Update to upstream 2.4.7 for Utopic

Bug #1334832 reported by Kent Baxley
8
This bug affects 1 person
Affects Status Importance Assigned to Milestone
openwsman (Ubuntu)
Fix Released
Undecided
Unassigned

Bug Description

A few bug fixes and new features:

2.4.7
- Bugfixes
  - file authenticator: allow password hash of up to 128 characters
  - libu: don't exit() on malloc errors

2.4.6
- Features
  - Support large hashes (like SHA512) in file authentication
  - use constant-time password compare to prevent brute-force attacks
  - Create server-plugin-ruby as separate RPM
  - Add Unisys namespace and CIM class prefix 'SPAR'
  - Alias openwsman and openwsmand systemd services
  - Also create respective rc-commands: rcopenwsman, rcopenwsmand
    (SUSE only)
- Bugfixes
  - Fix crash on invalide resource URI
  - Fix resource namespace for DCIM_ classes

2.4.5
- Features
  - enforce SSL operation in systemd service
  - Add /usr/sbin/rcopenwsman for systemd environments
  - New environment variable 'OPENWSMAN_CURL_TRANSPORT_SSLVERSION' to
    select SSL protocol version. Set it to 'tlsv1.2' for TLS-v1.2
    (anstein)
- Bugfixes
  - Fix memory leaks in redirect plugin (Praveen K Paladugu)
  - shttpd: Improve error reporting if SSL context fails
  - Builds on Fedora 20 now

2.4.4
- Security update
  - ws_xml_make_default_prefix() can overflow buf parameter via sprintf()
  - ws_xml_make_default_prefix() can overflow buf parameter via sprintf()
  - wsmc_create_request() potential buf[20] overflow via WSMAN_ACTION_RENEW
  - LocalSubscriptionOpUpdate() unchecked fopen()
  - Incorrect order of sanity guards in wsman_get_fault_status_from_doc()
  - Unchecked memory allocation in wsman_init_plugins(), p->ifc
  - Unchecked memory allocation in mem_double(), newptr
  - Unchecked memory allocation in dictionary_new(), d, d->val, d->key, d->hash
  - Unchecked memory allocation in u_error_new(), *error
  - sighup_handler() in wsmand.c uses unsafe functions in a signal handler
- Features
  - add rcopenwsman command to systemd environments
  - add rcopenwsmand command for backwards compatibility
- Bindings
  - support rdoc 2.1 in Ruby bindings
  - cmake: use PYTHON_INCLUDE_DIRS

Revision history for this message
Kent Baxley (kentb) wrote :
Kent Baxley (kentb)
tags: added: upgrade-software-version
Revision history for this message
Kent Baxley (kentb) wrote :

Tested the upgrade from 2.4.3 to 2.4.7. All looks well.

Also confirmed that wsman continues to work OK after an update to 2.4.7.

Revision history for this message
Kent Baxley (kentb) wrote :
Revision history for this message
Kent Baxley (kentb) wrote :

Run quilt pop -a on the openwsman 2.4.3 sources before applying the debdiff above for 2.4.7.

Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package openwsman - 2.4.7-0ubuntu2

---------------
openwsman (2.4.7-0ubuntu2) utopic; urgency=medium

  * Fix typo in control file.

openwsman (2.4.7-0ubuntu1) utopic; urgency=low

  * New upstream release (LP: #1334832)
 -- Kent Baxley <email address hidden> Thu, 10 Jul 2014 08:13:06 -0500

Changed in openwsman (Ubuntu):
status: New → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.