gaim (1:0.58-2.5) stable-security; urgency=high * Non-maintainer upload by Security Team * Applied backported upstream patch to fix denial of service [src/protocols/oscar/aim.h, src/protocols/oscar/im.c, src/protocols/oscar/rxqueue.c, CAN-2005-0472] * Thanks a lot to Robert McQueen -- Martin Schulze Mon, 14 Mar 2005 20:28:15 +0100 gaim (1:0.58-2.4) stable-security; urgency=high * Non-maintainer upload by Security Team * Applied patch by Jacques A. Vidrine to fix a Yahoo packet parser overflow [src/protocols/yahoo/yahoo.c] and an HTTP proxy connect overflow [src/proxy.c], CAN-2004-0006 * Applied a patch to fix an AIM/Oscar DirectIM integer overflow [src/protocols/oscar/ft.c], CAN-2004-0008 -- Martin Schulze Wed, 28 Jan 2004 13:00:55 +0100 gaim (1:0.58-2.3) stable-security; urgency=medium * Non-maintainer upload by Security Team * Applied patch from Christopher Blizzard to add a missing malloc() before **argv is actually used. This was introduced in the security patch and tends to crash Gaim. -- Martin Schulze Wed, 28 Aug 2002 15:15:45 +0200 gaim (1:0.58-2.2) stable-security; urgency=high * Non-maintainer upload by Security Team * Applied patch from Robert McQueen to fix arbitrary program execution in the url handler * Applied additional patch to gaimrc.c (for setting and writing the default configuration) to revert the use of "%s" as url handler, which won't work properly with the current execvp() solution, thanks to Ademar de Souza Reis Jr. -- Martin Schulze Mon, 26 Aug 2002 21:55:25 +0200 gaim (1:0.58-2.1) stable-security; urgency=high * Non-maintainer upload by Security Team * Applied patch from Robert McQueen to fix arbitrary program execution in the url handler -- Martin Schulze Mon, 26 Aug 2002 10:26:55 +0200 gaim (1:0.58-2) unstable; urgency=low * Applied patch from Chris Blizzard (of Redhat fame =) to fix munged GNOME applet icon at startup. Cheers! (closes: #147071) * Enabled NAS audio in non-GNOME package. (closes: #147291) * Returned globbing to debian/gaim-common.files now we don't need to make an exception for iconaway.so. -- Robert McQueen Fri, 24 May 2002 23:24:16 +0100 gaim (1:0.58-1) unstable; urgency=high * The 'DOH!' release. * New upstream version, lots of nice stuff. See the changelog. =) * To avoid upsetting upgrades, gaim-common now replaces suitably old gaim-gnome packages because iconaway.so moved. (closes: #144945) * Another attempt by upstream to fix those annoying 'Already there' MSN errors. (closes: #145722) * Fixes GNOME applet transparency problems. (closes: #145915) * In the previous version, the MSN plugin got secure logins to Hotmail that used MD5 auth cookies in a file which was opened in the browser, and would log you straight into your inbox. Ironically, this improved security used blatantly insecure tempfiles, which were also created with the 644 mode, leaving the way open for symlink attacks, and anyone on your system reading your mail. This is fixed in this release. (closes: #146750) * Not to mention the overflow in the Jabber plugin that got fixed. * Automatic update of config.sub from 20010907 to 20020307, and config.guess from 20010904 to 20020320. -- Robert McQueen Tue, 14 May 2002 17:44:43 +0100 gaim (1:0.57-2) unstable; urgency=high * The 'Ahh... phew' release. One or two patches from CVS. * Fixes segfault DOS in TOC protocol code. (closes: #144318) * Returns iconaway.so to gaim-common, the gnome/non-gnome dependent code has been moved to the binary itself. * High priority to reach woody with these fixes, and the fix in 0.57 for Yahoo's new authorisation method. -- Robert McQueen Sun, 28 Apr 2002 16:54:18 +0100 gaim (1:0.57-1) unstable; urgency=low * The 'You did WHAT with configure.ac?!?' release. * New upstream version. Adds an evil autoconf hack upstream, support for Yahoo's new authorisation method, new keyboard shortcuts, hashed secure logins for Hotmail from your MSN account, and various translations and Jabber improvements. -- Robert McQueen Fri, 26 Apr 2002 17:09:18 +0100 gaim (1:0.56-1) unstable; urgency=low * The 'Hola from Tenerife!' release. * New upstream version. Signal patch merged. Various bugfixes, and the much-awaited send history finally appears. * Automatic update of config.sub from 20010420 to 20020307, and config.guess from 20010420 to 20020320. -- Robert McQueen Sat, 13 Apr 2002 18:40:05 +0100 gaim (1:0.55-2) unstable; urgency=low * Wrote patch to unblock useful signals like SIGCHLD because gdm helpfully blocks them. Helps avoid zombies from filling your process space when you start the applet from the GNOME panel. [debian/patches/unblock-handled-signals.diff] * Applied patch from CVS to fix MSN problems such as being constantly prompted to allow buddies who you actually wanted to block. [debian/patches/various-msn-fixes.diff] * Automatic update of config.sub from 20020222 to 20020307, and config.guess from 20020219 to 20020320. -- Robert McQueen Wed, 3 Apr 2002 20:53:38 +0100 gaim (1:0.55-1) unstable; urgency=low * The 'and relax...' release. * New upstream version (all patches have been merged). * Updated Spanish translation. (closes: #138471) * Fixes HTTP incompliance in proxy code. (closes: #140036) * Fixes crashing when enabling/disabling animated buddy icons. (closes: #140192) -- Robert McQueen Sat, 30 Mar 2002 16:49:43 +0000 gaim (1:0.54-6) unstable; urgency=low * Updated gaimrc.c to recognise the option for the new Command sound method so it doesn't override it at loadup. (closes: #139253) -- Robert McQueen Thu, 21 Mar 2002 13:01:42 +0000 gaim (1:0.54-5) unstable; urgency=low * Added MSN embarrased icon. (closes: #139109) * Updated MSN pixmaps from CVS to avoid evil crashing on some archs. -- Robert McQueen Wed, 20 Mar 2002 11:14:58 +0000 gaim (1:0.54-4) unstable; urgency=low * Fixed a compiler warning with the sound patch. -- Robert McQueen Sun, 17 Mar 2002 17:56:05 +0000 gaim (1:0.54-3) unstable; urgency=low * Fixed a few things with my sound patch, like the mysterious swapping of the recieve and first recieve sound options versus events. Doh! (closes: #138759) -- Robert McQueen Sun, 17 Mar 2002 17:26:50 +0000 gaim (1:0.54-2) unstable; urgency=low * Removed ICQ plugin. It really doesn't work very well at all any more. (closes: #137058) * Updated README.Debian to take account of this. -- Robert McQueen Sat, 16 Mar 2002 19:46:42 +0000 gaim (1:0.54-1) unstable; urgency=medium * New upstream version. Goodies like IM Image sending for Oscar, protocol specific smileys, off-line message and improved typing notification support for Yahoo, DCC chat and mIRC formatting support for IRC, and lots of general bugfixes, especially pertaining to never being asked to accept/decline MSN buddies who add you when you're off-line. (closes: #138472) * Medium urgency upload because 0.53 was buggy but I had to let 0.53-2 go in to testing because of the nul vulnerability. * The six (!) patches in 0.53-2 from CVS are all included in this version. * 'Oscar' protocol renamed to 'Oscar / ICQ' upstream. (closes: #137061) * Applied patch from me, already accepted upstream, with various cleanups to fix unusual sound behaviour: - attempting to play an internal sound with a command now generates an error instead of silently failing - attempting to play a file with the native method now warns before probably failing - the 'Test' button in the sound preferences now temporarily enables the sound under test, so it always tries to play it - using a command to play sounds is now a seperate option that must be explicitly enabled, avoiding problems with testing for other options happening before testing if a command had been specified (closes: #137010) * Now building the non-GNOME version against ESD to make sound support more useful. Native sound support can only be expected to work for internal sounds. (closes: #137013) * Remove the .h files from gaim-common. It turns out to be very hard indeed to make Gaim plugins build outside the Gaim source tree. I will probably make a gaim-plugins package with a few worthy plugins like the russian charset conversion, xosd signon/signoff notification, etc - I'm open to suggestions. Plugins must be runtime configurable (unlike irc-extras), actually useful (unlike the one to arbitrarily change your idle time), and build against the latest Gaim. * Include the licq2gaim.pl buddy list import script in the examples dir in gaim-common. -- Robert McQueen Sat, 16 Mar 2002 18:47:07 +0000 gaim (1:0.53-2) unstable; urgency=low * The 'No, I don't use CVS' release. * Applied patches from CVS so that: - closing a conversation window when a buddy is typing doesn't cause a crash [debian/patches/close-typing-buddy-crash.diff] - server-side buddy lists are disabled for ICQ over Oscar to avoid mysterious bugs with authentication-required buddies not appearing on-line [debian/patches/no-ssi-for-icq.diff] - Gaim doesn't fork and uses gdk_beep() for console beeps [debian/patches/non-forked-gdk-beep.diff] (closes: #136165) - Gaim doesn't gradually make the X server use all your RAM [debian/patches/memleak.diff] - typing notification doesn't crash Gaim if you don't use tabs [debian/paches/no-tab-crash.diff] - sending a nul or � doesn't crash Gaim [debian/patches/nul-crash.diff] -- Robert McQueen Mon, 4 Mar 2002 19:23:38 +0000 gaim (1:0.53-1) unstable; urgency=low * New upstream version. Adds typing notification, new ICQ icons, IM Images, screen-name formatting support and server-side buddy list storage/retrieval for Oscar, and various other nice features and cleanups. (closes: #136512) * Includes documentation and MSN segfault fixes that were patched into the previous release. * Automatic update of config.{sub,guess} from 20010420 to 20020222. -- Robert McQueen Sun, 3 Mar 2002 19:06:52 +0000 gaim (1:0.52-1) unstable; urgency=medium * New upstream version. Fixes a variety of nasty problems. * Fixes crashing on connection with some MSN buddy lists. * Uses correct Yahoo! messenger server. (closes: #133343) * Fixes DOSable erroneous handling of HTML comments. (closes: #133603) * Applied patch from CVS to fix MSN segfaults. (closes: #115538) * Moved iconaway.so plugin into gaim-gnome package because it's useless without the applet. (closes: #133500) * Fixed little typo in manpage (already fixed in CVS). -- Robert McQueen Sun, 17 Feb 2002 22:32:10 +0000 gaim (1:0.51-2) unstable; urgency=low * Fixed description of gaim-gnome to make it obvious that it is a panel applet. * Made gaim-gnome depend on gnome-panel. It's unreasonable to request that libpanel-applet0 does so, but gaim-gnome is useless without it. (closes: #131233) -- Robert McQueen Mon, 28 Jan 2002 20:25:04 +0000 gaim (1:0.51-1) unstable; urgency=low * The 'Hi anyone on gaim's PTS' release. * New upstream version, mostly bug fixes. (closes: #130737) * Upstream developer Eric Warmenhoven departs... thanks for all of your help and effort - you'll be greatly missed by all. * According to him, crashes were caused by a Gtk+ bug which has now been worked around. (closes: #115538) * He removed the help message a few weeks ago because I said it didn't wrap properly... not sure how helpful that was though. (closes: #125310) * He also grappled with the GNOME panel to implement transparent backgrounds as best he could. The Gaim applet icon will have the same background image as the panel, but it will not line up with the panel's because the panel doesn't provide enough imformation to achieve that. (closes: #128449) * Made gaim-common include a handful of .h files so that you can build plugins without the Gaim source - this opens the way for packaging plugins that don't come with Gaim. The reason is that I do not wish to include unofficial plugins in Gaim and accept responsibility for ensuring they work with the latest versions, or be forced to remove them from the package at a later date, sorry. (closes: #129737) * I can no longer reproduce this bug with this new version, but I am also unable to determine if/when exactly it was fixed from the CVS logs. If you can still make it happen, please reopen it and I'll chase it up. (closes: #117498) * Fixed a few minor errors in the manpage. (closes: #130435, #130443) * Re-worked description to highlight mutli-protocol support. (closes: #130437) * Automatic update of config.{sub,guess} from 20010907 to 20020102. -- Robert McQueen Sun, 27 Jan 2002 05:45:05 +0000 gaim (1:0.50-1) unstable; urgency=low * The 'Hi everyone who reads d-d-c!' release. * New upstream version, includes GnomeICU import and Galeon patches from 0.49-2. (closes: #125897) * Added a suitably scaled Debian menu icon for gaim. (closes: #122302) * Re-ordered build to do the non-GNOME version first and install that 'manually', so all the files from the GNOME applet get installed with the 'make install' target. This means gaim-gnome now contains the applet panel images. (closes: #122315) * Fixed re-declaration of time() in jabber/xtream.c. (closes: #124390) -- Robert McQueen Thu, 20 Dec 2001 18:30:16 +0000 gaim (1:0.49-2) unstable; urgency=medium * The 'grr... dpkg' release. Fixes possibly troublesome package relationship problems. * Made gaim-gnome conflict and replace old gaim packages. * Made gaim-common have a versioned depend on gaim or gaim-gnome, because a dpkg bug seemed to let you install an old gaim-common with a new gaim or gaim-gnome, even though they have a versioned depend on gaim-common. * Added patch from CVS to support GnomeICU buddy list importing. * Added option to use Galeon as the browser. -- Robert McQueen Sat, 1 Dec 2001 22:41:04 +0000 gaim (1:0.49-1) unstable; urgency=low * New upstream version. * Removed evil hack from debian/rules to rename plugins from libfoo.so.0.0.0 to libfoo.so (fixed upstream). * Updated description to include Gadu-gadu protocol. * Removal of buddies from within the IM window is now confirmed. (closes: #116442) * Memory leak in buddy list fixed. (closes: #119639) * Pgup/pgdown in IM windows now scrolls only one text box, not both. (closes: #120027) * Included a minor patch to remove ^M characters from Oscar messages. (closes: #120595) * Now suggests ispell. (closes: #121656) -- Robert McQueen Fri, 30 Nov 2001 01:43:01 +0000 gaim (1:0.48-1) unstable; urgency=low * New upstream version. (closes: #119748) * Better support for ICQ2000 features via OSCAR protocol, like server/offline messages. * Doesn't temporarily grow small GNONE panels when the applet starts up. * GNU config automated update: config.sub (20011005 to 20011108), config.guess (20011005 to 20011108) -- Robert McQueen Fri, 16 Nov 2001 19:46:48 +0000 gaim (1:0.47-1) unstable; urgency=low * New upstream version. * Sound-playing children now time out after 30 seconds. (closes: #116982) -- Robert McQueen Fri, 2 Nov 2001 00:53:18 +0000 gaim (1:0.46-1) unstable; urgency=low * New upstream version. (closes: #114950) * Added documentation: plugins/PERL-HOWTO, plugins/SIGNALS, doc/CREDITS, doc/FAQ. -- Robert McQueen Fri, 19 Oct 2001 00:37:19 +0100 gaim (1:0.45-1) unstable; urgency=low * New upstream version, includes fix to avoid infinite IM window growth. (closes: #114950) * Upgraded to DH_COMPAT=3 to make /etc/CORBA/servers/gaim_applet.gnorba a conffile. Adjusted build deps to match. -- Robert McQueen Sun, 14 Oct 2001 19:45:20 +0100 gaim (1:0.44-2) unstable; urgency=medium * Applied patch from CVS to avoid IM windows sizing to 0 by default and growing limitlessly. -- Robert McQueen Tue, 25 Sep 2001 01:28:14 +0100 gaim (1:0.44-1) unstable; urgency=low * New upstream version. * Enabled perl support, upstream assures me it works now. (closes: #112732) -- Robert McQueen Sun, 23 Sep 2001 18:37:20 +0100 gaim (1:0.43-1) unstable; urgency=medium * New upstream version including various bugfixes. * Colour selection dialogs now remember the previous colours. (closes: #101562) * Autorecon plugin now has an exponential backoff to allow users to correct non-transient errors. (closes: #102042) * Changed 'buddy' prompt to 'contact' to make the Add Buddy dialog less AIM-specific. (closes: #105460) * Users can now edit their alias with the MSN plugin. (closes: #110966) * Added postinst scripts for gaim and gaim-gnome to rmdir their dirs from /usr/share/doc if they exist, and replace them with symlinks to gaim-common. (closes: #111127) * Seeing as we have to build twice, try and build as little as possible the first time round (just the gaim_applet binary and its dependencies) to make it more efficient. * Updated config.{sub,guess} from latest autotools-dev. -- Robert McQueen Tue, 11 Sep 2001 22:42:51 +0100 gaim (1:0.11.0pre15-1) unstable; urgency=low * New maintainer. (closes: #100549) * New upstream version. (closes: #54105, #96166) * Repackaged with sane version number, pristine .orig.tar.gz, and seperate .diff.gz. (closes: #106488) * MSN and OSCAR protocols are functional at time of release. (closes: #92045, #105841) * Plugins, locales and docs are now in a shared gaim-common package. * Therefore, gaim and gaim-gnome are concurrently installable. (closes: #69794, #87873) * These new shared plugins are not linked against GNOME. (closes: #83427) * The GNOME applet now has a CORBA file and correct Applet menu entry, so it correctly integrates with the panel and saves settings. (closes: #80587, #92950, #101560) * Added code to debian/rules to update config.{guess,sub} from autotools-dev when necessary. (closes: #104934) -- Robert McQueen Fri, 31 Aug 2001 03:38:54 +0100 gaim (1:0.11.0pre11) unstable; urgency=low * New upstream release. -- Robert S. Edmonds Mon, 14 May 2001 17:40:05 -0400 gaim (1:0.11.0pre9-1) unstable; urgency=low * New upstream release. Closes: #91854 -- Robert S. Edmonds Tue, 27 Mar 2001 07:32:16 -0500 gaim (1:0.11.0pre8-1) unstable; urgency=low * New upstream release. -- Robert S. Edmonds Sun, 25 Mar 2001 15:26:59 -0500 gaim (1:0.11.0pre7-1) unstable; urgency=low * New upstream release. -- Robert S. Edmonds Sun, 18 Mar 2001 18:40:46 -0500 gaim (1:0.11.0pre4-2) unstable; urgency=low * Fixed gaim package, now contains a plain GTK-linked binary. -- Robert S. Edmonds Tue, 20 Feb 2001 18:12:45 -0500 gaim (1:0.11.0pre4-1) unstable; urgency=low * New upstream release. -- Robert S. Edmonds Sat, 23 Dec 2000 16:38:09 -0500 gaim (1:0.11.0pre2-1) unstable; urgency=low * New upstream release. -- Robert S. Edmonds Wed, 13 Dec 2000 07:28:04 -0500 gaim (1:0.10.3-2) unstable; urgency=low * Patched to fix remote HTML exploit when using OSCAR protocol. Closes: #77539 * New upstream release. -- Robert S. Edmonds Tue, 28 Nov 2000 19:48:33 -0500 gaim (1:0.10.1) unstable; urgency=low * New upstream release. -- Robert S. Edmonds Sun, 17 Sep 2000 17:43:20 -0400 gaim (1:0.10.0-1) unstable; urgency=low * New upstream release. -- Robert S. Edmonds Mon, 11 Sep 2000 17:56:10 -0400 gaim (1:0.9.20-1) unstable; urgency=low * Thanks to Decklin Foster * New upstream release. * removed au2h generated files from .diff.gz * Build with and without Gnome support -- Robert S. Edmonds Wed, 26 Jul 2000 00:19:20 -0400 gaim (1:0.9.18-1) unstable; urgency=low * New upstream release. -- Robert S. Edmonds Sat, 3 Jun 2000 11:14:21 -0400 gaim (1:0.9.15-1) unstable; urgency=low * New upstream release. -- Robert S. Edmonds Sun, 21 May 2000 21:00:40 -0400 gaim (1:0.9.13-1) unstable; urgency=low * New upstream release. -- Robert S. Edmonds Wed, 29 Mar 2000 21:16:47 -0500 gaim (1:0.9.10-2) unstable; urgency=low * Closes: #56340 -- Robert S. Edmonds Wed, 23 Feb 2000 19:01:54 -0500 gaim (1:0.9.10-1) unstable; urgency=low * New upstream release. -- Robert S. Edmonds Tue, 23 Nov 1999 22:42:47 -0500 gaim (1:0.9.7-1) unstable; urgency=low * New upstream release. -- Robert S. Edmonds Sun, 15 Aug 1999 20:01:54 -0400 gaim (0.9.5-1) unstable; urgency=low * New upstream release. -- Robert S. Edmonds Sat, 31 Jul 1999 23:12:54 -0400 gaim (0.8.0-1) unstable; urgency=low * New upstream version. -- Robert S. Edmonds Mon, 17 May 1999 20:00:10 -0400 gaim (19990311-1) unstable; urgency=low * New upstream version. -- Robert S. Edmonds Thu, 11 Mar 1999 16:58:29 -0500 gaim (19990227-1) unstable; urgency=low * New upstream version. -- Robert S. Edmonds Sat, 27 Feb 1999 21:54:49 -0500 gaim (19981231-1) unstable; urgency=low * New upstream version. -- Robert S. Edmonds Thu, 31 Dec 1998 14:06:14 -0500 gaim (19981126-1) unstable; urgency=low * New upsteam version. -- Robert S. Edmonds Sat, 28 Nov 1998 17:46:25 -0500 gaim (19981117-1) unstable; urgency=low * Initial release. -- Robert S. Edmonds Wed, 18 Nov 1998 16:59:35 -0500