Updating chrony in wheezy-lts

2016-12-12 Thread Vincent Blut
y (1.24-3.1+deb7u4) wheezy-security; urgency=medium + + * Fix CVE-2016-1567: Restrict authentication of server/peer to specified +key. (Closes: #812923) + + * debian/postrm: +- Remove /var/lib/chrony on purge only. (Closes: #568492) + + -- Vincent Blut Mon, 12 Dec 2016 18:55:18 +0100 + c

Re: Updating chrony in wheezy-lts

2016-12-13 Thread Vincent Blut
On Tue, Dec 13, 2016 at 09:17:54AM +0100, Markus Koschany wrote: On 12.12.2016 20:41, Vincent Blut wrote: Hello, I would like to see chrony being updated in wheezy-lts to fix CVE-2016-1567. Also, I included a fix to make sure we don’t delete the /var/lib/chrony content. [...] Hi, the patch

Re: Updating chrony in wheezy-lts

2016-12-13 Thread Vincent Blut
On Tue, Dec 13, 2016 at 04:50:11PM +0100, Markus Koschany wrote: On 13.12.2016 16:30, Vincent Blut wrote: On Tue, Dec 13, 2016 at 09:17:54AM +0100, Markus Koschany wrote: On 12.12.2016 20:41, Vincent Blut wrote: Hello, I would like to see chrony being updated in wheezy-lts to fix CVE-2016

Re: squeeze update of chrony?

2016-01-28 Thread Vincent Blut
On Thu, Jan 28, 2016 at 09:23:01PM +0100, Guido Günther wrote: Hello dear maintainers, Hello Guido, the Debian LTS team would like to fix the security issues which are currently open in the Squeeze version of chrony: https://security-tracker.debian.org/tracker/CVE-2016-1567 Would you like to

Re: squeeze update of chrony?

2016-02-04 Thread Vincent Blut
Hey Antoine, On 2016-01-30 15:16:49, Antoine Beaupré wrote: >> On 2016-01-28 17:27:41, Vincent Blut wrote: >>> On Thu, Jan 28, 2016 at 09:23:01PM +0100, Guido Günther wrote: >>>>Hello dear maintainers, >>> >>> Hello Guido, >>> >>>&

Re: squeeze update of chrony?

2016-02-04 Thread Vincent Blut
On Thu, Feb 04, 2016 at 04:57:15PM -0500, Antoine Beaupré wrote: On 2016-02-04 11:56:50, Vincent Blut wrote: Hey Antoine, On 2016-01-30 15:16:49, Antoine Beaupré wrote: >> On 2016-01-28 17:27:41, Vincent Blut wrote: >>> On Thu, Jan 28, 2016 at 09:23:01PM +0100, Guid

Re: squeeze update of chrony?

2016-02-08 Thread Vincent Blut
On Fri, Feb 05, 2016 at 04:17:00AM +0100, Paul Gevers wrote: Hi Vincent, Hello Paul, On 05-02-16 01:56, Vincent Blut wrote: +chrony (1.24-3+squeeze3) squeeze-lts; urgency=medium + + * Fix CVE-2016-1567: retrict authentication of server/peer + to specified key I

Re: squeeze update of chrony?

2016-02-10 Thread Vincent Blut
On Tue, Feb 09, 2016 at 08:50:19AM +0100, Paul Gevers wrote: Hi Vincent, Hey, On 08-02-16 18:23, Vincent Blut wrote: That’s the plan, yes. By the way, I’ll contact you in the next few days to review 2.2.1-1 which is mostly ready. Ok. Please be aware that I might not be able to act on the

Re: squeeze update of chrony?

2016-02-11 Thread Vincent Blut
On Thu, Feb 11, 2016 at 02:02:52PM -0500, Antoine Beaupré wrote: On 2016-02-10 17:33:37, Vincent Blut wrote: Ok, it’s done. Please could you review and eventually upload if everything is good for you? Note that the concerned branch is *squeeze-lts* and the chrony-1.24 upstream tarball is in a