Change logs for net-snmp source package in Jammy

  • net-snmp (5.9.1+dfsg-1ubuntu2.6) jammy; urgency=medium
    
      * Fix snmptrapd reconnection issue after hitting MySQL wait_timeout
        (LP: #1999711)
        - d/p/snmptrapd-mysql-reconnection-after-hitting-wait_timeout.patch
        - d/p/snmptrapd-mysql-fix-build-error.patch
    
     -- Chengen Du <email address hidden>  Fri, 17 Feb 2023 03:25:16 +0000
  • net-snmp (5.9.1+dfsg-1ubuntu2.5) jammy; urgency=medium
    
      * d/p/restore-support-for-long-dns-names.patch: Fix snmp requests for domains
        longer than 63 characters (LP: #1998461)
    
     -- Lena Voytek <email address hidden>  Mon, 23 Jan 2023 11:33:32 -0700
  • net-snmp (5.9.1+dfsg-1ubuntu2.4) jammy-security; urgency=medium
    
      * SECURITY UPDATE: DoS via null pointer exception issues
        - debian/patches/CVE-2022-4479x-1.patch: disallow SET with NULL varbind
          in agent/snmp_agent.c.
        - debian/patches/CVE-2022-4479x-2.patch: allow SET with NULL varbind
          for testing in apps/snmpset.c.
        - debian/patches/CVE-2022-4479x-3.patch: add test for NULL varbind set
          in testing/fulltests/default/T0142snmpv2csetnull_simple.
        - CVE-2022-44792
        - CVE-2022-44793
      * This package does _not_ contain the changes from 5.9.1+dfsg-1ubuntu2.3
        in jammy-proposed.
    
     -- Marc Deslauriers <email address hidden>  Fri, 06 Jan 2023 11:02:17 -0500
  • net-snmp (5.9.1+dfsg-1ubuntu2.3) jammy; urgency=medium
    
      * d/p/restore-support-for-long-dns-names.patch: Fix snmp requests for domains
        longer than 63 characters (LP: #1998461)
    
     -- Lena Voytek <email address hidden>  Fri, 02 Dec 2022 10:13:48 -0700
  • net-snmp (5.9.1+dfsg-1ubuntu2.2) jammy-security; urgency=medium
    
      * SECURITY UPDATE: Multiple security issus
        - debian/patches/CVE-2022-248xx-1.patch: fix bounds checking in
          NET-SNMP-AGENT-MIB, NET-SNMP-VACM-MIB, SNMP-VIEW-BASED-ACM-MIB,
          SNMP-USER-BASED-SM-MIB in  agent/mibgroup/agent/nsLogging.c,
          agent/mibgroup/agent/nsVacmAccessTable.c,
          agent/mibgroup/mibII/vacm_vars.c, agent/mibgroup/snmpv3/usmUser.
        - debian/patches/CVE-2022-248xx-2.patch: recover SET status from
          delegated request in agent/snmp_agent.c.
        - CVE-2022-24805, CVE-2022-24806, CVE-2022-24807, CVE-2022-24808,
          CVE-2022-24809, CVE-2022-24810
    
     -- Marc Deslauriers <email address hidden>  Mon, 25 Jul 2022 14:22:08 -0400
  • net-snmp (5.9.1+dfsg-1ubuntu2.1) jammy; urgency=medium
    
      * d/p/lp1969623-net-snmp-create-v3-user-Fix-the-snmpd.conf-path.patch:
        Set ${datarootdir} value in net-snmp-create-v3-user and fix
        error when creating user.  (LP: #1969623)
    
     -- Sergio Durigan Junior <email address hidden>  Thu, 21 Apr 2022 16:14:05 -0400
  • net-snmp (5.9.1+dfsg-1ubuntu2) jammy; urgency=medium
    
      * No-change rebuild for the perl update.
    
     -- Matthias Klose <email address hidden>  Sun, 06 Feb 2022 13:33:00 +0100
  • net-snmp (5.9.1+dfsg-1ubuntu1) jammy; urgency=medium
    
      * Merge with Debian unstable (LP: #1946877, #1912390). Remaining changes:
        - Add apport hook:
          + d/control: add dh-apport to Build-Depends
          + d/rules: install the apport hook via debhelper
          + d/source.apport: apport hook
        - d/p/lp1945960-*: backport patches for the OpenSSL3 transition
          (LP #1945960)
      * Dropped changes, incorporated by Debian:
        - d/libsnmp-dev.install: Don't install archive (.a) files.
          The archive files are just temporary files generated in order to
          create the final shared objects (.so), and we don't need to ship
          them in the package.
      * Dropped changes, incorporated upstream:
        - Fix segmentation fault when certificate contains extension
          longer than 512 bytes (LP #1912389)
          + d/p/lp1912389-libsnmp-Handle-certificate-loading-errors-gracefully.patch:
            Skip certificate if loading fails.
          + d/p/lp1912389-libsnmp-SSL-Increase-extension-buffer-size-to-preven.patch:
            Make sure enough space is allocated for extensions longer than
            512 bytes.
    
     -- Sergio Durigan Junior <email address hidden>  Tue, 11 Jan 2022 20:39:24 -0500
  • net-snmp (5.9+dfsg-3ubuntu4) jammy; urgency=medium
    
      * d/p/lp1945960-*: backport patches for the OpenSSL3 transition
        (LP: #1945960)
    
     -- Simon Chopin <email address hidden>  Wed, 17 Nov 2021 14:58:54 +0100
  • net-snmp (5.9+dfsg-3ubuntu3) impish; urgency=medium
    
      * No-change rebuild to build packages with zstd compression.
    
     -- Matthias Klose <email address hidden>  Thu, 07 Oct 2021 12:21:20 +0200
  • net-snmp (5.9+dfsg-3ubuntu2) impish; urgency=medium
    
      * Fix segmentation fault when certificate contains extension
        longer than 512 bytes (LP: #1912389)
        - d/p/lp1912389-libsnmp-Handle-certificate-loading-errors-gracefully.patch:
          Skip certificate if loading fails.
        - d/p/lp1912389-libsnmp-SSL-Increase-extension-buffer-size-to-preven.patch:
          Make sure enough space is allocated for extensions longer than
          512 bytes.
    
     -- Sergio Durigan Junior <email address hidden>  Tue, 25 May 2021 19:03:31 -0400