Back to postfix PTS page

Accepted postfix 3.1.6-0+deb9u1 (source amd64 all) into proposed-updates->stable-new, proposed-updates



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Format: 1.8
Date: Wed, 27 Sep 2017 00:56:28 -0400
Source: postfix
Binary: postfix postfix-ldap postfix-lmdb postfix-cdb postfix-pcre postfix-mysql postfix-pgsql postfix-sqlite postfix-doc
Architecture: source amd64 all
Version: 3.1.6-0+deb9u1
Distribution: stretch
Urgency: medium
Maintainer: LaMont Jones <lamont@debian.org>
Changed-By: Scott Kitterman <scott@kitterman.com>
Description:
 postfix    - High-performance mail transport agent
 postfix-cdb - CDB map support for Postfix
 postfix-doc - Documentation for Postfix
 postfix-ldap - LDAP map support for Postfix
 postfix-lmdb - LMDB map support for Postfix
 postfix-mysql - MySQL map support for Postfix
 postfix-pcre - PCRE map support for Postfix
 postfix-pgsql - PostgreSQL map support for Postfix
 postfix-sqlite - SQLite map support for Postfix
Closes: 864942 873957
Changes:
 postfix (3.1.6-0+deb9u1) stretch; urgency=medium
 .
     [Wietse Venema]
 .
   * New Upstream 3.1.5
     - Compatibility fix (introduced: Postfix 3.1): some Milter
       applications do not recognize macros sent as {name} when
       macros have single-character names. Postfix now sends such
       macros without {} as it has done historically. Viktor
       Dukhovni. File: milter/milter.c.
     - Safety net: append a null byte to vstring buffers, so that
       C-style string operations won't scribble past the end. File:
       vstring.c.
     - Workaround (introduced: Postfix 3.0 20140718): prevent MIME
       downgrade of Postfix-generated message/delivery status.
       It's supposed to be 7bit, therefore quoted-printable encoding
       is not expected. Problem reported by Griff. File:
       bounce/bounce_notify_util.c.
   * New Upstream 3.1.6
     - Security: Berkeley DB 2 and later try to read settings from
       a file DB_CONFIG in the current directory.  This undocumented
       feature may introduce undisclosed vulnerabilities resulting
       in privilege escalation with Postfix set-gid programs
       (postdrop, postqueue) before they chdir to the Postfix queue
       directory, and with the postmap and postalias commands
       depending on whether the user's current directory is writable
       by other users. This fix does not change Postfix behavior
       for Berkeley DB < 3, but reduces file create performance
       for Berkeley DB 3 .. 4.6.  File: util/dict_db.c.  Closes: #864942
 .
     [Scott Kitterman]
 .
   * Refresh debian/patches/11_postmap_update.diff
   * Use full path to main.cf in postfix-instance-generator.  Closes: #873957
Checksums-Sha1:
 d7ecd6a59e48a3d842221f0efe9607f7d917447a 2678 postfix_3.1.6-0+deb9u1.dsc
 8f08de75d11dc5693a12aee7c8ca267f9f36b422 4341308 postfix_3.1.6.orig.tar.gz
 5aa9c600c15333bef2ab9faf87c74830060b24e4 191592 postfix_3.1.6-0+deb9u1.debian.tar.xz
 c9c2b89714cb8c9378d0c365bb160b92c77cd71a 2412 postfix-cdb-dbgsym_3.1.6-0+deb9u1_amd64.deb
 21ab56cb8a0a1872b9ca20da2421cc7261282513 313604 postfix-cdb_3.1.6-0+deb9u1_amd64.deb
 179c56d14cae6e8c1f09a0e8304162cd108ef195 97762 postfix-dbgsym_3.1.6-0+deb9u1_amd64.deb
 0317c9f583526981be42ed8ebe0f55a7ab91593e 1174730 postfix-doc_3.1.6-0+deb9u1_all.deb
 24caf2618ba6fa9e72d18821e47a420265216ae0 3124 postfix-ldap-dbgsym_3.1.6-0+deb9u1_amd64.deb
 d1726335ac4a5d73ee3f819240d365f2ca691271 330936 postfix-ldap_3.1.6-0+deb9u1_amd64.deb
 62f3c0bc53d7dfbbdf7ed020ee8a1b244b3abebf 2760 postfix-lmdb-dbgsym_3.1.6-0+deb9u1_amd64.deb
 645a759d69e74cf763db064235ae5e575a67c286 318646 postfix-lmdb_3.1.6-0+deb9u1_amd64.deb
 e22ce58b185183772000ea539d35a7d9c5015956 2684 postfix-mysql-dbgsym_3.1.6-0+deb9u1_amd64.deb
 2fcf87cfbbfd14b743a611219a3ca99529010b82 320420 postfix-mysql_3.1.6-0+deb9u1_amd64.deb
 54939ee3d094d0692c5a1a00b0c8003ac259f00d 2486 postfix-pcre-dbgsym_3.1.6-0+deb9u1_amd64.deb
 2582b1820546026dc258dba478e880dbaaef7d28 318984 postfix-pcre_3.1.6-0+deb9u1_amd64.deb
 ecf8e9f81efb3c1311eed28149f53e21240f3f33 2644 postfix-pgsql-dbgsym_3.1.6-0+deb9u1_amd64.deb
 b13eb823dc502cc9a194c7388ceab0aacc042fa3 320072 postfix-pgsql_3.1.6-0+deb9u1_amd64.deb
 700b52b324843066caf7f1547814a2d918095a76 2466 postfix-sqlite-dbgsym_3.1.6-0+deb9u1_amd64.deb
 f5fbf693d7cf1c7fe43fb379763bb622854aacc4 317252 postfix-sqlite_3.1.6-0+deb9u1_amd64.deb
 83885609f2dd8abdc079e3241b3d89b22c71bf2d 11035 postfix_3.1.6-0+deb9u1_amd64.buildinfo
 816fe29487cf80dc0b54434fda464104afa01665 1435078 postfix_3.1.6-0+deb9u1_amd64.deb
Checksums-Sha256:
 91e4bb2700d35856139f9a2790e55b255a49d70258bd90de31fd4d18daf10e3b 2678 postfix_3.1.6-0+deb9u1.dsc
 e5eb005fd133c6a32ca03e796e0192945eb877be8eb727f30d25547c997c5aa6 4341308 postfix_3.1.6.orig.tar.gz
 69f593065c7dae5fbc191c453f43b06b2964b5f92dcc0d124300140e647de7bc 191592 postfix_3.1.6-0+deb9u1.debian.tar.xz
 c505bacbb504ed115bdab4b255fb204c8d49d108839e969ab52ddc0a8fa5779f 2412 postfix-cdb-dbgsym_3.1.6-0+deb9u1_amd64.deb
 783669fcc494ba0d31bec611e2e303205ca35d9b37b2353bb8814f2b3e321d2c 313604 postfix-cdb_3.1.6-0+deb9u1_amd64.deb
 7700e47a3b404386111e96709303e9444a6e379cd102aa6e71e671adf44dee3b 97762 postfix-dbgsym_3.1.6-0+deb9u1_amd64.deb
 c0f7ca0b38637521106e38c58605b0cf129e8a2ed313c03361698502022fcaf8 1174730 postfix-doc_3.1.6-0+deb9u1_all.deb
 4ac3a4a171508894fb71bbd9a1ee35538cd10a892df1db0833783d0352afaade 3124 postfix-ldap-dbgsym_3.1.6-0+deb9u1_amd64.deb
 536f42cd4819107d1751663b09ebdd570d84b048dcb03ffe716efd5b1f115aee 330936 postfix-ldap_3.1.6-0+deb9u1_amd64.deb
 245ebe4b4927e56a89b58538bf8e2c33e132dd1d6f198456cee53ca4dd2362ce 2760 postfix-lmdb-dbgsym_3.1.6-0+deb9u1_amd64.deb
 c085524138d74ebabc967d32ec746789849415a0a2b15194ddcb0a0879d2326d 318646 postfix-lmdb_3.1.6-0+deb9u1_amd64.deb
 ada5144810293ea5f8748f48b437312bf9b3e4609ac18d02e392ca2befad1a81 2684 postfix-mysql-dbgsym_3.1.6-0+deb9u1_amd64.deb
 1644fe4293331ee45c842d8d2ef56021d5a28f37582054d20b8daa64ea955061 320420 postfix-mysql_3.1.6-0+deb9u1_amd64.deb
 68ac6d099e706c10a9e484fcb404c1760b478365dad089be4fea177921187f67 2486 postfix-pcre-dbgsym_3.1.6-0+deb9u1_amd64.deb
 f8f864103db7a1bdba03861314fc4c6104703431c76fddece7d7b34a39f131c4 318984 postfix-pcre_3.1.6-0+deb9u1_amd64.deb
 c32699dcceb1df9a9cf5a096c5b4828856034f38d1de99963f13dcd58f225a40 2644 postfix-pgsql-dbgsym_3.1.6-0+deb9u1_amd64.deb
 cf5767a71a10fc2848143675c2b56950766a305aa3a2d6ef427aee188533ed8b 320072 postfix-pgsql_3.1.6-0+deb9u1_amd64.deb
 c5c57432eb28425084dfcc3f9872d0c39040c36819fedde1bd6a90acff5c9c82 2466 postfix-sqlite-dbgsym_3.1.6-0+deb9u1_amd64.deb
 271ca65b6dab838ee3acff7ec036d2b5ce02567c211ce0f76539e5a4efe8d991 317252 postfix-sqlite_3.1.6-0+deb9u1_amd64.deb
 1223a883563cb5805e261178972a0a208265ec66016ede29e85f24cd3ef2a586 11035 postfix_3.1.6-0+deb9u1_amd64.buildinfo
 0bb5f26ddfda252ee1cde9b4714a3a8028b82bf651cc83a704858c6383969148 1435078 postfix_3.1.6-0+deb9u1_amd64.deb
Files:
 3ed6bdf94153fb35e572a619340ef02f 2678 mail extra postfix_3.1.6-0+deb9u1.dsc
 eee6413a582896f195c98a40aadf7da0 4341308 mail extra postfix_3.1.6.orig.tar.gz
 bdf8d99b8ee11441d1f622935d692e26 191592 mail extra postfix_3.1.6-0+deb9u1.debian.tar.xz
 6f2706487947e1bc42e526194e125bbf 2412 debug extra postfix-cdb-dbgsym_3.1.6-0+deb9u1_amd64.deb
 162c81eaea02bdc5430e6b9e73d7f7e3 313604 mail extra postfix-cdb_3.1.6-0+deb9u1_amd64.deb
 d87dd314aa0ed18f570c580274d399ef 97762 debug extra postfix-dbgsym_3.1.6-0+deb9u1_amd64.deb
 15658360a92de4ab1e739413e6109b72 1174730 doc extra postfix-doc_3.1.6-0+deb9u1_all.deb
 5a4d980a662bb09d20e3c64b5feab4b6 3124 debug extra postfix-ldap-dbgsym_3.1.6-0+deb9u1_amd64.deb
 a03d249e64f3374307a911dfcaf186cd 330936 mail extra postfix-ldap_3.1.6-0+deb9u1_amd64.deb
 3a5a8cf440b061dc604f3f481606b1bd 2760 debug extra postfix-lmdb-dbgsym_3.1.6-0+deb9u1_amd64.deb
 afebc3f57e4f4dd99333f2ad77d37fca 318646 mail extra postfix-lmdb_3.1.6-0+deb9u1_amd64.deb
 f27d33f16f9e0e74547dbc4079d7678f 2684 debug extra postfix-mysql-dbgsym_3.1.6-0+deb9u1_amd64.deb
 25a4673e8d63be1a95c13801906cc5c0 320420 mail extra postfix-mysql_3.1.6-0+deb9u1_amd64.deb
 856d6979488ae3c8d762eac692802c73 2486 debug extra postfix-pcre-dbgsym_3.1.6-0+deb9u1_amd64.deb
 58bc3bfbebaa232279c0d260e8166bc6 318984 mail extra postfix-pcre_3.1.6-0+deb9u1_amd64.deb
 fd91e7715aea4cf1a4a2f03bc1e1ade1 2644 debug extra postfix-pgsql-dbgsym_3.1.6-0+deb9u1_amd64.deb
 e96a41320ddc749fa42138682ede40e4 320072 mail extra postfix-pgsql_3.1.6-0+deb9u1_amd64.deb
 d81ca91f8a0b678da98ffd60b07b4f4b 2466 debug extra postfix-sqlite-dbgsym_3.1.6-0+deb9u1_amd64.deb
 fadd98bed29b25b62f947a99bcdac62c 317252 mail extra postfix-sqlite_3.1.6-0+deb9u1_amd64.deb
 28529f09c47e3101ed982c214840ac0e 11035 mail extra postfix_3.1.6-0+deb9u1_amd64.buildinfo
 5b5926e7244d9bc4da0d4c211b7c45c5 1435078 mail extra postfix_3.1.6-0+deb9u1_amd64.deb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=zjSb
-----END PGP SIGNATURE-----