers <ch@debian.org> Sat, 29 May 2004 22:48:53 +0200
1329
1330 quagga (0.96.5-2) unstable; urgency=low
1331
1332 * New upstream version.
1333 * New md5 patch version (thanks to Niklas Jakobsson and Hasso Tepper).
1334 Closes: #250985
1335 * Fixes info file generation (thanks to Peder Chr. Norgaard).
1336 Closes: #250992
1337 * Added catalan debconf translation (thanks to Aleix Badia i Bosch).
1338 Closes: #250118
1339 * PATCHES:
1340 This release contains BGP4 MD5 support which requires a kernel patch
1341 to work. See /usr/share/doc/quagga/README.Debian.MD5.
1342 (The patch is ht-20040525-0.96.5-bgp-md5.patch from Hasso Tepper)
1343
1344 -- Christian Hammers <ch@debian.org> Thu, 27 May 2004 20:09:37 +0200
1345
1346 quagga (0.96.5-1) unstable; urgency=low
1347
1348 * New upstream version.
1349 * PATCHES:
1350 This release contains BGP4 MD5 support which also requires a kernel patch.
1351 See /usr/share/doc/quagga/README.Debian.MD5 and search for CAN-2004-0230.
1352
1353 -- Christian Hammers <ch@debian.org> Sun, 16 May 2004 17:40:40 +0200
1354
1355 quagga (0.96.4x-10) unstable; urgency=low
1356
1357 * SECURITY:
1358 This release contains support for MD5 for BGP which is one suggested
1359 prevention of the actually long known TCP SYN/RST attacks which got
1360 much news in the last days as ideas were revealed that made them much
1361 easier probable agains especially the BGP sessions than commonly known.
1362 There are a lot of arguments agains the MD5 approach but some ISPs
1363 started to require it.
1364 See: CAN-2004-0230, http://www.us-cert.gov/cas/techalerts/TA04-111A.html
1365 * PATCHES:
1366 This release contains the MD5 patch from Hasso Tepper. It also seems to
1367 required a kernel patch. See /usr/share/doc/quagga/README.Debian.MD5.
1368
1369 -- Christian Hammers <ch@debian.org> Thu, 29 Apr 2004 01:01:38 +0200
1370
1371 quagga (0.96.4x-9) unstable; urgency=low
1372
1373 * Fixed daemon loading order (thanks to Matt Kemner).
1374 * Fixed typo in init script (thanks to Charlie Brett). Closes: #238582
1375
1376 -- Christian Hammers <ch@debian.org> Sun, 4 Apr 2004 15:32:18 +0200
1377
1378 quagga (0.96.4x-8) unstable; urgency=low
1379
1380 * Patched upstream source so that quagga header files end up in
1381 /usr/include/quagga/. Closes: #233792
1382
1383 -- Christian Hammers <ch@debian.org> Mon, 23 Feb 2004 01:42:53 +0100
1384
1385 quagga (0.96.4x-7) unstable; urgency=low
1386
1387 * Fixed info file installation (thanks to Holger Dietze). Closes: #227579
1388 * Added Japanese translation (thanks to Hideki Yamane). Closes: #227812
1389
1390 -- Christian Hammers <ch@debian.org> Sun, 18 Jan 2004 17:28:29 +0100
1391
1392 quagga (0.96.4x-6) unstable; urgency=low
1393
1394 * Added dependency to iproute.
1395 * Initscript now checks not only for the pid file but also for the
1396 daemons presence (thanks to Phil Gregory). Closes: #224389
1397 * Added my patch to configure file permissions.
1398
1399 -- Christian Hammers <ch@debian.org> Mon, 15 Dec 2003 22:34:29 +0100
1400
1401 quagga (0.96.4x-5) unstable; urgency=low
1402
1403 * Added patch which gives bgpd the CAP_NET_RAW capability to allow it
1404 to bind to special IPv6 link-local interfaces (Thanks to Bastian Blank).
1405 Closes: #222930
1406 * Made woody backport easier by applying Colin Watsons po-debconf hack.
1407 Thanks to Marc Haber for suggesting it. Closes: #223527
1408 * Made woody backport easier by applying a patch that removes some
1409 obscure whitespaces inside an C macro. (Thanks to Marc Haber).
1410 Closes: #223529
1411 * Now uses /usr/bin/pager. Closes: #204070
1412 * Added note about the "official woody backports" on my homepage.
1413
1414 -- Christian Hammers <ch@debian.org> Mon, 15 Dec 2003 20:39:06 +0100
1415
1416 quagga (0.96.4x-4) unstable; urgency=high
1417
1418 * SECURITY:
1419 Fixes another bug that was originally reported against Zebra.
1420 .
1421 http://rhn.redhat.com/errata/RHSA-2003-307.html
1422 Herbert Xu reported that Zebra can accept spoofed messages sent on the
1423 kernel netlink interface by other users on the local machine. This could
1424 lead to a local denial of service attack. The Common Vulnerabilities and
1425 Exposures project (cve.mitre.org) has assigned the name CAN-2003-0858 to
1426 this issue.
1427
1428 * Minor improvements to init script (thanks to Iustin Pop).
1429 Closes: #220938
1430
1431 -- Christian Hammers <ch@debian.org> Sat, 22 Nov 2003 13:27:57 +0100
1432
1433 quagga (0.96.4x-3) unstable; urgency=low
1434
1435 * Changed "more" to "/usr/bin/pager" as default pager if $PAGER or
1436 $VTYSH_PAGER is not set (thanks to Bastian Blank). Closes: #204070
1437 * Made the directory (but not the config/log files!) world accessible
1438 again on user request (thanks to Anand Kumria)). Closes: #213129
1439 * No longer providing sample configuration in /etc/quagga/. They are
1440 now only available in /usr/share/doc/quagga/ to avoid accidently
1441 using them without changing the adresses (thanks to Marc Haber).
1442 Closes: #215918
1443
1444 -- Christian Hammers <ch@debian.org> Sun, 16 Nov 2003 16:59:30 +0100
1445
1446 quagga (0.96.4x-2) unstable; urgency=low
1447
1448 * Fixed permission problem with pidfile (thanks to Kir Kostuchenko).
1449 Closes: #220938
1450
1451 -- Christian Hammers <ch@debian.org> Sun, 16 Nov 2003 14:24:08 +0100
1452
1453 quagga (0.96.4x-1) unstable; urgency=low
1454
1455 * Reupload of 0.96.4. Last upload-in-a-hurry produced a totally
1456 crappy .tar.gz file. Closes: #220621
1457
1458 -- Christian Hammers <ch@debian.org> Fri, 14 Nov 2003 19:45:57 +0100
1459
1460 quagga (0.96.4-1) unstable; urgency=high
1461
1462 * SECURITY: Remote DoS of protocol daemons.
1463 Fix for a remote triggerable crash in vty layer. The management
1464 ports ("telnet myrouter ospfd") should not be open to the internet!
1465
1466 * New upstream version.
1467 - OSPF bugfixes.
1468 - Some improvements for bgp and rip.
1469
1470 -- Christian Hammers <ch@debian.org> Thu, 13 Nov 2003 11:52:27 +0100
1471
1472 quagga (0.96.3-3) unstable; urgency=low
1473
1474 * Fixed pid file generation by substituting the daemons "-d" by the
1475 start-stop-daemon option "--background" (thanks to Micha Gaisser).
1476 Closes: #218103
1477
1478 -- Christian Hammers <ch@debian.org> Wed, 29 Oct 2003 05:17:49 +0100
1479
1480 quagga (0.96.3-2) unstable; urgency=low
1481
1482 * Readded GNOME-PRODUCT-ZEBRA-MIB.
1483
1484 -- Christian Hammers <ch@debian.org> Thu, 23 Oct 2003 06:17:03 +0200
1485
1486 quagga (0.96.3-1) unstable; urgency=medium
1487
1488 * New upstream version.
1489 * Removed -u and -e in postrm due to problems with debhelper and userdel
1490 (thanks to Adam Majer and Jaakko Niemi). Closes: #216770
1491 * Removed SNMP MIBs as they are now included in libsnmp-base (thanks to
1492 David Engel and Peter Gervai). Closes: #216138, #216086
1493 * Fixed seq command in init script (thanks to Marc Haber). Closes: #215915
1494 * Improved /proc check (thanks to Marc Haber). Closes: #212331
1495
1496 -- Christian Hammers <ch@debian.org> Thu, 23 Oct 2003 03:42:02 +0200
1497
1498 quagga (0.96.2-9) unstable; urgency=medium
1499
1500 * Removed /usr/share/info/dir.* which were accidently there and prevented
1501 the installation by dpkg (thanks to Simon Raven). Closes: #212614
1502 * Reworded package description (thanks to Anand Kumria). Closes: #213125
1503 * Added french debconf translation (thanks to Christian Perrier).
1504 Closes: #212803
1505
1506 -- Christian Hammers <ch@debian.org> Tue, 7 Oct 2003 13:26:58 +0200
1507
1508 quagga (0.96.2-8) unstable; urgency=low
1509
1510 * debian/rules now checks if /proc is mounted as ./configure needs
1511 it but just fails with an obscure error message if it is absent.
1512 (Thanks to Norbert Tretkowski). Closes: #212331
1513
1514 -- Christian Hammers <ch@debian.org> Tue, 23 Sep 2003 12:57:38 +0200
1515
1516 quagga (0.96.2-7) unstable; urgency=low
1517
1518 * Last build was rejected due to a buggy dpkg-dev version. Rebuild.
1519
1520 -- Christian Hammers <ch@debian.org> Mon, 22 Sep 2003 20:34:12 +0200
1521
1522 quagga (0.96.2-6) unstable; urgency=low
1523
1524 * Fixed init script so that is is now possible to just start
1525 the bgpd but not the zebra daemon. Also daemons are now actually
1526 started in the order defined their priority. (Thanks to Thomas Kaehn
1527 and Jochen Friedrich) Closes: #210924
1528
1529 -- Christian Hammers <ch@debian.org> Fri, 19 Sep 2003 21:17:02 +0200
1530
1531 quagga (0.96.2-5) unstable; urgency=low
1532
1533 * For using quagga as BGP route server or similar, it is not
1534 wanted to have the zebra daemon running too. For this reason
1535 it can now be disabled in /etc/quagga/daemons, too.
1536 (Thanks to Jochen Friedrich). Closes: #210924
1537 * Attached *unapplied* patch for the ISIS protocol. I did not dare
1538 to apply it as long as upstream does not do it but this way give
1539 users the possibilities to use it if they like to.
1540 (Thanks to Remco van Mook)
1541
1542 -- Christian Hammers <ch@debian.org> Wed, 17 Sep 2003 19:57:31 +0200
1543
1544 quagga (0.96.2-4) unstable; urgency=low
1545
1546 * Enabled IPV6 router advertisement feature by default on user request
1547 (thanks to Jochen Friedrich and Hasso Tepper). Closes: #210732
1548 * Updated GNU autoconf to let it build on hppa/parisc64 (thanks to
1549 lamont). Closes: #210492
1550
1551 -- Christian Hammers <ch@debian.org> Sat, 13 Sep 2003 14:11:13 +0200
1552
1553 quagga (0.96.2-3) unstable; urgency=medium
1554
1555 * Removed unnecessary "-lcrypto" to avoid dependency against OpenSSL
1556 which would require further copyright addtions.
1557
1558 -- Christian Hammers <ch@debian.org> Wed, 10 Sep 2003 01:37:28 +0200
1559
1560 quagga (0.96.2-2) unstable; urgency=low
1561
1562 * Added note that config files of quagga are in /etc/quagga and
1563 not /etc/zebra for the zebra users that migrate to quagga.
1564 (Thanks to Roberto Suarez Soto for the idea)
1565 * Fixed setgid rights in /etc/quagga.
1566
1567 -- Christian Hammers <ch@debian.org> Wed, 27 Aug 2003 14:05:39 +0200
1568
1569 quagga (0.96.2-1) unstable; urgency=low
1570
1571 * This package has formally been known as "zebra-pj"!
1572 * New upstream release.
1573 Fixes "anoying OSPF problem".
1574 * Modified group ownerships so that vtysh can now be used by normal
1575 uses if they are in the quaggavty group.
1576
1577 -- Christian Hammers <ch@debian.org> Mon, 25 Aug 2003 23:40:14 +0200
1578
1579 quagga (0.96.1-1) unstable; urgency=low
1580
1581 * Zebra-pj, the fork of zebra has been renamed to quagga as the original
1582 upstream author asked the new project membed not to use "zebra" in the
1583 name. zebra-pj is obsolete.
1584
1585 -- Christian Hammers <ch@debian.org> Mon, 18 Aug 2003 23:37:20 +0200
1586
1587 zebra-pj (0.94+cvs20030721-1) unstable; urgency=low
1588
1589 * New CVS build.
1590 - OSPF changes (integration of the OSPF API?)
1591 - code cleanups (for ipv6?)
1592 * Tightened Build-Deps to gcc-2.95 as 3.x does not compile a stable ospfd.
1593 This is a known problem and has been discussed on the mailing list.
1594 No other solutions so far.
1595
1596 -- Christian Hammers <ch@debian.org> Mon, 21 Jul 2003 23:52:00 +0200
1597
1598 zebra-pj (0.94+cvs20030701-1) unstable; urgency=low
1599
1600 * Initial Release.
1601
1602 -- Christian Hammers <ch@debian.org> Tue, 1 Jul 2003 01:58:06 +0200