+20031008
+ - (dtucker) OpenBSD CVS Sync
+ - dtucker@cvs.openbsd.org 2003/10/07 01:47:27
+ [sshconnect2.c]
+ Don't use logit for banner, since it truncates to MSGBUFSIZ; bz #668 &
+ #707. ok markus@
+ - djm@cvs.openbsd.org 2003/10/07 07:04:16
+ [sftp-int.c]
+ sftp quoting fix from admorten AT umich.edu; ok markus@
+ - deraadt@cvs.openbsd.org 2003/10/07 21:58:28
+ [sshconnect2.c]
+ set ptr to NULL after free
+ - dtucker@cvs.openbsd.org 2003/10/07 01:52:13
+ [regress/Makefile regress/banner.sh]
+ Test SSH2 banner. ok markus@
+ - djm@cvs.openbsd.org 2003/10/07 07:04:52
+ [regress/sftp-cmds.sh]
+ more sftp quoting regress tests; ok markus
+
+20031007
+ - (djm) Delete autom4te.cache after autoreconf
+ - (dtucker) [auth-pam.c auth-pam.h session.c] Make PAM use the new static
+ cleanup functions. With & ok djm@
+ - (dtucker) [contrib/redhat/openssh.spec] Bug #714: Now that UsePAM is a
+ run-time switch, always build --with-md5-passwords.
+ - (dtucker) [configure.ac openbsd-compat/Makefile.in openbsd-compat/strtoul.c]
+ Bug #670: add strtoul() to openbsd-compat for platforms lacking it. ok djm@
+ - (dtucker) [configure.ac] Bug #715: Set BROKEN_SETREUID and BROKEN_SETREGID
+ on Reliant Unix. Patch from Robert.Dahlem at siemens.com.
+ - (dtucker) [configure.ac] Bug #710: Check for dlsym() in libdl on
+ Reliant Unix. Based on patch from Robert.Dahlem at siemens.com.
+
+20031003
+ - (dtucker) OpenBSD CVS Sync
+ - markus@cvs.openbsd.org 2003/10/02 10:41:59
+ [sshd.c]
+ print openssl version, too, several requests; ok henning/djm.
+ - markus@cvs.openbsd.org 2003/10/02 08:26:53
+ [ssh-gss.h]
+ missing $OpenBSD:; dtucker
+ - (tim) [contrib/caldera/openssh.spec] Remove obsolete --with-ipv4-default
+ option.
+
+20031002
+ - (dtucker) OpenBSD CVS Sync
+ - markus@cvs.openbsd.org 2003/09/23 20:17:11
+ [Makefile.in auth1.c auth2.c auth.c auth.h auth-krb5.c canohost.c
+ cleanup.c clientloop.c fatal.c gss-serv.c log.c log.h monitor.c monitor.h
+ monitor_wrap.c monitor_wrap.h packet.c serverloop.c session.c session.h
+ ssh-agent.c sshd.c]
+ replace fatal_cleanup() and linked list of fatal callbacks with static
+ cleanup_exit() function. re-refine cleanup_exit() where appropriate,
+ allocate sshd's authctxt eary to allow simpler cleanup in sshd.
+ tested by many, ok deraadt@
+ - markus@cvs.openbsd.org 2003/09/23 20:18:52
+ [progressmeter.c]
+ don't print trailing \0; bug #709; Robert.Dahlem@siemens.com
+ ok millert/deraadt@
+ - markus@cvs.openbsd.org 2003/09/23 20:41:11
+ [channels.c channels.h clientloop.c]
+ move client only agent code to clientloop.c
+ - markus@cvs.openbsd.org 2003/09/26 08:19:29
+ [sshd.c]
+ no need to set the listen sockets to non-block; ok deraadt@
+ - jmc@cvs.openbsd.org 2003/09/29 11:40:51
+ [ssh.1]
+ - add list of options to -o and .Xr ssh_config(5)
+ - some other cleanup
+ requested by deraadt@;
+ ok deraadt@ markus@
+ - markus@cvs.openbsd.org 2003/09/29 20:19:57
+ [servconf.c sshd_config]
+ GSSAPICleanupCreds -> GSSAPICleanupCredentials
+ - (dtucker) [configure.ac] Don't set DISABLE_SHADOW when configuring
+ --with-pam. ok djm@
+ - (dtucker) [ssh-gss.h] Prototype change missed in sync.
+ - (dtucker) [session.c] Fix bus errors on some 64-bit Solaris configurations.
+ Based on patches by Matthias Koeppe and Thomas Baden. ok djm@
+
+20030930
+ - (bal) Fix issues in openbsd-compat/realpath.c
+
+20030925
+ - (dtucker) [configure.ac openbsd-compat/xcrypt.c] Bug #633: Remove
+ DISABLE_SHADOW for HP-UX, use getspnam instead of getprpwnam. Patch from
+ michael_steffens at hp.com, ok djm@
+ - (tim) [sshd_config] UsePAM defaults to no.
+
+20030924
+ - (djm) Update version.h and spec files for HEAD
+ - (dtucker) [configure.ac] IRIX5 needs the same setre[ug]id defines as IRIX6.
+
+20030923
+ - (dtucker) [Makefile.in] Bug #644: Fix "make clean" for out-of-tree
+ builds. Portability corrections from tim@.
+ - (dtucker) [configure.ac] Bug #665: uid swapping issues on Mac OS X.
+ Patch from max at quendi.de.
+ - (dtucker) [configure.ac] Bug #657: uid swapping issues on BSDi.
+ - (dtucker) [configure.ac] Bug #653: uid swapping issues on Tru64.
+ - (dtucker) [configure.ac] Bug #693: uid swapping issues on NCR MP-RAS.
+ Patch from david.haughton at ncr.com
+ - (dtucker) [configure.ac] Bug #659: uid swapping issues on IRIX 6.
+ Part of patch supplied by bugzilla-openssh at thewrittenword.com
+ - (dtucker) [configure.ac openbsd-compat/fake-rfc2553.c
+ openbsd-compat/fake-rfc2553.h] Bug #659: Test for and handle systems with
+ where gai_strerror is defined as "const char *". Part of patch supplied
+ by bugzilla-openssh at thewrittenword.com
+ - (dtucker) [contrib/cygwin/README contrib/cygwin/ssh-host-config] Update
+ ssh-host-config to match current defaults, bump README version. Patch from
+ vinschen at redhat.com.
+ - (dtucker) [uidswap.c] Don't test restoration of uid on Cygwin since the
+ OS does not support permanently dropping privileges. Patch from
+ vinschen at redhat.com.
+ - (dtucker) [openbsd-compat/port-aix.c] Use correct include for xmalloc.h,
+ add canohost.h to stop warning. Based on patch from openssh-unix-dev at
+ thewrittenword.com
+ - (dtucker) [INSTALL] Bug #686: Document requirement for zlib 1.1.4 or
+ higher.
+ - (tim) Fix typo. s/SETEIUD_BREAKS_SETUID/SETEUID_BREAKS_SETUID/
+ - (tim) [configure.ac] Bug 665: move 3 new AC_DEFINES outside of AC_TRY_RUN.
+ Report by distler AT golem ph utexas edu.
+ - (dtucker) [contrib/aix/pam.conf] Include example pam.conf for AIX from
+ article by genty at austin.ibm.com, included with the author's permission.
+ - (dtucker) OpenBSD CVS Sync
+ - markus@cvs.openbsd.org 2003/09/18 07:52:54
+ [sshconnect.c]
+ missing {}; bug #656; jclonguet at free.fr
+ - markus@cvs.openbsd.org 2003/09/18 07:54:48
+ [buffer.c]
+ protect against double free; #660; zardoz at users.sf.net
+ - markus@cvs.openbsd.org 2003/09/18 07:56:05
+ [authfile.c]
+ missing buffer_free(&encrypted); #662; zardoz at users.sf.net
+ - markus@cvs.openbsd.org 2003/09/18 08:49:45
+ [deattack.c misc.c session.c ssh-agent.c]
+ more buffer allocation fixes; from Solar Designer; CAN-2003-0682;
+ ok millert@
+ - miod@cvs.openbsd.org 2003/09/18 13:02:21
+ [authfd.c bufaux.c dh.c mac.c ssh-keygen.c]
+ A few signedness fixes for harmless situations; markus@ ok
+ - markus@cvs.openbsd.org 2003/09/19 09:02:02
+ [packet.c]
+ buffer_dump only if PACKET_DEBUG is defined; Jedi/Sector One; pr 3471
+ - markus@cvs.openbsd.org 2003/09/19 09:03:00
+ [buffer.c]
+ sign fix in buffer_dump; Jedi/Sector One; pr 3473
+ - markus@cvs.openbsd.org 2003/09/19 11:29:40
+ [ssh-agent.c]
+ provide a ssh-agent specific fatal() function; ok deraadt
+ - markus@cvs.openbsd.org 2003/09/19 11:30:39
+ [ssh-keyscan.c]
+ avoid fatal_cleanup, just call exit(); ok deraadt
+ - markus@cvs.openbsd.org 2003/09/19 11:31:33
+ [channels.c]
+ do not call channel_free_all on fatal; ok deraadt
+ - markus@cvs.openbsd.org 2003/09/19 11:33:09
+ [packet.c sshd.c]
+ do not call packet_close on fatal; ok deraadt
+ - markus@cvs.openbsd.org 2003/09/19 17:40:20
+ [scp.c]
+ error handling for remote-remote copy; #638; report Harald Koenig;
+ ok millert, fgs, henning, deraadt
+ - markus@cvs.openbsd.org 2003/09/19 17:43:35
+ [clientloop.c sshtty.c sshtty.h]
+ remove fatal callbacks from client code; ok deraadt
+ - (bal) "extration" -> "extraction" in ssh-rand-helper.c; repoted by john
+ on #unixhelp@efnet
+ - (tim) [configure.ac] add --disable-etc-default-login option. ok djm
+ - (djm) Sync with V_3_7 branch:
+ - (djm) Fix SSH1 challenge kludge
+ - (djm) Bug #671: Fix builds on OpenBSD
+ - (djm) Bug #676: Fix PAM stack corruption
+ - (djm) Fix bad free() in PAM code
+ - (djm) Don't call pam_end before pam_init
+ - (djm) Enable build with old OpenSSL again
+ - (djm) Trim deprecated options from INSTALL. Mention UsePAM
+ - (djm) Fix quote handling in sftp; Patch from admorten AT umich.edu
+
+20030919
+ - (djm) Bug #683: Remove reference to --with-ipv4-default from INSTALL;
+ djast AT cs.toronto.edu
+ - (djm) Bug #661: Remove duplicate check for basename; from
+ bugzilla-openssh AT thewrittenword.com
+ - (djm) Bug #641: Allow RedHat RPM building without GTK-2; Patch from
+ jason AT devrandom.org
+ - (djm) Bug #646: Fix location of x11-ssh-askpass; Jim
+ - (dtucker) [openbsd-compat/port-aix.h] Bug #640: Don't include audit.h
+ unless required. Reorder to reduce warnings.
+ - (dtucker) [session.c] Bug #643: Fix size_t -> u_int and fix null deref
+ when /etc/default/login doesn't exist or isn't readable. Fixes from
+ jparsons-lists at saffron.net and georg.oppenberg at deu mci com.
+ - (dtucker) [acconfig.h] Updated basename test needs HAVE_BASENAME
+
+20030918
+ - (djm) Bug #652: Fix empty password auth
+
+20030917
+ - (djm) Sync with V_3_7 branch
+ - (djm) OpenBSD Sync
+ - markus@cvs.openbsd.org 2003/09/16 21:02:40
+ [buffer.c channels.c version.h]
+ more malloc/fatal fixes; ok millert/deraadt; ghudson at MIT.EDU
+ - (djm) Crank RPM spec file versions
+ - (tim) [openbsd-compat/inet_ntoa.c] 20030917 "Sync with V_3_7 branch" undid
+ 20030916 "Missed dead header in inet_ntoa.c"
+
+20030916
+ - (dtucker) [acconfig.h configure.ac defines.h session.c] Bug #252: Retrieve
+ PATH (or SUPATH) and UMASK from /etc/default/login on platforms that have it
+ (eg Solaris, Reliant Unix). Patch from Robert.Dahlem at siemens.com.
+ ok djm@
+ - (bal) OpenBSD Sync
+ - deraadt@cvs.openbsd.org 2003/09/16 03:03:47
+ [buffer.c]
+ do not expand buffer before attempting to reallocate it; markus ok
+ - (tim) [configure.ac] Fix portability issues.
+ - (bal) Missed dead header in inet_ntoa.c
+
+20030914
+ - (dtucker) [Makefile regress/Makefile] Fix portability issues preventing
+ the regression tests from running with Solaris' make. Patch from Brian
+ Poole (raj at cerias.purdue.edu).
+ - (dtucker) [regress/Makefile] AIX's make doesn't like " +=", so replace
+ with vanilla "=".
+
+20030913
+ - (dtucker) [regress/agent-timeout.sh] Timeout of 5 sec is borderline for
+ slower hosts, increase to 10 sec.
+ - (dtucker) [auth-passwd.c] On AIX, call setauthdb() before loginsuccess(),
+ required to correctly reset failed login count when using a password
+ registry other than "files" (eg LDAP, see bug #543).
+ - (tim) [configure.ac] define WITH_ABBREV_NO_TTY for SCO.
+ Report by Roger Cornelius.
+ - (dtucker) [auth-pam.c] Use SSHD_PAM_SERVICE for PAM service name, patch
+ from cjwatson at debian.org.
+
20030912
- (tim) [regress/agent-ptrace.sh] sh doesn't like "if ! shell_function; then".
- (tim) [Makefile.in] only mkdir regress if it does not exist.