Blob Blame History Raw
<revisionlist>
<revision rev="1" vrev="1">
<srcmd5>652943d52011f1a294e9f33676f5a8c8</srcmd5>
<version>2.35</version>
<time>1168902619</time>
<user>unknown</user>
</revision>
<revision rev="2" vrev="1">
<srcmd5>c95ba1c05b2eb3ce483877f568494bb1</srcmd5>
<version>2.38</version>
<time>1173199696</time>
<user>unknown</user>
</revision>
<revision rev="3" vrev="3">
<srcmd5>80c6b303e6fc5d6f45e354bb95f5fc04</srcmd5>
<version>2.38</version>
<time>1173978555</time>
<user>unknown</user>
</revision>
<revision rev="4" vrev="1">
<srcmd5>2bd1021d6e44a70ca1de7ac0c7fe3ba1</srcmd5>
<version>2.39</version>
<time>1178095114</time>
<user>unknown</user>
</revision>
<revision rev="5" vrev="1">
<srcmd5>02380b77fb6abdbe21265e3c054b9aa7</srcmd5>
<version>2.40</version>
<time>1196959712</time>
<user>unknown</user>
</revision>
<revision rev="6" vrev="5">
<srcmd5>aa6e331aaa6821afca7a49c31d72994f</srcmd5>
<version>2.40</version>
<time>1199670331</time>
<user>unknown</user>
</revision>
<revision rev="7" vrev="1">
<srcmd5>73e0773aac04d49b16ed1dc662b27ad8</srcmd5>
<version>2.41</version>
<time>1203034716</time>
<user>unknown</user>
</revision>
<revision rev="8" vrev="1">
<srcmd5>b20d87e168913a4101f910b9fb43edac</srcmd5>
<version>2.42</version>
<time>1214247642</time>
<user>unknown</user>
</revision>
<revision rev="9" vrev="1">
<srcmd5>18ef807af50ff3acdcb4e6f4a0f82875</srcmd5>
<version>2.43</version>
<time>1216068443</time>
<user>unknown</user>
</revision>
<revision rev="10" vrev="1">
<srcmd5>c08e9b3c4e45c515241cf84e359e50c2</srcmd5>
<version>2.45</version>
<time>1218834447</time>
<user>unknown</user>
</revision>
<revision rev="11" vrev="2">
<srcmd5>5ae7d57035476b506c43c1fda313405b</srcmd5>
<version>2.45</version>
<time>1219351339</time>
<user>unknown</user>
</revision>
<revision rev="12" vrev="9">
<srcmd5>28fb10ec5651facd7611810be3fdc84d</srcmd5>
<version>2.45</version>
<time>1221270471</time>
<user>unknown</user>
</revision>
<revision rev="13" vrev="12">
<srcmd5>4e35cc64c38a435903295b39be6b2dae</srcmd5>
<version>2.45</version>
<time>1226413771</time>
<user>unknown</user>
</revision>
<revision rev="14" vrev="1">
<srcmd5>c86320f38f28fb930243e08bf4084448</srcmd5>
<version>2.47</version>
<time>1233954874</time>
<user>unknown</user>
</revision>
<revision rev="15" vrev="2">
<srcmd5>8c4925f91b719b0b63b09244e0555476</srcmd5>
<version>2.47</version>
<time>1236867937</time>
<user>unknown</user>
</revision>
<revision rev="16" vrev="3">
<srcmd5>1abee2d9a910f1315e5a473717cf30ed</srcmd5>
<version>2.47</version>
<time>1237305713</time>
<user>unknown</user>
</revision>
<revision rev="17" vrev="1">
<srcmd5>1c6f0d932008430c2a924cab1939d03d</srcmd5>
<version>2.48</version>
<time>1244235523</time>
<user>unknown</user>
</revision>
<revision rev="18" vrev="1">
<srcmd5>5c79a65296b471a39b0966dc9a7ec517</srcmd5>
<version>2.49</version>
<time>1245454452</time>
<user>unknown</user>
</revision>
<revision rev="19" vrev="1">
<srcmd5>74b6bd75153dbb25dd3dbb92836f0d46</srcmd5>
<version>2.50</version>
<time>1251909436</time>
<user>autobuild</user>
<comment>Copy from network/dnsmasq based on submit request 19412 from user ug
</comment>
</revision>
<revision rev="20" vrev="3">
<srcmd5>74b6bd75153dbb25dd3dbb92836f0d46</srcmd5>
<version>2.50</version>
<time>1251909436</time>
<user>autobuild</user>
<comment>Copy from network/dnsmasq based on submit request 19412 from user ug
</comment>
</revision>
<revision rev="21" vrev="4">
<srcmd5>0b7ec6738c855bc54d5917cbd4bef527</srcmd5>
<version>2.50</version>
<time>1258372519</time>
<user>autobuild</user>
<comment>Copy from network/dnsmasq based on submit request 24474 from user msmeissn
</comment>
</revision>
<revision rev="22" vrev="1">
<srcmd5>1004057664df0611aecb6452c98e2a59</srcmd5>
<version>2.51</version>
<time>1258974191</time>
<user>autobuild</user>
<comment>Copy from network/dnsmasq based on submit request 24805 from user ug
</comment>
</revision>
<revision rev="23" vrev="1">
<srcmd5>3a0358fa5f9553c2e89d00c5056a1bfe</srcmd5>
<version>2.52</version>
<time>1264610004</time>
<user>autobuild</user>
<comment>Copy from network/dnsmasq based on submit request 30370 from user ug
</comment>
</revision>
<revision rev="24" vrev="2">
<srcmd5>00a3a2e55306636394105e83515cf87e</srcmd5>
<version>2.52</version>
<time>1268923364</time>
<user>autobuild</user>
</revision>
<revision rev="25" vrev="1">
<srcmd5>ce6bd6c56a09caf0f9ac6b7a8d5911f4</srcmd5>
<version>2.55</version>
<time>1276099296</time>
<user>autobuild</user>
<comment>Copy from network/dnsmasq based on submit request 41241 from user ug
</comment>
<requestid>41241</requestid>
</revision>
<revision rev="26" vrev="2">
<srcmd5>ce6bd6c56a09caf0f9ac6b7a8d5911f4</srcmd5>
<version>2.55</version>
<time>1278667342</time>
<user>autobuild</user>
<comment>release number sync</comment>
</revision>
<revision rev="27" vrev="3">
<srcmd5>ce6bd6c56a09caf0f9ac6b7a8d5911f4</srcmd5>
<version>2.55</version>
<time>1278678571</time>
<user>autobuild</user>
<comment>release number sync</comment>
</revision>
<revision rev="28" vrev="6">
<srcmd5>ce6bd6c56a09caf0f9ac6b7a8d5911f4</srcmd5>
<version>2.55</version>
<time>1297941524</time>
<user>autobuild</user>
<comment>11.4 source split</comment>
</revision>
<revision rev="29" vrev="1">
<srcmd5>8112771b47627deb87ec041a69fb898e</srcmd5>
<version>2.57</version>
<time>1304584813</time>
<user>saschpe</user>
<comment></comment>
<requestid>66993</requestid>
</revision>
<revision rev="30" vrev="2">
<srcmd5>05fece6410c0e980ddd0a4bae2ac9bfd</srcmd5>
<version>2.57</version>
<time>1304584827</time>
<user>saschpe</user>
<comment>Autobuild autoformatter for 66993
</comment>
</revision>
<revision rev="31" vrev="1">
<srcmd5>6e9d64813d3945015abbb30d3f4f4566</srcmd5>
<version>2.58</version>
<time>1314882449</time>
<user>saschpe</user>
<comment>- Support scope-ids in IPv6 addresses of nameservers from
/etc/resolv.conf and in --server options
- Fix bug which resulted in truncated files and timeouts for
some TFTP transfers
- Allow the TFTP-server address in --dhcp-boot to be a
domain-name which is looked up in /etc/hosts
- Tweak the behaviour of --domain-needed
- Add support for Linux conntrack connection marking
- Don't return NXDOMAIN to an AAAA query if we have CNAME
which points to an A record only
- logging fixes
- many DHCP fixes and features (see Changelog)
- update to 2.58</comment>
<requestid>80418</requestid>
</revision>
<revision rev="32" vrev="2">
<srcmd5>5eeb4cfd61f9a890c3c8146ef8df0e87</srcmd5>
<version>2.58</version>
<time>1317542241</time>
<user>lrupp</user>
<comment>- Remove redundant tags/sections from specfile
(cf. packaging guidelines)
- Use %_smp_mflags for parallel build (forwarded request 83269 from jengelh)</comment>
<requestid>85435</requestid>
</revision>
<revision rev="33" vrev="1">
<srcmd5>2498ba036cb33399955d65949414fcd5</srcmd5>
<version>2.59</version>
<time>1319024349</time>
<user>coolo</user>
<comment>- fixed binding to IPv6 link-local addresses
(regression from 2.58)
- 2.59</comment>
<requestid>88625</requestid>
</revision>
<revision rev="34" vrev="3">
<srcmd5>2498ba036cb33399955d65949414fcd5</srcmd5>
<version>2.59</version>
<time>1319181851</time>
<user>adrianSuSE</user>
</revision>
<revision rev="35" vrev="4">
<srcmd5>8fd7bd0a7a0392edc05fb2c49f3d5da3</srcmd5>
<version>2.59</version>
<time>1319205897</time>
<user>coolo</user>
<comment>- dnsmasq still announced itself as 2.59-RC1
no other code changes than just the correct version string</comment>
<requestid>88858</requestid>
</revision>
<revision rev="36" vrev="5">
<srcmd5>85236c1f487996cc3bb9cc3bf9d8a623</srcmd5>
<version>2.59</version>
<time>1328890370</time>
<user>coolo</user>
<comment>- added correct group for tftp
(bnc#738905)
- Use systemd macros correctly
- build with PIE and full RELRO.
- --enable-dbus must be explicit in systemd unit
- default user is provided in config file or takes defaults on
group_and_isc.diff
- dnsmasq has dbus support, use it for systemd service.
- removed systemd config for pre-12.1
- Must be of type forking and change uid to dnsmasq
- Add systemd startup script</comment>
<requestid>103393</requestid>
</revision>
<revision rev="37" vrev="1">
<srcmd5>5a0843f11de92304703749104934667b</srcmd5>
<version>2.60</version>
<time>1331232160</time>
<user>coolo</user>
<comment>- some dhcp fixes
- Add Lua integration
- Set TOS on DHCP sockets
- Improve start-up speed when reading large hosts files
- Fix problem if dnsmasq is started without the stdin
- Allow the TFP server or boot server in --pxe-service
- Support DHCPv6. Support is there for the sort of things
the existing v4 server does, including tags, options,
static addresses and relay support
- Support IPv6 router advertisements
- Fix long-standing wrinkle with --localise-queries that
could result in wrong answers when DNS packets arrive
via an interface other than the expected one
- 2.60</comment>
<requestid>108378</requestid>
</revision>
<revision rev="38" vrev="1">
<srcmd5>7a54a8d8882a2428ea87d00d5a998066</srcmd5>
<version>2.61</version>
<time>1336423492</time>
<user>coolo</user>
<comment>update to 2.61 (forwarded request 115976 from pbleser)</comment>
<requestid>116034</requestid>
</revision>
<revision rev="39" vrev="3">
<srcmd5>7a54a8d8882a2428ea87d00d5a998066</srcmd5>
<version>2.61</version>
<time>1340183285</time>
<user>adrianSuSE</user>
<comment>branched from openSUSE:Factory</comment>
</revision>
<revision rev="40" vrev="1">
<srcmd5>dc66286cf1e38055035f2e766816d2c9</srcmd5>
<version>2.62</version>
<time>1340889986</time>
<user>coolo</user>
<comment>- Update to version 2.62, misc bugfixes
- Fix CFLAGS/LDFLAGS usage
- fix the small cache size problem in a different way by tweaking
the build config instead.
- The default cache size is way too small (150 entries) use a sane
default of 2000 as used in *WRT embeeded routers which is still
very conservative for a desktop/server machine.
- use async logging</comment>
<requestid>126390</requestid>
</revision>
<revision rev="41" vrev="2">
<srcmd5>a31a38c43f992755668bccce99a1b4f8</srcmd5>
<version>2.62</version>
<time>1349372210</time>
<user>coolo</user>
<comment>license update: GPL-2.0
Most of the source code files give a choice of either GPL-2.0 or GPL-3.0 (not GPL-2.0+). The website states that the COPYING file in the distribution is the official license - in this case it is GPL-2.0. This is consistent with what Fedora state about the package. Accordingly, I^d be ok with License: GPL-2.0 or License: (GPL-2.0 or GPL-3.0) but not License: GPL-2.0+ (forwarded request 136982 from babelworx)</comment>
<requestid>136984</requestid>
</revision>
<revision rev="42" vrev="1">
<srcmd5>b9dbb93bc6a86618418f95d4cdc8da48</srcmd5>
<version>2.65</version>
<time>1355733211</time>
<user>coolo</user>
<comment>- Update to version 2.65. For other changes relating to other
versions in between please see the CHANGELOG
* Fix regression which broke forwarding orgf queries sent via
TCP which are not for A and AAAA and which were directed to
non-default servers. Thanks to Niax for the bug reportst.
Fix failure to build with DHCP support excluded. Thanks to
Gustavo Zacarias for the patch.
Fix nasty regression in 27.64 which completely broke cacheing.
- renamed group_and_isc.diff to group_and_isc.patch rebasinp to -p1
level as outlined in the documentation at
http://en.opensuse.org/openSUSE:Packaging_Patches_guidelines (forwarded request 145505 from toganm)</comment>
<requestid>145506</requestid>
</revision>
<revision rev="43" vrev="3">
<srcmd5>b9dbb93bc6a86618418f95d4cdc8da48</srcmd5>
<version>2.65</version>
<time>1359108818</time>
<user>adrianSuSE</user>
<comment>Split 12.3 from Factory</comment>
</revision>
<revision rev="44" vrev="4">
<srcmd5>9ff08d786d0c0130e8c6a9f1eb17fda2</srcmd5>
<version>2.65</version>
<time>1361820838</time>
<user>coolo</user>
<comment>- Install dnsmasq.service accordingly (/usr/lib/systemd for 12.3
and up or /lib/systemd for older versions). (forwarded request 156101 from rmilasan)</comment>
<requestid>156243</requestid>
</revision>
<revision rev="45" vrev="5">
<srcmd5>4017174aec39f963726749387178d1fa</srcmd5>
<version>2.65</version>
<time>1363270769</time>
<user>coolo</user>
<comment>Create a utils subpackage to include DHCP lease management utils (forwarded request 158731 from vuntz)</comment>
<requestid>158737</requestid>
</revision>
<revision rev="46" vrev="6">
<srcmd5>b6909418b1e80a07ee1c2554b5a9e3c7</srcmd5>
<version>2.65</version>
<time>1366709417</time>
<user>coolo</user>
<comment>- reintroduced /sbin/rcdnsmasq as /sbin/service link.
- Do not order after syslog.target which it is neither
required not recommended and currently no longer even exists.
- sync /srv/tftpboot directory attributes with atftp package
- remove all sysvinit support</comment>
<requestid>172836</requestid>
</revision>
<revision rev="47" vrev="8">
<srcmd5>b6909418b1e80a07ee1c2554b5a9e3c7</srcmd5>
<version>2.65</version>
<time>1379662240</time>
<user>adrianSuSE</user>
<comment>Split 13.1 from Factory</comment>
</revision>
<revision rev="48" vrev="9">
<srcmd5>dc52e710c07e45fe47da38abb7358c20</srcmd5>
<version>2.65</version>
<time>1396005010</time>
<user>coolo</user>
<comment>- dnsmasq.service: Set PrivateDevices=yes so we run in a
separate namespace with the bare minimum device nodes isolated
from the host. (forwarded request 227618 from elvigia)</comment>
<requestid>227741</requestid>
</revision>
<revision rev="49" vrev="1">
<srcmd5>775a165c372ab10d9de32a74436a08c9</srcmd5>
<version>2.71</version>
<time>1403176786</time>
<user>coolo</user>
<comment>1</comment>
<requestid>236978</requestid>
</revision>
<revision rev="50" vrev="2">
<srcmd5>3e914aec51c054b98dd10f92c3c10b4d</srcmd5>
<version>2.71</version>
<time>1407485413</time>
<user>lnussel</user>
<comment>- Removed Suse and all other OS/Distribution related subdirs from
contrib, so only the rest gets packaged. The subdirs are not
necessary anymore (bnc#889028).
- Removed README.SUSE file, it was to confusing and not necessary (bnc#889972).
Information is already present in the upstream documentation.
- Split up vendor-files.tar.bz2 into single files
- Comply with systemd packaging guidlines (forwarded request 243762 from vwallfahrer)</comment>
<requestid>243765</requestid>
</revision>
<revision rev="51" vrev="4">
<srcmd5>3e914aec51c054b98dd10f92c3c10b4d</srcmd5>
<version>2.71</version>
<time>1409300774</time>
<user>adrianSuSE</user>
<comment>Split 13.2 from Factory</comment>
</revision>
<revision rev="52" vrev="5">
<srcmd5>35f942a3b16bbbcfc16a91e065761088</srcmd5>
<version>2.71</version>
<time>1409583522</time>
<user>coolo</user>
<comment>- enable DNSSEC
- require libnettle
- package trust-anchors.conf
- spec fixes:
- define HAVE_ flags on commandline, otherwise 'dnsmasq --version'
will not correctly reflect the feature status
- actually build with relro and pie. (bnc#893057)</comment>
<requestid>246516</requestid>
</revision>
<revision rev="53" vrev="6">
<srcmd5>409c733a024a7e044e992b0dd48b1e52</srcmd5>
<version>2.71</version>
<time>1415866776</time>
<user>dimstar_suse</user>
<comment>1</comment>
<requestid>260715</requestid>
</revision>
<revision rev="54" vrev="1">
<srcmd5>27519ceaede03a96713c7f6de6cfa65f</srcmd5>
<version>2.72</version>
<time>1420021335</time>
<user>dimstar_suse</user>
<comment>1</comment>
<requestid>266774</requestid>
</revision>
<revision rev="55" vrev="2">
<srcmd5>56e37fde88b6d7e2bf21c5df3e1107d1</srcmd5>
<version>2.72</version>
<time>1420619897</time>
<user>dimstar_suse</user>
<comment>1</comment>
<requestid>280034</requestid>
</revision>
<revision rev="56" vrev="3">
<srcmd5>5d7641eca9b38dec7d9144f0f9b5b685</srcmd5>
<version>2.72</version>
<time>1430132303</time>
<user>dimstar_suse</user>
<comment>1</comment>
<requestid>303603</requestid>
</revision>
<revision rev="57" vrev="4">
<srcmd5>a7b004631b45014d9febd365839994ab</srcmd5>
<version>2.72</version>
<time>1436111796</time>
<user>coolo</user>
<comment>Please accept these changes.</comment>
<requestid>312722</requestid>
</revision>
<revision rev="58" vrev="1">
<srcmd5>d38434044a9a48b601232890ead26d14</srcmd5>
<version>2.75</version>
<time>1439984469</time>
<user>dimstar_suse</user>
<comment>1</comment>
<requestid>323450</requestid>
</revision>
<revision rev="59" vrev="2">
<srcmd5>54525405e8a2e26c4240acaad3dc1d67</srcmd5>
<version>2.75</version>
<time>1440658454</time>
<user>coolo</user>
<comment>1</comment>
<requestid>326525</requestid>
</revision>
<revision rev="60" vrev="3">
<srcmd5>0a66840a974541e996f1bcebe5a0a2da</srcmd5>
<version>2.75</version>
<time>1457532929</time>
<user>dimstar_suse</user>
<comment>1</comment>
<requestid>366915</requestid>
</revision>
<revision rev="61" vrev="4">
<srcmd5>3517b2a223caef1c87bdad450ba12595</srcmd5>
<version>2.75</version>
<time>1467205454</time>
<user>dimstar_suse</user>
<comment>- dnsmasq-groups.patch: Initialize the supplementary groups of the
dnsmasq user (bsc#859298).</comment>
<requestid>404054</requestid>
</revision>
<revision rev="62" vrev="1">
<srcmd5>01f4937685ef35683c83238cee88fe0f</srcmd5>
<version>2.76</version>
<time>1470508545</time>
<user>dimstar_suse</user>
<comment>- Update to 2.76:
* Include 0.0.0.0/8 in DNS rebind checks.
* Enhance --add-subnet to allow arbitrary subnet addresses.
* Respect the --no-resolv flag in inotify code. Fixes bug
which caused dnsmasq to fail to start if a resolv-file
was a dangling symbolic link, even of --no-resolv set.
* Fix crash when an A or AAAA record is defined locally,
in a hosts file, and an upstream server sends a reply
that the same name is empty (CVE-2015-8899, bsc#983273).
* Fix failure to correctly calculate cache-size when reading a
hosts-file fails.
* Fix wrong answer to simple name query when --domain-needed
set, but no upstream servers configured.
* Return REFUSED when running out of forwarding table slots,
not SERVFAIL.
* Add --max-port configuration.
* Add --script-arp and two new functions for the dhcp-script.
* Extend --add-mac to allow a new encoding of the MAC address
as base64, by configurting --add-mac=base64
* Add --add-cpe-id option.
* Don't crash with divide-by-zero if an IPv6 dhcp-range is
declared as a whole /64.
(ie xx::0 to xx::ffff:ffff:ffff:ffff)
* Add support for a TTL parameter in --host-record and --cname.
* Add --dhcp-ttl option.
* Add --tftp-mtu option.
* Check return-code of inet_pton() when parsing dhcp-option.
* Fix wrong value for EDNS UDP packet size when using
--servers-file to define upstream DNS servers.
* Add dhcp_release6 to contrib/lease-tools.</comment>
<requestid>416775</requestid>
</revision>
<revision rev="63" vrev="2">
<srcmd5>54843a5a3837ef89c93dcd50235f9550</srcmd5>
<version>2.76</version>
<time>1484132472</time>
<user>dimstar_suse</user>
<comment>1</comment>
<requestid>449478</requestid>
</revision>
<revision rev="64" vrev="3">
<srcmd5>fee83049c83ddc0cd910228bd82e9509</srcmd5>
<version>2.76</version>
<time>1507197197</time>
<user>dimstar_suse</user>
<comment>1</comment>
<requestid>525886</requestid>
</revision>
<revision rev="65" vrev="1">
<srcmd5>862bd9416ec9603343b855ebd70c2c9c</srcmd5>
<version>2.78</version>
<time>1512766050</time>
<user>dimstar_suse</user>
<comment>- Update keyring
- Get rid of python dependency due to examples. (fate#323526)
- Security update to version 2.78:
* bsc#1060354, CVE-2017-14491: 2 byte heap based overflow.
* bsc#1060355, CVE-2017-14492: heap based overflow.
* bsc#1060360, CVE-2017-14493: stack based overflow.
* bsc#1060361, CVE-2017-14494: DHCP - info leak.
* bsc#1060362, CVE-2017-14495: DNS - OOM DoS.
* bsc#1060364, CVE-2017-14496: DNS - DoS Integer underflow.
* Fix DHCP relaying, broken in 2.76 and 2.77.
* For other changes, see
http://www.thekelleys.org.uk/dnsmasq/CHANGELOG
- Obsoleted patches:
* Fix-crash-introduced-in-2675f2061525bc954be14988d643.patch
* Handle-binding-upstream-servers-to-an-interface.patch</comment>
<requestid>548087</requestid>
</revision>
<revision rev="66" vrev="2">
<srcmd5>b218670de6f69e789e83c7630885339f</srcmd5>
<version>2.78</version>
<time>1532527509</time>
<user>dimstar_suse</user>
<comment></comment>
<requestid>623240</requestid>
</revision>
<revision rev="67" vrev="3">
<srcmd5>ed932b3fe1e2af0d1240ffc302838558</srcmd5>
<version>2.78</version>
<time>1536094021</time>
<user>dimstar_suse</user>
<comment>- add missing prereq on the group to be created (bsc#1106446)</comment>
<requestid>632188</requestid>
</revision>
<revision rev="68" vrev="1">
<srcmd5>703f4281a6d902b205bffd8f4be3bf20</srcmd5>
<version>2.80</version>
<time>1541508756</time>
<user>dimstar_suse</user>
<comment></comment>
<requestid>643674</requestid>
</revision>
<revision rev="69" vrev="2">
<srcmd5>d1f97637ccd15f870f1a6e66bf972e35</srcmd5>
<version>2.80</version>
<time>1548537684</time>
<user>dimstar_suse</user>
<comment></comment>
<requestid>668717</requestid>
</revision>
<revision rev="70" vrev="3">
<srcmd5>1820ae2c75f22dd807de48adf4c5a480</srcmd5>
<version>2.80</version>
<time>1551385462</time>
<user>coolo</user>
<comment></comment>
<requestid>678217</requestid>
</revision>
<revision rev="71" vrev="4">
<srcmd5>308391e2ed24211bc830b8aaf2b4c092</srcmd5>
<version>2.80</version>
<time>1561557608</time>
<user>dimstar_suse</user>
<comment></comment>
<requestid>709322</requestid>
</revision>
<revision rev="72" vrev="5">
<srcmd5>c4b3c8ccdb896cb14b4a4228854af897</srcmd5>
<version>2.80</version>
<time>1563790652</time>
<user>dimstar_suse</user>
<comment></comment>
<requestid>714386</requestid>
</revision>
<revision rev="73" vrev="6">
<srcmd5>243ccdd26ef160bc3e0c1d5efb95c42b</srcmd5>
<version>2.80</version>
<time>1564575257</time>
<user>dimstar_suse</user>
<comment></comment>
<requestid>718597</requestid>
</revision>
<revision rev="74" vrev="7">
<srcmd5>a282f04fd6b2b3907c5d3ebf8c9b0846</srcmd5>
<version>2.80</version>
<time>1568190092</time>
<user>dimstar_suse</user>
<comment></comment>
<requestid>728482</requestid>
</revision>
<revision rev="75" vrev="8">
<srcmd5>baa8eea597d5b8d8e5a5b678d543aadd</srcmd5>
<version>2.80</version>
<time>1574253767</time>
<user>dimstar_suse</user>
<comment>- bsc#1154849, CVE-2019-14834, dnsmasq-CVE-2019-14834.patch:
memory leak in the create_helper() function in /src/helper.c
- bsc#1143454: Require user(tftp) instead of creating it ourselves.
- Package contrib/lease-tools/dhcp_release6.
- bsc#1152539: include config files from /etc/dnsmasq.d/*.conf .</comment>
<requestid>748378</requestid>
</revision>
<revision rev="76" vrev="9">
<srcmd5>e10505c75122788cbeec669f7e024cbe</srcmd5>
<version>2.80</version>
<time>1575727908</time>
<user>dimstar_suse</user>
<comment></comment>
<requestid>752812</requestid>
</revision>
<revision rev="77" vrev="1">
<srcmd5>0b1830cea1c2fc78248ec5763c5984a4</srcmd5>
<version>2.81</version>
<time>1591285742</time>
<user>dimstar_suse</user>
<comment></comment>
<requestid>807964</requestid>
</revision>
<revision rev="78" vrev="1">
<srcmd5>96862c895bbe99aa0b359e903940c63f</srcmd5>
<version>2.82</version>
<time>1596456783</time>
<user>dimstar_suse</user>
<comment></comment>
<requestid>823748</requestid>
</revision>
<revision rev="79" vrev="1">
<srcmd5>18138b5c23449b27582707856245d7c6</srcmd5>
<version>2.83</version>
<time>1611163414</time>
<user>dimstar_suse</user>
<comment>- Update to 2.83:
* bsc#1177077: Fixed DNSpooq vulnerabilities
* Use the values of --min-port and --max-port in outgoing
TCP connections to upstream DNS servers.
* Fix a remote buffer overflow problem in the DNSSEC code.
Any dnsmasq with DNSSEC compiled in and enabled is vulnerable
to this, referenced by CVE-2020-25681, CVE-2020-25682,
CVE-2020-25683 CVE-2020-25687.
* Be sure to only accept UDP DNS query replies at the address
from which the query was originated. This keeps as much
entropy in the {query-ID, random-port} tuple as possible, to
help defeat cache poisoning attacks. Refer: CVE-2020-25684.
* Use the SHA-256 hash function to verify that DNS answers
received are for the questions originally asked. This replaces
the slightly insecure SHA-1 (when compiled with DNSSEC) or
the very insecure CRC32 (otherwise). Refer: CVE-2020-25685
* Handle multiple identical near simultaneous DNS queries better.
Previously, such queries would all be forwarded independently.
This is, in theory, inefficent but in practise not a problem,
_except_ that is means that an answer for any of the forwarded
queries will be accepted and cached.
An attacker can send a query multiple times, and for each
repeat, another {port, ID} becomes capable of accepting the
answer he is sending in the blind, to random IDs and ports.
The chance of a succesful attack is therefore multiplied by the
number of repeats of the query. The new behaviour detects
repeated queries and merely stores the clients sending repeats
so that when the first query completes, the answer can be sent
to all the clients who asked. Refer: CVE-2020-25686.</comment>
<requestid>864301</requestid>
</revision>
<revision rev="80" vrev="2">
<srcmd5>e12f6be3f26ae0a6b5d2064ada279514</srcmd5>
<version>2.83</version>
<time>1612466626</time>
<user>dimstar_suse</user>
<comment></comment>
<requestid>867893</requestid>
</revision>
<revision rev="81" vrev="1">
<srcmd5>b1349e51e26388ccbf97819ec3c32630</srcmd5>
<version>2.85</version>
<time>1619652998</time>
<user>dimstar_suse</user>
<comment>Automatic submission by obs-autosubmit</comment>
<requestid>888631</requestid>
</revision>
<revision rev="82" vrev="2">
<srcmd5>f57ab86b730450392368dfa68672ee64</srcmd5>
<version>2.85</version>
<time>1625675387</time>
<user>dimstar_suse</user>
<comment></comment>
<requestid>904175</requestid>
</revision>
<revision rev="83" vrev="1">
<srcmd5>e12711d426df3ef0b45351a14477a221</srcmd5>
<version>2.86</version>
<time>1632685717</time>
<user>dimstar_suse</user>
<comment>- jsc#SLE-17936: Sync this state from Factory to SLE-15-SP1.
- SLE bugs that got fixed upstream between 2.79 and 2.86, but for
which we need to keep references when syncing:
* bsc#1176076: dnsmasq-servfail.patch
* bsc#1156543: dnsmasq-siocgstamp.patch
* bsc#1138743: dnsmasq-cache-size.patch
* bsc#1076958: CVE-2017-15107, dnsmasq-CVE-2017-15107.patch
* bsc#1180914: Open inotify socket only when used.
* removed dnsmasq-dnspooq.patch
- bsc#1173646: Set --local-service by default.
- Update to 2.86:
* Handle DHCPREBIND requests in the DHCPv6 server code.
* Fix bug which caused dnsmasq to lose track of processes forked
to handle TCP DNS connections under heavy load.
* Major rewrite of the DNS server and domain handling code. This
should be largely transparent, but it drastically improves
performance and reduces memory foot-print when configuring
large numbers of domains.
* Revise resource handling for number of concurrent DNS queries.
* Improve efficiency of DNSSEC.
* Connection track mark based DNS query filtering.
* Allow smaller than 64 prefix lengths in synth-domain, with
caveats.
--synth-domain=1234:4567::/56,example.com is now valid.
* Make domains generated by --synth-domain appear in replies
when in authoritative mode.
* Ensure CAP_NET_ADMIN capability is available when conntrack
is configured.
* When --dhcp-hostsfile --dhcp-optsfile and --addn-hosts are</comment>
<requestid>921143</requestid>
</revision>
<revision rev="84" vrev="2">
<srcmd5>f93616d47ff851ae53e80cf5299a4659</srcmd5>
<version>2.86</version>
<time>1637444873</time>
<user>dimstar_suse</user>
<comment>- bsc#1192529, dnsmasq-resolv-conf.patch:
Fix a segfault when re-reading an empty resolv.conf
- Remove &quot;nogroup&quot; membership from the dnsmasq user.
- Use systemd-sysusers from 15.3 onwards</comment>
<requestid>932271</requestid>
</revision>
<revision rev="85" vrev="3">
<srcmd5>810b540ccb96782a1fab190c1f364503</srcmd5>
<version>2.86</version>
<time>1637970656</time>
<user>dimstar_suse</user>
<comment>Automatic submission by obs-autosubmit</comment>
<requestid>933804</requestid>
</revision>
<revision rev="86" vrev="4">
<srcmd5>4efc4dfdf8b83a17dd0d1616516c5df0</srcmd5>
<version>2.86</version>
<time>1649949808</time>
<user>dimstar_suse</user>
<comment>Automatic submission by obs-autosubmit</comment>
<requestid>969348</requestid>
</revision>
<revision rev="87" vrev="5">
<srcmd5>906ce4a941d8382ae14d7c1b2fe602cd</srcmd5>
<version>2.86</version>
<time>1657281689</time>
<user>dimstar_suse</user>
<comment></comment>
<requestid>982371</requestid>
</revision>
<revision rev="88" vrev="6">
<srcmd5>2d2598d276581eb05cac37689d0344f2</srcmd5>
<version>2.86</version>
<time>1663694583</time>
<user>dimstar_suse</user>
<comment></comment>
<requestid>1004570</requestid>
</revision>
<revision rev="89" vrev="1">
<srcmd5>7db7fc29be9c920fac32f005d214635c</srcmd5>
<version>2.87</version>
<time>1667901198</time>
<user>dimstar_suse</user>
<comment></comment>
<requestid>1034136</requestid>
</revision>
<revision rev="90" vrev="1">
<srcmd5>11b850d2a1f30e5e6f5bebae7b2bd912</srcmd5>
<version>2.88</version>
<time>1672221267</time>
<user>dimstar_suse</user>
<comment></comment>
<requestid>1045478</requestid>
</revision>
<revision rev="91" vrev="1">
<srcmd5>3ab03c98ed30637fa39bd442e2362f44</srcmd5>
<version>2.89</version>
<time>1675792099</time>
<user>dimstar_suse</user>
<comment></comment>
<requestid>1063496</requestid>
</revision>
<revision rev="92" vrev="2">
<srcmd5>07d676ce3105fa09ef2f77c29baa69a3</srcmd5>
<version>2.89</version>
<time>1676648637</time>
<user>dimstar_suse</user>
<comment>Added bug reference</comment>
<requestid>1066370</requestid>
</revision>
<revision rev="93" vrev="3">
<srcmd5>4f8dee295b4c31ba3715d996ab75527b</srcmd5>
<version>2.89</version>
<time>1682522655</time>
<user>dimstar_suse</user>
<comment>- bsc#1209358, CVE-2023-28450, dnsmasq-CVE-2023-28450.patch:
default maximum EDNS.0 UDP packet size should be 1232</comment>
<requestid>1082695</requestid>
</revision>
<revision rev="94" vrev="4">
<srcmd5>0237bfabcdc9255c5a8966576d9c63f0</srcmd5>
<version>2.89</version>
<time>1684239354</time>
<user>dimstar_suse</user>
<comment></comment>
<requestid>1087210</requestid>
</revision>
<revision rev="95" vrev="5">
<srcmd5>3c7369ba482b1e5161834c131a7f243a</srcmd5>
<version>2.89</version>
<time>1700162832</time>
<user>anag+factory</user>
<comment></comment>
<requestid>1126658</requestid>
</revision>
<revision rev="96" vrev="1">
<srcmd5>a323b8375b1193140f86664392a417c4</srcmd5>
<version>2.90</version>
<time>1708702830</time>
<user>anag+factory</user>
<comment>Automatic submission by obs-autosubmit</comment>
<requestid>1148852</requestid>
</revision>
<revision rev="97" vrev="2">
<srcmd5>75c943c030cd440baf441995fdfa7a7f</srcmd5>
<version>2.90</version>
<time>1717957206</time>
<user>anag+factory</user>
<comment>Added another bug reference to the latest changes entry.
* CVE-2023-49441, bsc#1226091: integer overflow via forward_query</comment>
<requestid>1179330</requestid>
</revision>
<revision rev="98" vrev="3">
<srcmd5>7fc53612cdd0cd680676cb61ecf64068</srcmd5>
<version>2.90</version>
<time>1732315842</time>
<user>anag+factory</user>
<comment></comment>
<requestid>1225486</requestid>
</revision>
<revision rev="99" vrev="4">
<srcmd5>610fb4cb17f3c71fdb7ced0de9ff2893</srcmd5>
<version>2.90</version>
<time>1736959335</time>
<user>anag+factory</user>
<comment>- bsc#1235834: Don't let compile time options change silently.
- Use pkgconfig for libidn2.
- Disable --nftset for SLE-15-SP3 and older.
- bsc#1235517: Reintroduce nogroup for SLE-15-SP3 and older.</comment>
<requestid>1237778</requestid>
</revision>
<revision rev="100" vrev="5">
<srcmd5>c3e6c79dc136de86631ae6be9ce95315</srcmd5>
<version>2.90</version>
<time>1737651676</time>
<user>anag+factory</user>
<comment></comment>
<requestid>1239578</requestid>
</revision>
<revision rev="101" vrev="1">
<srcmd5>86d6cecf0a76056ae7aa999900d995cc</srcmd5>
<version>2.91</version>
<time>1748364554</time>
<user>anag_factory</user>
<comment></comment>
<requestid>1279749</requestid>
</revision>
</revisionlist>