b35f73
Summary: A utility for getting files from remote servers (FTP, HTTP, and others)
b35f73
Name: curl
b35f73
Version: 7.61.1
507538
Release: 30%{?dist}
b35f73
License: MIT
b35f73
Source: https://curl.haxx.se/download/%{name}-%{version}.tar.xz
b35f73
b35f73
# test320: update expected output for gnutls-3.6.4
b35f73
Patch1:   0001-curl-7.61.1-test320-gnutls.patch
b35f73
b35f73
# update the documentation of --tlsv1.0 in curl(1) man page (#1620217)
b35f73
Patch2:   0002-curl-7.61.1-tlsv1.0-man.patch
b35f73
b35f73
# enable TLS 1.3 post-handshake auth in OpenSSL (#1636900)
b35f73
Patch3:   0003-curl-7.61.1-TLS-1.3-PHA.patch
b35f73
b35f73
# fix bad arethmetic when outputting warnings to stderr (CVE-2018-16842)
b35f73
Patch4:   0004-curl-7.61.1-CVE-2018-16842.patch
b35f73
# we need `git apply` to apply this patch
b35f73
BuildRequires: git
b35f73
b35f73
# fix use-after-free in handle close (CVE-2018-16840)
b35f73
Patch5:   0005-curl-7.61.1-CVE-2018-16840.patch
b35f73
b35f73
# SASL password overflow via integer overflow (CVE-2018-16839)
b35f73
Patch6:   0006-curl-7.61.1-CVE-2018-16839.patch
b35f73
b35f73
# curl -J: do not append to the destination file (#1660827)
b35f73
Patch7:   0007-curl-7.63.0-JO-preserve-local-file.patch
b35f73
b35f73
# xattr: strip credentials from any URL that is stored (CVE-2018-20483)
b35f73
Patch8:   0008-curl-7.61.1-CVE-2018-20483.patch
b35f73
b35f73
# fix NTLM type-2 out-of-bounds buffer read (CVE-2018-16890)
b35f73
Patch9:   0009-curl-7.61.1-CVE-2018-16890.patch
b35f73
b35f73
# fix NTLMv2 type-3 header stack buffer overflow (CVE-2019-3822)
b35f73
Patch10:  0010-curl-7.61.1-CVE-2019-3822.patch
b35f73
b35f73
# fix SMTP end-of-response out-of-bounds read (CVE-2019-3823)
b35f73
Patch11:  0011-curl-7.61.1-CVE-2019-3823.patch
b35f73
b35f73
# do not let libssh create a new socket for SCP/SFTP (#1669156)
b35f73
Patch14:  0014-curl-7.61.1-libssh-socket.patch
b35f73
b35f73
# fix TFTP receive buffer overflow (CVE-2019-5436)
b35f73
Patch17:  0017-curl-7.64.0-CVE-2019-5436.patch
b35f73
b35f73
# fix heap buffer overflow in function tftp_receive_packet() (CVE-2019-5482)
b35f73
Patch18:  0018-curl-7.65.3-CVE-2019-5482.patch
b35f73
b35f73
# double free due to subsequent call of realloc() (CVE-2019-5481)
b35f73
Patch19:  0019-curl-7.65.3-CVE-2019-5481.patch
b35f73
f01274
# load built-in openssl engines (#1854369)
f01274
Patch20:  0020-curl-7.61.1-openssl-engines.patch
f01274
36ebb2
# avoid overwriting a local file with -J (CVE-2020-8177)
36ebb2
Patch21:  0021-curl-7.61.1-CVE-2020-8177.patch
36ebb2
e88b99
# libcurl: wrong connect-only connection (CVE-2020-8231)
e88b99
Patch22:  0022-curl-7.61.1-CVE-2020-8231.patch
e88b99
e88b99
# do not crash when HTTPS_PROXY and NO_PROXY are used together (#1873327)
e88b99
Patch23:  0023-curl-7.61.1-no-https-proxy-crash.patch
e88b99
5d52fc
# validate an ssl connection using an intermediate certificate (#1895355)
5d52fc
Patch24:  0024-curl-7.61.1-openssl-partial-chain.patch
5d52fc
1a95c1
# curl: trusting FTP PASV responses (CVE-2020-8284)
1a95c1
Patch25:  0025-curl-7.61.1-CVE-2020-8284.patch
1a95c1
1a95c1
# libcurl: FTP wildcard stack overflow (CVE-2020-8285)
1a95c1
Patch26:  0026-curl-7.61.1-CVE-2020-8285.patch
1a95c1
1a95c1
# curl: Inferior OCSP verification (CVE-2020-8286)
1a95c1
Patch27:  0027-curl-7.61.1-CVE-2020-8286.patch
1a95c1
1a95c1
# http: send payload when (proxy) authentication is done (#1918692)
1a95c1
Patch28:  0028-curl-7.61.1-http-auth-payload.patch
1a95c1
1f2d5c
# prevent automatic referer from leaking credentials (CVE-2021-22876)
1f2d5c
Patch29:  0029-curl-7.61.1-CVE-2021-22876.patch
1f2d5c
1f2d5c
# make `curl --head file://` work as expected (#1947493)
1f2d5c
Patch30:  0030-curl-7.61.1-file-head.patch
1f2d5c
3ed160
# fix bad connection reuse due to flawed path name checks (CVE-2021-22924)
3ed160
Patch31:  0031-curl-7.61.1-CVE-2021-22924.patch
3ed160
1f2d5c
# fix TELNET stack contents disclosure (CVE-2021-22898)
1f2d5c
Patch32:  0032-curl-7.61.1-CVE-2021-22898.patch
1f2d5c
1f2d5c
# fix TELNET stack contents disclosure again (CVE-2021-22925)
1f2d5c
Patch33:  0033-curl-7.61.1-CVE-2021-22925.patch
1f2d5c
72211f
# fix protocol downgrade required TLS bypass (CVE-2021-22946)
72211f
Patch34:  0034-curl-7.61.1-CVE-2021-22946.patch
72211f
72211f
# fix STARTTLS protocol injection via MITM (CVE-2021-22947)
72211f
Patch35:  0035-curl-7.61.1-CVE-2021-22947.patch
72211f
01238a
# fix OAUTH2 bearer bypass in connection re-use (CVE-2022-22576)
01238a
Patch36:  0036-curl-7.61.1-CVE-2022-22576.patch
01238a
01238a
# fix auth/cookie leak on redirect (CVE-2022-27776)
01238a
Patch37:  0037-curl-7.61.1-CVE-2022-27776.patch
01238a
01238a
# fix credential leak on redirect (CVE-2022-27774)
01238a
Patch38:  0038-curl-7.61.1-CVE-2022-27774.patch
01238a
07e41b
# fix too eager reuse of TLS and SSH connections (CVE-2022-27782)
07e41b
Patch39:  0039-curl-7.61.1-CVE-2022-27782.patch
07e41b
11c65b
# fix FTP-KRB bad message verification (CVE-2022-32208)
11c65b
Patch40:  0040-curl-7.61.1-CVE-2022-32208.patch
11c65b
11c65b
# fix HTTP compression denial of service (CVE-2022-32206)
11c65b
Patch41:  0041-curl-7.61.1-CVE-2022-32206.patch
11c65b
11c65b
# setopt: enable CURLOPT_SSH_KNOWNHOSTS and CURLOPT_SSH_KEYFUNCTION (#2063703)
11c65b
Patch42:  0042-curl-7.61.1-ssh-known-hosts.patch
11c65b
ce20cb
# control code in cookie denial of service (CVE-2022-35252)
ce20cb
Patch43:  0043-curl-7.61.1-CVE-2022-35252.patch
ce20cb
f9145b
# upon HTTP_1_1_REQUIRED, retry the request with HTTP/1.1 (#2139337)
f9145b
Patch44:  0044-curl-7.61.1-retry-http11.patch
f9145b
c4f73d
# smb/telnet: fix use-after-free when HTTP proxy denies tunnel (CVE-2022-43552)
c4f73d
Patch45:  0045-curl-7.61.1-CVE-2022-43552.patch
c4f73d
26aa3b
# h2: lower initial window size to 32 MiB (#2166254)
26aa3b
Patch46:  0046-curl-7.61.1-h2-window-size.patch
26aa3b
507538
# fix HTTP multi-header compression denial of service (CVE-2023-23916)
507538
Patch47:  0047-curl-7.61.1-CVE-2023-23916.patch
507538
b35f73
# patch making libcurl multilib ready
b35f73
Patch101: 0101-curl-7.32.0-multilib.patch
b35f73
b35f73
# prevent configure script from discarding -g in CFLAGS (#496778)
b35f73
Patch102: 0102-curl-7.36.0-debug.patch
b35f73
b35f73
# migrate tests/http_pipe.py to Python 3
b35f73
Patch103: 0103-curl-7.59.0-python3.patch
b35f73
b35f73
# use localhost6 instead of ip6-localhost in the curl test-suite
b35f73
Patch104: 0104-curl-7.19.7-localhost6.patch
b35f73
1a95c1
# tests: do not hard-wire ports of test servers
1a95c1
Patch105: 0105-curl-7.61.1-test-ports.patch
1a95c1
b35f73
Provides: curl-full = %{version}-%{release}
b35f73
Provides: webclient
b35f73
URL: https://curl.haxx.se/
b35f73
BuildRequires: automake
b35f73
BuildRequires: brotli-devel
b35f73
BuildRequires: coreutils
b35f73
BuildRequires: gcc
b35f73
BuildRequires: groff
b35f73
BuildRequires: krb5-devel
b35f73
BuildRequires: libidn2-devel
b35f73
BuildRequires: libnghttp2-devel
b35f73
BuildRequires: libpsl-devel
b35f73
BuildRequires: libssh-devel
b35f73
BuildRequires: make
b35f73
BuildRequires: openldap-devel
b35f73
BuildRequires: openssh-clients
b35f73
BuildRequires: openssh-server
b35f73
BuildRequires: openssl-devel
b35f73
BuildRequires: pkgconfig
b35f73
BuildRequires: python3-devel
b35f73
BuildRequires: sed
b35f73
BuildRequires: stunnel
b35f73
BuildRequires: zlib-devel
b35f73
b35f73
# needed to compress content of tool_hugehelp.c after changing curl.1 man page
b35f73
BuildRequires: perl(IO::Compress::Gzip)
b35f73
b35f73
# gnutls-serv is used by the upstream test-suite
b35f73
BuildRequires: gnutls-utils
b35f73
b35f73
# nghttpx (an HTTP/2 proxy) is used by the upstream test-suite
b35f73
BuildRequires: nghttp2
b35f73
b35f73
# perl modules used in the test suite
b35f73
BuildRequires: perl(Cwd)
b35f73
BuildRequires: perl(Digest::MD5)
b35f73
BuildRequires: perl(Exporter)
b35f73
BuildRequires: perl(File::Basename)
b35f73
BuildRequires: perl(File::Copy)
b35f73
BuildRequires: perl(File::Spec)
b35f73
BuildRequires: perl(IPC::Open2)
b35f73
BuildRequires: perl(MIME::Base64)
b35f73
BuildRequires: perl(strict)
b35f73
BuildRequires: perl(Time::Local)
b35f73
BuildRequires: perl(Time::HiRes)
b35f73
BuildRequires: perl(warnings)
b35f73
BuildRequires: perl(vars)
b35f73
b35f73
# The test-suite runs automatically through valgrind if valgrind is available
b35f73
# on the system.  By not installing valgrind into mock's chroot, we disable
b35f73
# this feature for production builds on architectures where valgrind is known
b35f73
# to be less reliable, in order to avoid unnecessary build failures (see RHBZ
b35f73
# #810992, #816175, and #886891).  Nevertheless developers are free to install
b35f73
# valgrind manually to improve test coverage on any architecture.
b35f73
%ifarch x86_64 %{ix86}
b35f73
BuildRequires: valgrind
b35f73
%endif
b35f73
b35f73
# using an older version of libcurl could result in CURLE_UNKNOWN_OPTION
b35f73
Requires: libcurl%{?_isa} >= %{version}-%{release}
b35f73
b35f73
# require at least the version of libpsl that we were built against,
b35f73
# to ensure that we have the necessary symbols available (#1631804)
b35f73
%global libpsl_version %(pkg-config --modversion libpsl 2>/dev/null || echo 0)
b35f73
b35f73
# require at least the version of libssh that we were built against,
b35f73
# to ensure that we have the necessary symbols available (#525002, #642796)
b35f73
%global libssh_version %(pkg-config --modversion libssh 2>/dev/null || echo 0)
b35f73
b35f73
# require at least the version of openssl-libs that we were built against,
b35f73
# to ensure that we have the necessary symbols available (#1462184, #1462211)
b35f73
%global openssl_version %(pkg-config --modversion openssl 2>/dev/null || echo 0)
b35f73
b35f73
%description
b35f73
curl is a command line tool for transferring data with URL syntax, supporting
b35f73
FTP, FTPS, HTTP, HTTPS, SCP, SFTP, TFTP, TELNET, DICT, LDAP, LDAPS, FILE, IMAP,
b35f73
SMTP, POP3 and RTSP.  curl supports SSL certificates, HTTP POST, HTTP PUT, FTP
b35f73
uploading, HTTP form based upload, proxies, cookies, user+password
b35f73
authentication (Basic, Digest, NTLM, Negotiate, kerberos...), file transfer
b35f73
resume, proxy tunneling and a busload of other useful tricks. 
b35f73
b35f73
%package -n libcurl
b35f73
Summary: A library for getting files from web servers
b35f73
Requires: libpsl%{?_isa} >= %{libpsl_version}
b35f73
Requires: libssh%{?_isa} >= %{libssh_version}
b35f73
Requires: openssl-libs%{?_isa} >= 1:%{openssl_version}
b35f73
Provides: libcurl-full = %{version}-%{release}
b35f73
Provides: libcurl-full%{?_isa} = %{version}-%{release}
b35f73
b35f73
%description -n libcurl
b35f73
libcurl is a free and easy-to-use client-side URL transfer library, supporting
b35f73
FTP, FTPS, HTTP, HTTPS, SCP, SFTP, TFTP, TELNET, DICT, LDAP, LDAPS, FILE, IMAP,
b35f73
SMTP, POP3 and RTSP. libcurl supports SSL certificates, HTTP POST, HTTP PUT,
b35f73
FTP uploading, HTTP form based upload, proxies, cookies, user+password
b35f73
authentication (Basic, Digest, NTLM, Negotiate, Kerberos4), file transfer
b35f73
resume, http proxy tunneling and more.
b35f73
b35f73
%package -n libcurl-devel
b35f73
Summary: Files needed for building applications with libcurl
b35f73
Requires: libcurl%{?_isa} = %{version}-%{release}
b35f73
b35f73
Provides: curl-devel = %{version}-%{release}
b35f73
Provides: curl-devel%{?_isa} = %{version}-%{release}
b35f73
Obsoletes: curl-devel < %{version}-%{release}
b35f73
b35f73
%description -n libcurl-devel
b35f73
The libcurl-devel package includes header files and libraries necessary for
b35f73
developing programs which use the libcurl library. It contains the API
b35f73
documentation of the library, too.
b35f73
b35f73
%package -n curl-minimal
b35f73
Summary: Conservatively configured build of curl for minimal installations
b35f73
Provides: curl = %{version}-%{release}
b35f73
Conflicts: curl
b35f73
RemovePathPostfixes: .minimal
b35f73
b35f73
# using an older version of libcurl could result in CURLE_UNKNOWN_OPTION
b35f73
Requires: libcurl%{?_isa} >= %{version}-%{release}
b35f73
b35f73
%description -n curl-minimal
b35f73
This is a replacement of the 'curl' package for minimal installations.  It
b35f73
comes with a limited set of features compared to the 'curl' package.  On the
b35f73
other hand, the package is smaller and requires fewer run-time dependencies to
b35f73
be installed.
b35f73
b35f73
%package -n libcurl-minimal
b35f73
Summary: Conservatively configured build of libcurl for minimal installations
b35f73
Requires: openssl-libs%{?_isa} >= 1:%{openssl_version}
b35f73
Provides: libcurl = %{version}-%{release}
b35f73
Provides: libcurl%{?_isa} = %{version}-%{release}
d0f424
Conflicts: libcurl%{?_isa}
b35f73
RemovePathPostfixes: .minimal
b35f73
# needed for RemovePathPostfixes to work with shared libraries
b35f73
%undefine __brp_ldconfig
b35f73
b35f73
%description -n libcurl-minimal
b35f73
This is a replacement of the 'libcurl' package for minimal installations.  It
b35f73
comes with a limited set of features compared to the 'libcurl' package.  On the
b35f73
other hand, the package is smaller and requires fewer run-time dependencies to
b35f73
be installed.
b35f73
b35f73
%prep
b35f73
%setup -q
b35f73
b35f73
# upstream patches
b35f73
%patch1 -p1
b35f73
%patch2 -p1
b35f73
%patch3 -p1
b35f73
git init
b35f73
git apply %{PATCH4}
b35f73
%patch5 -p1
b35f73
%patch6 -p1
b35f73
%patch7 -p1
b35f73
%patch8 -p1
b35f73
%patch9 -p1
b35f73
%patch10 -p1
b35f73
%patch11 -p1
b35f73
%patch14 -p1
b35f73
b35f73
# Fedora patches
b35f73
%patch101 -p1
b35f73
%patch102 -p1
b35f73
%patch103 -p1
b35f73
%patch104 -p1
b35f73
1a95c1
# use different port range for 32bit and 64bit builds, thus make it possible
1a95c1
# to run both the builds in parallel on the same machine
1a95c1
%patch105 -p1
1a95c1
sed -e 's|%%HTTPPORT|%{?__isa_bits}90|g' -i tests/data/test1448
1a95c1
b35f73
# upstream patches
b35f73
%patch17 -p1
b35f73
%patch18 -p1
b35f73
%patch19 -p1
f01274
%patch20 -p1
36ebb2
%patch21 -p1
e88b99
%patch22 -p1
e88b99
%patch23 -p1
5d52fc
%patch24 -p1
1a95c1
%patch25 -p1
1a95c1
%patch26 -p1
1a95c1
%patch27 -p1
1a95c1
%patch28 -p1
1f2d5c
%patch29 -p1
1f2d5c
%patch30 -p1
3ed160
%patch31 -p1
1f2d5c
%patch32 -p1
1f2d5c
%patch33 -p1
72211f
%patch34 -p1
72211f
%patch35 -p1
01238a
%patch36 -p1
01238a
%patch37 -p1
01238a
01238a
%patch38 -p1
01238a
sed -e 's|:8992/|:%{?__isa_bits}92/|g' -i tests/data/test97{3..6}
b35f73
07e41b
%patch39 -p1
11c65b
%patch40 -p1
11c65b
%patch41 -p1
11c65b
%patch42 -p1
ce20cb
%patch43 -p1
f9145b
%patch44 -p1
c4f73d
%patch45 -p1
26aa3b
%patch46 -p1
507538
%patch47 -p1
07e41b
b35f73
# make tests/*.py use Python 3
b35f73
sed -e '1 s|^#!/.*python|#!%{__python3}|' -i tests/*.py
b35f73
b35f73
# regenerate Makefile.in files
b35f73
aclocal -I m4
b35f73
automake
b35f73
b35f73
# disable test 1112 (#565305), test 1455 (occasionally fails with 'bind failed
b35f73
# with errno 98: Address already in use' in Koji environment), and test 1801
b35f73
# <https://github.com/bagder/curl/commit/21e82bd6#commitcomment-12226582>
b35f73
# and test 1900, which is flaky and covers a deprecated feature of libcurl
b35f73
# <https://github.com/curl/curl/pull/2705>
b35f73
printf "1112\n1455\n1801\n1900\n" >> tests/data/DISABLED
b35f73
b35f73
# disable test 1319 on ppc64 (server times out)
b35f73
%ifarch ppc64
b35f73
echo "1319" >> tests/data/DISABLED
b35f73
%endif
b35f73
b35f73
# temporarily disable test 582 on s390x (client times out)
b35f73
%ifarch s390x
b35f73
echo "582" >> tests/data/DISABLED
b35f73
%endif
b35f73
b35f73
# adapt test 323 for updated OpenSSL
b35f73
sed -e 's/^35$/35,52/' -i tests/data/test323
b35f73
b35f73
%build
b35f73
mkdir build-{full,minimal}
b35f73
export common_configure_opts=" \
b35f73
    --cache-file=../config.cache \
b35f73
    --disable-static \
b35f73
    --enable-symbol-hiding \
b35f73
    --enable-ipv6 \
b35f73
    --enable-threaded-resolver \
3ed160
    --without-libmetalink \
b35f73
    --with-gssapi \
b35f73
    --with-nghttp2 \
b35f73
    --with-ssl --with-ca-bundle=%{_sysconfdir}/pki/tls/certs/ca-bundle.crt"
b35f73
b35f73
%global _configure ../configure
b35f73
b35f73
# configure minimal build
b35f73
(
b35f73
    cd build-minimal
b35f73
    %configure $common_configure_opts \
b35f73
        --disable-ldap \
b35f73
        --disable-ldaps \
b35f73
        --disable-manual \
b35f73
        --without-brotli \
b35f73
        --without-libidn2 \
b35f73
        --without-libpsl \
b35f73
        --without-libssh
b35f73
)
b35f73
b35f73
# configure full build
b35f73
(
b35f73
    cd build-full
b35f73
    %configure $common_configure_opts \
b35f73
        --enable-ldap \
b35f73
        --enable-ldaps \
b35f73
        --enable-manual \
b35f73
        --with-brotli \
b35f73
        --with-libidn2 \
b35f73
        --with-libpsl \
b35f73
        --with-libssh
b35f73
)
b35f73
b35f73
# avoid using rpath
b35f73
sed -e 's/^runpath_var=.*/runpath_var=/' \
b35f73
    -e 's/^hardcode_libdir_flag_spec=".*"$/hardcode_libdir_flag_spec=""/' \
b35f73
    -i build-{full,minimal}/libtool
b35f73
b35f73
make %{?_smp_mflags} V=1 -C build-minimal
b35f73
make %{?_smp_mflags} V=1 -C build-full
b35f73
b35f73
%check
b35f73
# we have to override LD_LIBRARY_PATH because we eliminated rpath
b35f73
LD_LIBRARY_PATH="$RPM_BUILD_ROOT%{_libdir}:$LD_LIBRARY_PATH"
b35f73
export LD_LIBRARY_PATH
b35f73
b35f73
# compile upstream test-cases
b35f73
cd build-full/tests
b35f73
make %{?_smp_mflags} V=1
b35f73
b35f73
# relax crypto policy for the test-suite to make it pass again (#1611712)
b35f73
export OPENSSL_SYSTEM_CIPHERS_OVERRIDE=XXX
b35f73
export OPENSSL_CONF=
b35f73
b35f73
# run the upstream test-suite
1a95c1
# use different port range for 32bit and 64bit builds, thus make it possible
1a95c1
# to run both the builds in parallel on the same machine
1a95c1
export srcdir=../../tests
1a95c1
perl -I${srcdir} ${srcdir}/runtests.pl -b%{?__isa_bits}90 -a -p -v '!flaky'
b35f73
b35f73
%install
b35f73
# install and rename the library that will be packaged as libcurl-minimal
b35f73
make DESTDIR=$RPM_BUILD_ROOT INSTALL="install -p" install -C build-minimal/lib
b35f73
rm -f ${RPM_BUILD_ROOT}%{_libdir}/libcurl.{la,so}
b35f73
for i in ${RPM_BUILD_ROOT}%{_libdir}/*; do
b35f73
    mv -v $i $i.minimal
b35f73
done
b35f73
b35f73
# install and rename the executable that will be packaged as curl-minimal
b35f73
make DESTDIR=$RPM_BUILD_ROOT INSTALL="install -p" install -C build-minimal/src
b35f73
mv -v ${RPM_BUILD_ROOT}%{_bindir}/curl{,.minimal}
b35f73
b35f73
# install libcurl.m4
b35f73
install -d $RPM_BUILD_ROOT%{_datadir}/aclocal
b35f73
install -m 644 docs/libcurl/libcurl.m4 $RPM_BUILD_ROOT%{_datadir}/aclocal
b35f73
b35f73
# install the executable and library that will be packaged as curl and libcurl
b35f73
cd build-full
b35f73
make DESTDIR=$RPM_BUILD_ROOT INSTALL="install -p" install
b35f73
b35f73
# install zsh completion for curl
b35f73
# (we have to override LD_LIBRARY_PATH because we eliminated rpath)
b35f73
LD_LIBRARY_PATH="$RPM_BUILD_ROOT%{_libdir}:$LD_LIBRARY_PATH" \
b35f73
    make DESTDIR=$RPM_BUILD_ROOT INSTALL="install -p" install -C scripts
b35f73
b35f73
rm -f ${RPM_BUILD_ROOT}%{_libdir}/libcurl.la
b35f73
b35f73
%ldconfig_scriptlets -n libcurl
b35f73
b35f73
%ldconfig_scriptlets -n libcurl-minimal
b35f73
b35f73
%files
b35f73
%doc CHANGES README*
b35f73
%doc docs/BUGS docs/FAQ docs/FEATURES
b35f73
%doc docs/MANUAL docs/RESOURCES
b35f73
%doc docs/TheArtOfHttpScripting docs/TODO
b35f73
%{_bindir}/curl
b35f73
%{_mandir}/man1/curl.1*
b35f73
%{_datadir}/zsh/site-functions
b35f73
b35f73
%files -n libcurl
b35f73
%license COPYING
b35f73
%{_libdir}/libcurl.so.4
b35f73
%{_libdir}/libcurl.so.4.[0-9].[0-9]
b35f73
b35f73
%files -n libcurl-devel
b35f73
%doc docs/examples/*.c docs/examples/Makefile.example docs/INTERNALS.md
b35f73
%doc docs/CONTRIBUTE.md docs/libcurl/ABI
b35f73
%{_bindir}/curl-config*
b35f73
%{_includedir}/curl
b35f73
%{_libdir}/*.so
b35f73
%{_libdir}/pkgconfig/*.pc
b35f73
%{_mandir}/man1/curl-config.1*
b35f73
%{_mandir}/man3/*
b35f73
%{_datadir}/aclocal/libcurl.m4
b35f73
b35f73
%files -n curl-minimal
b35f73
%{_bindir}/curl.minimal
b35f73
%{_mandir}/man1/curl.1*
b35f73
b35f73
%files -n libcurl-minimal
b35f73
%license COPYING
b35f73
%{_libdir}/libcurl.so.4.minimal
b35f73
%{_libdir}/libcurl.so.4.[0-9].[0-9].minimal
b35f73
b35f73
%changelog
507538
* Wed Feb 15 2023 Kamil Dudka <kdudka@redhat.com> - 7.61.1-30
507538
- fix HTTP multi-header compression denial of service (CVE-2023-23916)
507538
26aa3b
* Tue Feb 07 2023 Kamil Dudka <kdudka@redhat.com> - 7.61.1-29
26aa3b
- h2: lower initial window size to 32 MiB (#2166254)
26aa3b
c4f73d
* Wed Dec 21 2022 Kamil Dudka <kdudka@redhat.com> - 7.61.1-28
c4f73d
- smb/telnet: fix use-after-free when HTTP proxy denies tunnel (CVE-2022-43552)
c4f73d
f9145b
* Fri Nov 18 2022 Kamil Dudka <kdudka@redhat.com> - 7.61.1-27
f9145b
- upon HTTP_1_1_REQUIRED, retry the request with HTTP/1.1 (#2139337)
f9145b
ce20cb
* Fri Sep 02 2022 Kamil Dudka <kdudka@redhat.com> - 7.61.1-26
ce20cb
- control code in cookie denial of service (CVE-2022-35252)
ce20cb
11c65b
* Wed Jun 29 2022 Kamil Dudka <kdudka@redhat.com> - 7.61.1-25
11c65b
- setopt: enable CURLOPT_SSH_KNOWNHOSTS and CURLOPT_SSH_KEYFUNCTION (#2063703)
11c65b
- fix HTTP compression denial of service (CVE-2022-32206)
11c65b
- fix FTP-KRB bad message verification (CVE-2022-32208)
07e41b
11c65b
* Wed May 11 2022 Kamil Dudka <kdudka@redhat.com> - 7.61.1-24
11c65b
- fix too eager reuse of TLS and SSH connections (CVE-2022-27782)
01238a
- fix invalid type in printf() argument detected by Coverity
01238a
11c65b
* Thu Apr 28 2022 Kamil Dudka <kdudka@redhat.com> - 7.61.1-23
01238a
- fix credential leak on redirect (CVE-2022-27774)
01238a
- fix auth/cookie leak on redirect (CVE-2022-27776)
01238a
- fix OAUTH2 bearer bypass in connection re-use (CVE-2022-22576)
01238a
72211f
* Fri Sep 17 2021 Kamil Dudka <kdudka@redhat.com> - 7.61.1-22
72211f
- fix STARTTLS protocol injection via MITM (CVE-2021-22947)
72211f
- fix protocol downgrade required TLS bypass (CVE-2021-22946)
72211f
1f2d5c
* Thu Aug 05 2021 Kamil Dudka <kdudka@redhat.com> - 7.61.1-21
1f2d5c
- fix TELNET stack contents disclosure again (CVE-2021-22925)
1f2d5c
- fix TELNET stack contents disclosure (CVE-2021-22898)
3ed160
- fix bad connection reuse due to flawed path name checks (CVE-2021-22924)
3ed160
- disable metalink support to fix the following vulnerabilities
3ed160
    CVE-2021-22923 - metalink download sends credentials
3ed160
    CVE-2021-22922 - wrong content via metalink not discarded
3ed160
1f2d5c
* Fri Apr 23 2021 Kamil Dudka <kdudka@redhat.com> - 7.61.1-20
1f2d5c
- fix a cppcheck's false positive in 0029-curl-7.61.1-CVE-2021-22876.patch
1f2d5c
1f2d5c
* Fri Apr 23 2021 Kamil Dudka <kdudka@redhat.com> - 7.61.1-19
1f2d5c
- make `curl --head file://` work as expected (#1947493)
1f2d5c
- prevent automatic referer from leaking credentials (CVE-2021-22876)
1f2d5c
1a95c1
* Thu Jan 28 2021 Kamil Dudka <kdudka@redhat.com> - 7.61.1-18
1a95c1
- http: send payload when (proxy) authentication is done (#1918692)
1a95c1
- curl: Inferior OCSP verification (CVE-2020-8286)
1a95c1
- libcurl: FTP wildcard stack overflow (CVE-2020-8285)
1a95c1
- curl: trusting FTP PASV responses (CVE-2020-8284)
1a95c1
5d52fc
* Thu Nov 12 2020 Kamil Dudka <kdudka@redhat.com> - 7.61.1-17
5d52fc
- validate an ssl connection using an intermediate certificate (#1895355)
5d52fc
d0f424
* Fri Nov 06 2020 Kamil Dudka <kdudka@redhat.com> - 7.61.1-16
d0f424
- fix multiarch conflicts in libcurl-minimal (#1895391)
d0f424
e88b99
* Tue Nov 03 2020 Kamil Dudka <kdudka@redhat.com> - 7.61.1-15
e88b99
- do not crash when HTTPS_PROXY and NO_PROXY are used together (#1873327)
e88b99
- libcurl: wrong connect-only connection (CVE-2020-8231)
e88b99
36ebb2
* Tue Jul 28 2020 Kamil Dudka <kdudka@redhat.com> - 7.61.1-14
36ebb2
- avoid overwriting a local file with -J (CVE-2020-8177)
36ebb2
f01274
* Wed Jul 15 2020 Kamil Dudka <kdudka@redhat.com> - 7.61.1-13
f01274
- load built-in openssl engines (#1854369)
f01274
b35f73
* Wed Sep 11 2019 Kamil Dudka <kdudka@redhat.com> - 7.61.1-12
b35f73
- double free due to subsequent call of realloc() (CVE-2019-5481)
b35f73
- fix heap buffer overflow in function tftp_receive_packet() (CVE-2019-5482)
b35f73
- fix TFTP receive buffer overflow (CVE-2019-5436)
b35f73
b35f73
* Mon May 13 2019 Kamil Dudka <kdudka@redhat.com> - 7.61.1-11
b35f73
- rebuild with updated annobin to prevent Execshield RPMDiff check from failing
b35f73
b35f73
* Fri May 10 2019 Kamil Dudka <kdudka@redhat.com> - 7.61.1-10
b35f73
- fix SMTP end-of-response out-of-bounds read (CVE-2019-3823)
b35f73
- fix NTLMv2 type-3 header stack buffer overflow (CVE-2019-3822)
b35f73
- fix NTLM type-2 out-of-bounds buffer read (CVE-2018-16890)
b35f73
- xattr: strip credentials from any URL that is stored (CVE-2018-20483)
b35f73
b35f73
* Mon Feb 18 2019 Kamil Dudka <kdudka@redhat.com> - 7.61.1-9
b35f73
- do not let libssh create a new socket for SCP/SFTP (#1669156)
b35f73
b35f73
* Fri Jan 11 2019 Kamil Dudka <kdudka@redhat.com> - 7.61.1-8
b35f73
- curl -J: do not append to the destination file (#1660827)
b35f73
b35f73
* Thu Nov 15 2018 Kamil Dudka <kdudka@redhat.com> - 7.61.1-7
b35f73
- make the patch for CVE-2018-16842 apply properly (CVE-2018-16842)
b35f73
b35f73
* Mon Nov 05 2018 Kamil Dudka <kdudka@redhat.com> - 7.61.1-6
b35f73
- SASL password overflow via integer overflow (CVE-2018-16839)
b35f73
- fix use-after-free in handle close (CVE-2018-16840)
b35f73
- fix bad arethmetic when outputting warnings to stderr (CVE-2018-16842)
b35f73
b35f73
* Thu Oct 11 2018 Kamil Dudka <kdudka@redhat.com> - 7.61.1-5
b35f73
- enable TLS 1.3 post-handshake auth in OpenSSL (#1636900)
b35f73
b35f73
* Mon Oct 08 2018 Kamil Dudka <kdudka@redhat.com> - 7.61.1-4
b35f73
- make the built-in manual compressed again (#1620217)
b35f73
b35f73
* Mon Oct 08 2018 Kamil Dudka <kdudka@redhat.com> - 7.61.1-3
b35f73
- update the documentation of --tlsv1.0 in curl(1) man page (#1620217)
b35f73
b35f73
* Thu Oct 04 2018 Kamil Dudka <kdudka@redhat.com> - 7.61.1-2
b35f73
- enforce versioned libpsl dependency for libcurl (#1631804)
b35f73
b35f73
* Thu Oct 04 2018 Kamil Dudka <kdudka@redhat.com> - 7.61.1-1
b35f73
- test320: update expected output for gnutls-3.6.4
b35f73
- new upstream release (#1625677)
b35f73
b35f73
* Thu Aug 09 2018 Kamil Dudka <kdudka@redhat.com> - 7.61.0-5
b35f73
- ssl: set engine implicitly when a PKCS#11 URI is provided (#1219544)
b35f73
b35f73
* Tue Aug 07 2018 Kamil Dudka <kdudka@redhat.com> - 7.61.0-4
b35f73
- relax crypto policy for the test-suite to make it pass again (#1611712)
b35f73
b35f73
* Tue Jul 31 2018 Kamil Dudka <kdudka@redhat.com> - 7.61.0-3
b35f73
- disable flaky test 1900, which covers deprecated HTTP pipelining
b35f73
- adapt test 323 for updated OpenSSL
b35f73
b35f73
* Tue Jul 17 2018 Kamil Dudka <kdudka@redhat.com> - 7.61.0-2
b35f73
- rebuild against against brotli-1.0.5
b35f73
b35f73
* Wed Jul 11 2018 Kamil Dudka <kdudka@redhat.com> - 7.61.0-1
b35f73
- new upstream release, which fixes the following vulnerability
b35f73
    CVE-2018-0500 - SMTP send heap buffer overflow
b35f73
b35f73
* Tue Jul 10 2018 Kamil Dudka <kdudka@redhat.com> - 7.60.0-3
b35f73
- enable support for brotli compression in libcurl-full
b35f73
b35f73
* Wed Jul 04 2018 Kamil Dudka <kdudka@redhat.com> - 7.60.0-2
b35f73
- do not hard-wire path of the Python 3 interpreter
b35f73
b35f73
* Wed May 16 2018 Kamil Dudka <kdudka@redhat.com> - 7.60.0-1
b35f73
- new upstream release, which fixes the following vulnerabilities
b35f73
    CVE-2018-1000300 - FTP shutdown response buffer overflow
b35f73
    CVE-2018-1000301 - RTSP bad headers buffer over-read
b35f73
b35f73
* Thu Mar 15 2018 Kamil Dudka <kdudka@redhat.com> - 7.59.0-3
b35f73
- make the test-suite use Python 3
b35f73
b35f73
* Wed Mar 14 2018 Kamil Dudka <kdudka@redhat.com> - 7.59.0-2
b35f73
- ftp: fix typo in recursive callback detection for seeking
b35f73
b35f73
* Wed Mar 14 2018 Kamil Dudka <kdudka@redhat.com> - 7.59.0-1
b35f73
- new upstream release, which fixes the following vulnerabilities
b35f73
    CVE-2018-1000120 - FTP path trickery leads to NIL byte out of bounds write
b35f73
    CVE-2018-1000121 - LDAP NULL pointer dereference
b35f73
    CVE-2018-1000122 - RTSP RTP buffer over-read
b35f73
b35f73
* Mon Mar 12 2018 Kamil Dudka <kdudka@redhat.com> - 7.58.0-8
b35f73
- http2: mark the connection for close on GOAWAY
b35f73
b35f73
* Mon Feb 19 2018 Paul Howarth <paul@city-fan.org> - 7.58.0-7
b35f73
- Add explicity-used build requirements
b35f73
- Fix libcurl soname version number in %%files list to avoid accidental soname
b35f73
  bumps
b35f73
b35f73
* Thu Feb 15 2018 Paul Howarth <paul@city-fan.org> - 7.58.0-6
b35f73
- switch to %%ldconfig_scriptlets
b35f73
- drop legacy BuildRoot: and Group: tags
b35f73
- enforce versioned libssh dependency for libcurl
b35f73
b35f73
* Tue Feb 13 2018 Kamil Dudka <kdudka@redhat.com> - 7.58.0-5
b35f73
- drop temporary workaround for #1540549
b35f73
b35f73
* Wed Feb 07 2018 Fedora Release Engineering <releng@fedoraproject.org> - 7.58.0-4
b35f73
- Rebuilt for https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild
b35f73
b35f73
* Wed Jan 31 2018 Kamil Dudka <kdudka@redhat.com> - 7.58.0-3
b35f73
- temporarily work around internal compiler error on x86_64 (#1540549)
b35f73
- disable brp-ldconfig to make RemovePathPostfixes work with shared libs again
b35f73
b35f73
* Wed Jan 24 2018 Andreas Schneider <asn@redhat.com> - 7.58.0-2
b35f73
- use libssh (instead of libssh2) to implement SCP/SFTP in libcurl (#1531483)
b35f73
b35f73
* Wed Jan 24 2018 Kamil Dudka <kdudka@redhat.com> - 7.58.0-1
b35f73
- new upstream release, which fixes the following vulnerabilities
b35f73
    CVE-2018-1000005 - curl: HTTP/2 trailer out-of-bounds read
b35f73
    CVE-2018-1000007 - curl: HTTP authentication leak in redirects
b35f73
b35f73
* Wed Nov 29 2017 Kamil Dudka <kdudka@redhat.com> - 7.57.0-1
b35f73
- new upstream release, which fixes the following vulnerabilities
b35f73
    CVE-2017-8816 - curl: NTLM buffer overflow via integer overflow
b35f73
    CVE-2017-8817 - curl: FTP wildcard out of bounds read
b35f73
    CVE-2017-8818 - curl: SSL out of buffer access
b35f73
b35f73
* Mon Oct 23 2017 Kamil Dudka <kdudka@redhat.com> - 7.56.1-1
b35f73
- new upstream release (fixes CVE-2017-1000257)
b35f73
b35f73
* Wed Oct 04 2017 Kamil Dudka <kdudka@redhat.com> - 7.56.0-1
b35f73
- new upstream release (fixes CVE-2017-1000254)
b35f73
b35f73
* Mon Aug 28 2017 Kamil Dudka <kdudka@redhat.com> - 7.55.1-5
b35f73
- apply the patch for the previous commit and fix its name (#1485702)
b35f73
b35f73
* Mon Aug 28 2017 Bastien Nocera <bnocera@redhat.com> - 7.55.1-4
b35f73
- Fix NetworkManager connectivity check not working (#1485702)
b35f73
b35f73
* Tue Aug 22 2017 Kamil Dudka <kdudka@redhat.com> 7.55.1-3
b35f73
- utilize system wide crypto policies for TLS (#1483972)
b35f73
b35f73
* Tue Aug 15 2017 Kamil Dudka <kdudka@redhat.com> 7.55.1-2
b35f73
- make zsh completion work again
b35f73
b35f73
* Mon Aug 14 2017 Kamil Dudka <kdudka@redhat.com> 7.55.1-1
b35f73
- new upstream release
b35f73
b35f73
* Wed Aug 09 2017 Kamil Dudka <kdudka@redhat.com> 7.55.0-1
b35f73
- drop multilib fix for libcurl header files no longer needed
b35f73
- new upstream release, which fixes the following vulnerabilities
b35f73
    CVE-2017-1000099 - FILE buffer read out of bounds
b35f73
    CVE-2017-1000100 - TFTP sends more than buffer size
b35f73
    CVE-2017-1000101 - URL globbing out of bounds read
b35f73
b35f73
* Wed Aug 02 2017 Fedora Release Engineering <releng@fedoraproject.org> - 7.54.1-8
b35f73
- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Binutils_Mass_Rebuild
b35f73
b35f73
* Fri Jul 28 2017 Florian Weimer <fweimer@redhat.com> - 7.54.1-7
b35f73
- Rebuild with fixed binutils (#1475636)
b35f73
b35f73
* Fri Jul 28 2017 Igor Gnatenko <ignatenkobrain@fedoraproject.org> - 7.54.1-6
b35f73
- Enable separate debuginfo back
b35f73
b35f73
* Thu Jul 27 2017 Kamil Dudka <kdudka@redhat.com> 7.54.1-5
b35f73
- rebuild to fix broken linkage of cmake on ppc64le
b35f73
b35f73
* Wed Jul 26 2017 Kamil Dudka <kdudka@redhat.com> 7.54.1-4
b35f73
- avoid build failure caused broken RPM code that produces debuginfo packages
b35f73
b35f73
* Wed Jul 26 2017 Fedora Release Engineering <releng@fedoraproject.org> - 7.54.1-3
b35f73
- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild
b35f73
b35f73
* Mon Jun 19 2017 Kamil Dudka <kdudka@redhat.com> 7.54.1-2
b35f73
- enforce versioned openssl-libs dependency for libcurl (#1462184)
b35f73
b35f73
* Wed Jun 14 2017 Kamil Dudka <kdudka@redhat.com> 7.54.1-1
b35f73
- new upstream release
b35f73
b35f73
* Tue May 16 2017 Kamil Dudka <kdudka@redhat.com> 7.54.0-5
b35f73
- add *-full provides for curl and libcurl to make them explicitly installable
b35f73
b35f73
* Thu May 04 2017 Kamil Dudka <kdudka@redhat.com> 7.54.0-4
b35f73
- make curl-minimal require a new enough version of libcurl
b35f73
b35f73
* Thu Apr 27 2017 Kamil Dudka <kdudka@redhat.com> 7.54.0-3
b35f73
- switch the TLS backend back to OpenSSL (#1445153)
b35f73
b35f73
* Tue Apr 25 2017 Kamil Dudka <kdudka@redhat.com> 7.54.0-2
b35f73
- nss: use libnssckbi.so as the default source of trust
b35f73
- nss: do not leak PKCS #11 slot while loading a key (#1444860)
b35f73
b35f73
* Thu Apr 20 2017 Kamil Dudka <kdudka@redhat.com> 7.54.0-1
b35f73
- new upstream release (fixes CVE-2017-7468)
b35f73
b35f73
* Thu Apr 13 2017 Paul Howarth <paul@city-fan.org> 7.53.1-7
b35f73
- add %%post and %%postun scriptlets for libcurl-minimal
b35f73
- libcurl-minimal provides both libcurl and libcurl%%{?_isa}
b35f73
- remove some legacy spec file cruft
b35f73
b35f73
* Wed Apr 12 2017 Kamil Dudka <kdudka@redhat.com> 7.53.1-6
b35f73
- provide (lib)curl-minimal subpackages with lightweight build of (lib)curl
b35f73
b35f73
* Mon Apr 10 2017 Kamil Dudka <kdudka@redhat.com> 7.53.1-5
b35f73
- disable upstream test 2033 (flaky test for HTTP/1 pipelining)
b35f73
b35f73
* Fri Apr 07 2017 Kamil Dudka <kdudka@redhat.com> 7.53.1-4
b35f73
- fix out of bounds read in curl --write-out (CVE-2017-7407)
b35f73
b35f73
* Mon Mar 06 2017 Kamil Dudka <kdudka@redhat.com> 7.53.1-3
b35f73
- make the dependency on nss-pem arch-specific (#1428550)
b35f73
b35f73
* Thu Mar 02 2017 Kamil Dudka <kdudka@redhat.com> 7.53.1-2
b35f73
- re-enable valgrind on ix86 because sqlite is fixed (#1428286)
b35f73
b35f73
* Fri Feb 24 2017 Kamil Dudka <kdudka@redhat.com> 7.53.1-1
b35f73
- new upstream release
b35f73
b35f73
* Wed Feb 22 2017 Kamil Dudka <kdudka@redhat.com> 7.53.0-1
b35f73
- do not use valgrind on ix86 until sqlite is rebuilt by patched GCC (#1423434)
b35f73
- new upstream release (fixes CVE-2017-2629)
b35f73
b35f73
* Fri Feb 10 2017 Fedora Release Engineering <releng@fedoraproject.org> - 7.52.1-2
b35f73
- Rebuilt for https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild
b35f73
b35f73
* Fri Dec 23 2016 Kamil Dudka <kdudka@redhat.com> 7.52.1-1
b35f73
- new upstream release (fixes CVE-2016-9586)
b35f73
b35f73
* Mon Nov 21 2016 Kamil Dudka <kdudka@redhat.com> 7.51.0-3
b35f73
- map CURL_SSLVERSION_DEFAULT to NSS default, add support for TLS 1.3 (#1396719)
b35f73
b35f73
* Tue Nov 15 2016 Kamil Dudka <kdudka@redhat.com> 7.51.0-2
b35f73
- stricter host name checking for file:// URLs
b35f73
- ssh: check md5 fingerprints case insensitively
b35f73
b35f73
* Wed Nov 02 2016 Kamil Dudka <kdudka@redhat.com> 7.51.0-1
b35f73
- temporarily disable failing libidn2 test-cases
b35f73
- new upstream release, which fixes the following vulnerabilities
b35f73
    CVE-2016-8615 - Cookie injection for other servers
b35f73
    CVE-2016-8616 - Case insensitive password comparison
b35f73
    CVE-2016-8617 - Out-of-bounds write via unchecked multiplication
b35f73
    CVE-2016-8618 - Double-free in curl_maprintf
b35f73
    CVE-2016-8619 - Double-free in krb5 code
b35f73
    CVE-2016-8620 - Glob parser write/read out of bounds
b35f73
    CVE-2016-8621 - curl_getdate out-of-bounds read
b35f73
    CVE-2016-8622 - URL unescape heap overflow via integer truncation
b35f73
    CVE-2016-8623 - Use-after-free via shared cookies
b35f73
    CVE-2016-8624 - Invalid URL parsing with '#'
b35f73
    CVE-2016-8625 - IDNA 2003 makes curl use wrong host
b35f73
b35f73
* Thu Oct 20 2016 Kamil Dudka <kdudka@redhat.com> 7.50.3-3
b35f73
- drop 0103-curl-7.50.0-stunnel.patch no longer needed
b35f73
b35f73
* Fri Oct 07 2016 Kamil Dudka <kdudka@redhat.com> 7.50.3-2
b35f73
- use the just built version of libcurl while generating zsh completion
b35f73
b35f73
* Wed Sep 14 2016 Kamil Dudka <kdudka@redhat.com> 7.50.3-1
b35f73
- new upstream release (fixes CVE-2016-7167)
b35f73
b35f73
* Wed Sep 07 2016 Kamil Dudka <kdudka@redhat.com> 7.50.2-1
b35f73
- new upstream release
b35f73
b35f73
* Fri Aug 26 2016 Kamil Dudka <kdudka@redhat.com> 7.50.1-2
b35f73
- work around race condition in PK11_FindSlotByName()
b35f73
- fix incorrect use of a previously loaded certificate from file
b35f73
  (related to CVE-2016-5420)
b35f73
b35f73
* Wed Aug 03 2016 Kamil Dudka <kdudka@redhat.com> 7.50.1-1
b35f73
- new upstream release (fixes CVE-2016-5419, CVE-2016-5420, and CVE-2016-5421)
b35f73
b35f73
* Tue Jul 26 2016 Kamil Dudka <kdudka@redhat.com> 7.50.0-2
b35f73
- run HTTP/2 tests on all architectures (#1360319 now worked around in nghttp2)
b35f73
b35f73
* Thu Jul 21 2016 Kamil Dudka <kdudka@redhat.com> 7.50.0-1
b35f73
- run HTTP/2 tests only on Intel for now to work around #1358845
b35f73
- require nss-pem because it is no longer included in the nss package (#1347336)
b35f73
- fix HTTPS and FTPS tests (work around stunnel bug #1358810)
b35f73
- new upstream release
b35f73
b35f73
* Fri Jun 17 2016 Kamil Dudka <kdudka@redhat.com> 7.49.1-3
b35f73
- use multilib-rpm-config to install arch-dependent header files
b35f73
b35f73
* Fri Jun 03 2016 Kamil Dudka <kdudka@redhat.com> 7.49.1-2
b35f73
- fix SIGSEGV of the curl tool while parsing URL with too many globs (#1340757)
b35f73
b35f73
* Mon May 30 2016 Kamil Dudka <kdudka@redhat.com> 7.49.1-1
b35f73
- new upstream release
b35f73
b35f73
* Wed May 18 2016 Kamil Dudka <kdudka@redhat.com> 7.49.0-1
b35f73
- new upstream release
b35f73
b35f73
* Wed Mar 23 2016 Kamil Dudka <kdudka@redhat.com> 7.48.0-1
b35f73
- new upstream release
b35f73
b35f73
* Wed Mar 02 2016 Kamil Dudka <kdudka@redhat.com> 7.47.1-4
b35f73
- do not refuse cookies for localhost (#1308791)
b35f73
b35f73
* Wed Feb 17 2016 Kamil Dudka <kdudka@redhat.com> 7.47.1-3
b35f73
- make SCP and SFTP test-cases work with up2date OpenSSH
b35f73
b35f73
* Wed Feb 10 2016 Kamil Dudka <kdudka@redhat.com> 7.47.1-2
b35f73
- enable support for Public Suffix List (#1305701)
b35f73
b35f73
* Mon Feb 08 2016 Kamil Dudka <kdudka@redhat.com> 7.47.1-1
b35f73
- new upstream release
b35f73
b35f73
* Wed Feb 03 2016 Fedora Release Engineering <releng@fedoraproject.org> - 7.47.0-2
b35f73
- Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild
b35f73
b35f73
* Wed Jan 27 2016 Kamil Dudka <kdudka@redhat.com> 7.47.0-1
b35f73
- new upstream release (fixes CVE-2016-0755)
b35f73
b35f73
* Fri Dec  4 2015 Kamil Dudka <kdudka@redhat.com> 7.46.0-2
b35f73
- own /usr/share/zsh/site-functions instead of requiring zsh (#1288529)
b35f73
b35f73
* Wed Dec  2 2015 Kamil Dudka <kdudka@redhat.com> 7.46.0-1
b35f73
- disable silent builds (suggested by Paul Howarth)
b35f73
- use default port numbers when running the upstream test-suite
b35f73
- install zsh completion script
b35f73
- new upstream release
b35f73
b35f73
* Wed Oct  7 2015 Paul Howarth <paul@city-fan.org> 7.45.0-1
b35f73
- new upstream release
b35f73
- drop %%defattr, redundant since rpm 4.4
b35f73
b35f73
* Fri Sep 18 2015 Kamil Dudka <kdudka@redhat.com> 7.44.0-2
b35f73
- prevent NSS from incorrectly re-using a session (#1104597)
b35f73
b35f73
* Wed Aug 12 2015 Kamil Dudka <kdudka@redhat.com> 7.44.0-1
b35f73
- new upstream release
b35f73
b35f73
* Thu Jul 30 2015 Kamil Dudka <kdudka@redhat.com> 7.43.0-3
b35f73
- prevent dnf from crashing when using both FTP and HTTP (#1248389)
b35f73
b35f73
* Thu Jul 16 2015 Kamil Dudka <kdudka@redhat.com> 7.43.0-2
b35f73
- build support for the HTTP/2 protocol
b35f73
b35f73
* Wed Jun 17 2015 Kamil Dudka <kdudka@redhat.com> 7.43.0-1
b35f73
- new upstream release (fixes CVE-2015-3236 and CVE-2015-3237)
b35f73
b35f73
* Wed Jun 17 2015 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 7.42.1-3
b35f73
- Rebuilt for https://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild
b35f73
b35f73
* Fri Jun 05 2015 Kamil Dudka <kdudka@redhat.com> 7.42.1-2
b35f73
- curl-config --libs now works on x86_64 without libcurl-devel.x86_64 (#1228363)
b35f73
b35f73
* Wed Apr 29 2015 Kamil Dudka <kdudka@redhat.com> 7.42.1-1
b35f73
- new upstream release (fixes CVE-2015-3153)
b35f73
b35f73
* Wed Apr 22 2015 Kamil Dudka <kdudka@redhat.com> 7.42.0-1
b35f73
- new upstream release (fixes CVE-2015-3143, CVE-2015-3144, CVE-2015-3145,
b35f73
  and CVE-2015-3148)
b35f73
- implement public key pinning for NSS backend (#1195771)
b35f73
- do not run flaky test-cases in %%check
b35f73
b35f73
* Wed Feb 25 2015 Kamil Dudka <kdudka@redhat.com> 7.41.0-1
b35f73
- new upstream release
b35f73
- include extern-scan.pl to make test1135 succeed (upstream commit 1514b718)
b35f73
b35f73
* Mon Feb 23 2015 Kamil Dudka <kdudka@redhat.com> 7.40.0-3
b35f73
- fix a spurious connect failure on dual-stacked hosts (#1187531)
b35f73
b35f73
* Sat Feb 21 2015 Till Maas <opensource@till.name> - 7.40.0-2
b35f73
- Rebuilt for Fedora 23 Change
b35f73
  https://fedoraproject.org/wiki/Changes/Harden_all_packages_with_position-independent_code
b35f73
b35f73
* Thu Jan 08 2015 Kamil Dudka <kdudka@redhat.com> 7.40.0-1
b35f73
- new upstream release (fixes CVE-2014-8150)
b35f73
b35f73
* Wed Nov 05 2014 Kamil Dudka <kdudka@redhat.com> 7.39.0-1
b35f73
- new upstream release (fixes CVE-2014-3707)
b35f73
b35f73
* Tue Oct 21 2014 Kamil Dudka <kdudka@redhat.com> 7.38.0-2
b35f73
- fix a connection failure when FTPS handle is reused
b35f73
b35f73
* Wed Sep 10 2014 Kamil Dudka <kdudka@redhat.com> 7.38.0-1
b35f73
- new upstream release (fixes CVE-2014-3613 and CVE-2014-3620)
b35f73
b35f73
* Sat Aug 16 2014 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 7.37.1-3
b35f73
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild
b35f73
b35f73
* Wed Aug 13 2014 Rex Dieter <rdieter@fedoraproject.org> 7.37.1-2
b35f73
- include arch'd Requires/Provides
b35f73
b35f73
* Wed Jul 16 2014 Kamil Dudka <kdudka@redhat.com> 7.37.1-1
b35f73
- new upstream release
b35f73
- fix endless loop with GSSAPI proxy auth (patches by David Woodhouse, #1118751)
b35f73
b35f73
* Fri Jul 11 2014 Tom Callaway <spot@fedoraproject.org> 7.37.0-4
b35f73
- fix license handling
b35f73
b35f73
* Fri Jul 04 2014 Kamil Dudka <kdudka@redhat.com> 7.37.0-3
b35f73
- various SSL-related fixes (mainly crash on connection failure)
b35f73
b35f73
* Sat Jun 07 2014 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 7.37.0-2
b35f73
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
b35f73
b35f73
* Wed May 21 2014 Kamil Dudka <kdudka@redhat.com> 7.37.0-1
b35f73
- new upstream release
b35f73
b35f73
* Fri May 09 2014 Kamil Dudka <kdudka@redhat.com> 7.36.0-4
b35f73
- auth failure on duplicated 'WWW-Authenticate: Negotiate' header (#1093348)
b35f73
b35f73
* Fri Apr 25 2014 Kamil Dudka <kdudka@redhat.com> 7.36.0-3
b35f73
- nss: implement non-blocking SSL handshake
b35f73
b35f73
* Wed Apr 02 2014 Kamil Dudka <kdudka@redhat.com> 7.36.0-2
b35f73
- extend URL parser to support IPv6 zone identifiers (#680996)
b35f73
b35f73
* Wed Mar 26 2014 Kamil Dudka <kdudka@redhat.com> 7.36.0-1
b35f73
- new upstream release (fixes CVE-2014-0138)
b35f73
b35f73
* Mon Mar 17 2014 Paul Howarth <paul@city-fan.org> 7.35.0-5
b35f73
- add all perl build requirements for the test suite, in a portable way
b35f73
b35f73
* Mon Mar 17 2014 Kamil Dudka <kdudka@redhat.com> 7.35.0-4
b35f73
- add BR for perl-Digest-MD5, which is required by the test-suite
b35f73
b35f73
* Wed Mar 05 2014 Kamil Dudka <kdudka@redhat.com> 7.35.0-3
b35f73
- avoid spurious failure of test1086 on s390(x) koji builders (#1072273)
b35f73
b35f73
* Tue Feb 25 2014 Kamil Dudka <kdudka@redhat.com> 7.35.0-2
b35f73
- refresh expired cookie in test172 from upstream test-suite (#1068967)
b35f73
b35f73
* Wed Jan 29 2014 Kamil Dudka <kdudka@redhat.com> 7.35.0-1
b35f73
- new upstream release (fixes CVE-2014-0015)
b35f73
b35f73
* Wed Dec 18 2013 Kamil Dudka <kdudka@redhat.com> 7.34.0-1
b35f73
- new upstream release
b35f73
b35f73
* Mon Dec 02 2013 Kamil Dudka <kdudka@redhat.com> 7.33.0-2
b35f73
- allow to use TLS > 1.0 if built against recent NSS
b35f73
b35f73
* Mon Oct 14 2013 Kamil Dudka <kdudka@redhat.com> 7.33.0-1
b35f73
- new upstream release
b35f73
- fix missing initialization in NTLM code causing test 906 to fail
b35f73
- fix missing initialization in SSH code causing test 619 to fail
b35f73
b35f73
* Fri Oct 11 2013 Kamil Dudka <kdudka@redhat.com> 7.32.0-3
b35f73
- do not limit the speed of SCP upload on a fast connection
b35f73
b35f73
* Mon Sep 09 2013 Kamil Dudka <kdudka@redhat.com> 7.32.0-2
b35f73
- avoid delay if FTP is aborted in CURLOPT_HEADERFUNCTION callback (#1005686)
b35f73
b35f73
* Mon Aug 12 2013 Kamil Dudka <kdudka@redhat.com> 7.32.0-1
b35f73
- new upstream release
b35f73
- make sure that NSS is initialized prior to calling PK11_GenerateRandom()
b35f73
b35f73
* Sat Aug 03 2013 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 7.31.0-5
b35f73
- Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild
b35f73
b35f73
* Tue Jul 09 2013 Kamil Dudka <kdudka@redaht.com> 7.31.0-4
b35f73
- mention all option listed in 'curl --help' in curl.1 man page
b35f73
b35f73
* Tue Jul 02 2013 Kamil Dudka <kdudka@redhat.com> 7.31.0-3
b35f73
- restore the functionality of 'curl -u :'
b35f73
b35f73
* Wed Jun 26 2013 Kamil Dudka <kdudka@redhat.com> 7.31.0-2
b35f73
- build the curl tool with metalink support
b35f73
b35f73
* Sat Jun 22 2013 Kamil Dudka <kdudka@redhat.com> 7.31.0-1
b35f73
- new upstream release (fixes CVE-2013-2174)
b35f73
b35f73
* Fri Apr 26 2013 Kamil Dudka <kdudka@redhat.com> 7.30.0-2
b35f73
- prevent an artificial timeout event due to stale speed-check data (#906031)
b35f73
b35f73
* Fri Apr 12 2013 Kamil Dudka <kdudka@redhat.com> 7.30.0-1
b35f73
- new upstream release (fixes CVE-2013-1944)
b35f73
- prevent test-suite failure due to using non-default port ranges in tests
b35f73
b35f73
* Tue Mar 12 2013 Kamil Dudka <kdudka@redhat.com> 7.29.0-4
b35f73
- do not ignore poll() failures other than EINTR (#919127)
b35f73
- curl_global_init() now accepts the CURL_GLOBAL_ACK_EINTR flag (#919127)
b35f73
b35f73
* Wed Mar 06 2013 Kamil Dudka <kdudka@redhat.com> 7.29.0-3
b35f73
- switch SSL socket into non-blocking mode after handshake
b35f73
- drop the hide_selinux.c hack no longer needed in %%check
b35f73
b35f73
* Fri Feb 22 2013 Kamil Dudka <kdudka@redhat.com> 7.29.0-2
b35f73
- fix a SIGSEGV when closing an unused multi handle (#914411)
b35f73
b35f73
* Wed Feb 06 2013 Kamil Dudka <kdudka@redhat.com> 7.29.0-1
b35f73
- new upstream release (fixes CVE-2013-0249)
b35f73
b35f73
* Tue Jan 15 2013 Kamil Dudka <kdudka@redhat.com> 7.28.1-3
b35f73
- require valgrind for build only on i386 and x86_64 (#886891)
b35f73
b35f73
* Tue Jan 15 2013 Kamil Dudka <kdudka@redhat.com> 7.28.1-2
b35f73
- prevent NSS from crashing on client auth hook failure
b35f73
- clear session cache if a client cert from file is used
b35f73
- fix error messages for CURLE_SSL_{CACERT,CRL}_BADFILE
b35f73
b35f73
* Tue Nov 20 2012 Kamil Dudka <kdudka@redhat.com> 7.28.1-1
b35f73
- new upstream release
b35f73
b35f73
* Wed Oct 31 2012 Kamil Dudka <kdudka@redhat.com> 7.28.0-1
b35f73
- new upstream release
b35f73
b35f73
* Mon Oct 01 2012 Kamil Dudka <kdudka@redhat.com> 7.27.0-3
b35f73
- use the upstream facility to disable problematic tests
b35f73
- do not crash if MD5 fingerprint is not provided by libssh2
b35f73
b35f73
* Wed Aug 01 2012 Kamil Dudka <kdudka@redhat.com> 7.27.0-2
b35f73
- eliminate unnecessary inotify events on upload via file protocol (#844385)
b35f73
b35f73
* Sat Jul 28 2012 Kamil Dudka <kdudka@redhat.com> 7.27.0-1
b35f73
- new upstream release
b35f73
b35f73
* Mon Jul 23 2012 Kamil Dudka <kdudka@redhat.com> 7.26.0-6
b35f73
- print reason phrase from HTTP status line on error (#676596)
b35f73
b35f73
* Wed Jul 18 2012 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 7.26.0-5
b35f73
- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild
b35f73
b35f73
* Sat Jun 09 2012 Kamil Dudka <kdudka@redhat.com> 7.26.0-4
b35f73
- fix duplicated SSL handshake with multi interface and proxy (#788526)
b35f73
b35f73
* Wed May 30 2012 Karsten Hopp <karsten@redhat.com> 7.26.0-3
b35f73
- disable test 1319 on ppc64, server times out
b35f73
b35f73
* Mon May 28 2012 Kamil Dudka <kdudka@redhat.com> 7.26.0-2
b35f73
- use human-readable error messages provided by NSS (upstream commit 72f4b534)
b35f73
b35f73
* Fri May 25 2012 Kamil Dudka <kdudka@redhat.com> 7.26.0-1
b35f73
- new upstream release
b35f73
b35f73
* Wed Apr 25 2012 Karsten Hopp <karsten@redhat.com> 7.25.0-3
b35f73
- valgrind on ppc64 works fine, disable ppc32 only
b35f73
b35f73
* Wed Apr 25 2012 Karsten Hopp <karsten@redhat.com> 7.25.0-3
b35f73
- drop BR valgrind on PPC(64) until bugzilla #810992 gets fixed
b35f73
b35f73
* Fri Apr 13 2012 Kamil Dudka <kdudka@redhat.com> 7.25.0-2
b35f73
- use NSS_InitContext() to initialize NSS if available (#738456)
b35f73
- provide human-readable names for NSS errors (upstream commit a60edcc6)
b35f73
b35f73
* Fri Mar 23 2012 Paul Howarth <paul@city-fan.org> 7.25.0-1
b35f73
- new upstream release (#806264)
b35f73
- fix character encoding of docs with a patch rather than just iconv
b35f73
- update debug and multilib patches
b35f73
- don't use macros for commands
b35f73
- reduce size of %%prep output for readability
b35f73
b35f73
* Tue Jan 24 2012 Kamil Dudka <kdudka@redhat.com> 7.24.0-1
b35f73
- new upstream release (fixes CVE-2012-0036)
b35f73
b35f73
* Thu Jan 05 2012 Paul Howarth <paul@city-fan.org> 7.23.0-6
b35f73
- rebuild for gcc 4.7
b35f73
b35f73
* Mon Jan 02 2012 Kamil Dudka <kdudka@redhat.com> 7.23.0-5
b35f73
- upstream patch that allows to run FTPS tests with nss-3.13 (#760060)
b35f73
b35f73
* Tue Dec 27 2011 Kamil Dudka <kdudka@redhat.com> 7.23.0-4
b35f73
- allow to run FTPS tests with nss-3.13 (#760060)
b35f73
b35f73
* Sun Dec 25 2011 Kamil Dudka <kdudka@redhat.com> 7.23.0-3
b35f73
- avoid unnecessary timeout event when waiting for 100-continue (#767490)
b35f73
b35f73
* Mon Nov 21 2011 Kamil Dudka <kdudka@redhat.com> 7.23.0-2
b35f73
- curl -JO now uses -O name if no C-D header comes (upstream commit c532604)
b35f73
b35f73
* Wed Nov 16 2011 Kamil Dudka <kdudka@redhat.com> 7.23.0-1
b35f73
- new upstream release (#754391)
b35f73
b35f73
* Mon Sep 19 2011 Kamil Dudka <kdudka@redhat.com> 7.22.0-2
b35f73
- nss: select client certificates by DER (#733657)
b35f73
b35f73
* Tue Sep 13 2011 Kamil Dudka <kdudka@redhat.com> 7.22.0-1
b35f73
- new upstream release
b35f73
- curl-config now provides dummy --static-libs option (#733956)
b35f73
b35f73
* Sun Aug 21 2011 Paul Howarth <paul@city-fan.org> 7.21.7-4
b35f73
- actually fix SIGSEGV of curl -O -J given more than one URL (#723075)
b35f73
b35f73
* Mon Aug 15 2011 Kamil Dudka <kdudka@redhat.com> 7.21.7-3
b35f73
- fix SIGSEGV of curl -O -J given more than one URL (#723075)
b35f73
- introduce the --delegation option of curl (#730444)
b35f73
- initialize NSS with no database if the selected database is broken (#728562)
b35f73
b35f73
* Wed Aug 03 2011 Kamil Dudka <kdudka@redhat.com> 7.21.7-2
b35f73
- add a new option CURLOPT_GSSAPI_DELEGATION (#719939)
b35f73
b35f73
* Thu Jun 23 2011 Kamil Dudka <kdudka@redhat.com> 7.21.7-1
b35f73
- new upstream release (fixes CVE-2011-2192)
b35f73
b35f73
* Wed Jun 08 2011 Kamil Dudka <kdudka@redhat.com> 7.21.6-2
b35f73
- avoid an invalid timeout event on a reused handle (#679709)
b35f73
b35f73
* Sat Apr 23 2011 Paul Howarth <paul@city-fan.org> 7.21.6-1
b35f73
- new upstream release
b35f73
b35f73
* Mon Apr 18 2011 Kamil Dudka <kdudka@redhat.com> 7.21.5-2
b35f73
- fix the output of curl-config --version (upstream commit 82ecc85)
b35f73
b35f73
* Mon Apr 18 2011 Kamil Dudka <kdudka@redhat.com> 7.21.5-1
b35f73
- new upstream release
b35f73
b35f73
* Sat Apr 16 2011 Peter Robinson <pbrobinson@gmail.com> 7.21.4-4
b35f73
- no valgrind on ARMv5 arches
b35f73
b35f73
* Sat Mar 05 2011 Dennis Gilmore <dennis@ausil.us> 7.21.4-3
b35f73
- no valgrind on sparc arches
b35f73
b35f73
* Tue Feb 22 2011 Kamil Dudka <kdudka@redhat.com> 7.21.4-2
b35f73
- do not ignore failure of SSL handshake (upstream commit 7aa2d10)
b35f73
b35f73
* Fri Feb 18 2011 Kamil Dudka <kdudka@redhat.com> 7.21.4-1
b35f73
- new upstream release
b35f73
- avoid memory leak on SSL connection failure (upstream commit a40f58d)
b35f73
- work around valgrind bug (#678518)
b35f73
b35f73
* Tue Feb 08 2011 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 7.21.3-3
b35f73
- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild
b35f73
b35f73
* Wed Jan 12 2011 Kamil Dudka <kdudka@redhat.com> 7.21.3-2
b35f73
- build libcurl with --enable-hidden-symbols
b35f73
b35f73
* Thu Dec 16 2010 Paul Howarth <paul@city-fan.org> 7.21.3-1
b35f73
- update to 7.21.3:
b35f73
  - added --noconfigure switch to testcurl.pl
b35f73
  - added --xattr option
b35f73
  - added CURLOPT_RESOLVE and --resolve
b35f73
  - added CURLAUTH_ONLY
b35f73
  - added version-check.pl to the examples dir
b35f73
  - check for libcurl features for some command line options
b35f73
  - Curl_setopt: disallow CURLOPT_USE_SSL without SSL support
b35f73
  - http_chunks: remove debug output
b35f73
  - URL-parsing: consider ? a divider
b35f73
  - SSH: avoid using the libssh2_ prefix
b35f73
  - SSH: use libssh2_session_handshake() to work on win64
b35f73
  - ftp: prevent server from hanging on closed data connection when stopping
b35f73
    a transfer before the end of the full transfer (ranges)
b35f73
  - LDAP: detect non-binary attributes properly
b35f73
  - ftp: treat server's response 421 as CURLE_OPERATION_TIMEDOUT
b35f73
  - gnutls->handshake: improved timeout handling
b35f73
  - security: pass the right parameter to init
b35f73
  - krb5: use GSS_ERROR to check for error
b35f73
  - TFTP: resend the correct data
b35f73
  - configure: fix autoconf 2.68 warning: no AC_LANG_SOURCE call detected
b35f73
  - GnuTLS: now detects socket errors on Windows
b35f73
  - symbols-in-versions: updated en masse
b35f73
  - added a couple of examples that were missing from the tarball
b35f73
  - Curl_send/recv_plain: return errno on failure
b35f73
  - Curl_wait_for_resolv (for c-ares): correct timeout
b35f73
  - ossl_connect_common: detect connection re-use
b35f73
  - configure: prevent link errors with --librtmp
b35f73
  - openldap: use remote port in URL passed to ldap_init_fd()
b35f73
  - url: provide dead_connection flag in Curl_handler::disconnect
b35f73
  - lots of compiler warning fixes
b35f73
  - ssh: fix a download resume point calculation
b35f73
  - fix getinfo CURLINFO_LOCAL* for reused connections
b35f73
  - multi: the returned running handles counter could turn negative
b35f73
  - multi: only ever consider pipelining for connections doing HTTP(S)
b35f73
- drop upstream patches now in tarball
b35f73
- update bz650255 and disable-test1112 patches to apply against new codebase
b35f73
- add workaround for false-positive glibc-detected buffer overflow in tftpd
b35f73
  test server with FORTIFY_SOURCE (similar to #515361)
b35f73
b35f73
* Fri Nov 12 2010 Kamil Dudka <kdudka@redhat.com> 7.21.2-5
b35f73
- do not send QUIT to a dead FTP control connection (#650255)
b35f73
- pull back glibc's implementation of str[n]casecmp(), #626470 appears fixed
b35f73
b35f73
* Tue Nov 09 2010 Kamil Dudka <kdudka@redhat.com> 7.21.2-4
b35f73
- prevent FTP client from hanging on unrecognized ABOR response (#649347)
b35f73
- return more appropriate error code in case FTP server session idle
b35f73
  timeout has exceeded (#650255)
b35f73
b35f73
* Fri Oct 29 2010 Kamil Dudka <kdudka@redhat.com> 7.21.2-3
b35f73
- prevent FTP server from hanging on closed data connection (#643656)
b35f73
b35f73
* Thu Oct 14 2010 Paul Howarth <paul@city-fan.org> 7.21.2-2
b35f73
- enforce versioned libssh2 dependency for libcurl (#642796)
b35f73
b35f73
* Wed Oct 13 2010 Kamil Dudka <kdudka@redhat.com> 7.21.2-1
b35f73
- new upstream release, drop applied patches
b35f73
- make 0102-curl-7.21.2-debug.patch less intrusive
b35f73
b35f73
* Wed Sep 29 2010 jkeating - 7.21.1-6
b35f73
- Rebuilt for gcc bug 634757
b35f73
b35f73
* Sat Sep 11 2010 Kamil Dudka <kdudka@redhat.com> 7.21.1-5
b35f73
- make it possible to run SCP/SFTP tests on x86_64 (#632914)
b35f73
b35f73
* Tue Sep 07 2010 Kamil Dudka <kdudka@redhat.com> 7.21.1-4
b35f73
- work around glibc/valgrind problem on x86_64 (#631449)
b35f73
b35f73
* Tue Aug 24 2010 Paul Howarth <paul@city-fan.org> 7.21.1-3
b35f73
- fix up patches so there's no need to run autotools in the rpm build
b35f73
- drop buildreq automake
b35f73
- drop dependency on automake for devel package from F-14, where
b35f73
  %%{_datadir}/aclocal is included in the filesystem package
b35f73
- drop dependency on pkgconfig for devel package from F-11, where
b35f73
  pkgconfig dependencies are auto-generated
b35f73
b35f73
* Mon Aug 23 2010 Kamil Dudka <kdudka@redhat.com> 7.21.1-2
b35f73
- re-enable test575 on s390(x), already fixed (upstream commit d63bdba)
b35f73
- modify system headers to work around gcc bug (#617757)
b35f73
- curl -T now ignores file size of special files (#622520)
b35f73
- fix kerberos proxy authentication for https (#625676)
b35f73
- work around glibc/valgrind problem on x86_64 (#626470)
b35f73
b35f73
* Thu Aug 12 2010 Kamil Dudka <kdudka@redhat.com> 7.21.1-1
b35f73
- new upstream release
b35f73
b35f73
* Mon Jul 12 2010 Dan Horák <dan[at]danny.cz> 7.21.0-3
b35f73
- disable test 575 on s390(x)
b35f73
b35f73
* Mon Jun 28 2010 Kamil Dudka <kdudka@redhat.com> 7.21.0-2
b35f73
- add support for NTLM authentication (#603783)
b35f73
b35f73
* Wed Jun 16 2010 Kamil Dudka <kdudka@redhat.com> 7.21.0-1
b35f73
- new upstream release, drop applied patches
b35f73
- update of %%description
b35f73
- disable valgrind for certain test-cases (libssh2 problem)
b35f73
b35f73
* Tue May 25 2010 Kamil Dudka <kdudka@redhat.com> 7.20.1-6
b35f73
- fix -J/--remote-header-name to strip CR-LF (upstream patch)
b35f73
b35f73
* Wed Apr 28 2010 Kamil Dudka <kdudka@redhat.com> 7.20.1-5
b35f73
- CRL support now works again (#581926)
b35f73
- make it possible to start a testing OpenSSH server when building with SELinux
b35f73
  in the enforcing mode (#521087)
b35f73
b35f73
* Sat Apr 24 2010 Kamil Dudka <kdudka@redhat.com> 7.20.1-4
b35f73
- upstream patch preventing failure of test536 with threaded DNS resolver
b35f73
- upstream patch preventing SSL handshake timeout underflow
b35f73
b35f73
* Thu Apr 22 2010 Paul Howarth <paul@city-fan.org> 7.20.1-3
b35f73
- replace Rawhide s390-sleep patch with a more targeted patch adding a
b35f73
  delay after tests 513 and 514 rather than after all tests
b35f73
b35f73
* Wed Apr 21 2010 Kamil Dudka <kdudka@redhat.com> 7.20.1-2
b35f73
- experimentally enabled threaded DNS lookup
b35f73
- make curl-config multilib ready again (#584107)
b35f73
b35f73
* Mon Apr 19 2010 Kamil Dudka <kdudka@redhat.com> 7.20.1-1
b35f73
- new upstream release
b35f73
b35f73
* Tue Mar 23 2010 Kamil Dudka <kdudka@redhat.com> 7.20.0-4
b35f73
- add missing quote in libcurl.m4 (#576252)
b35f73
b35f73
* Fri Mar 19 2010 Kamil Dudka <kdudka@redhat.com> 7.20.0-3
b35f73
- throw CURLE_SSL_CERTPROBLEM in case peer rejects a certificate (#565972)
b35f73
- valgrind temporarily disabled (#574889)
b35f73
- kerberos installation prefix has been changed
b35f73
b35f73
* Wed Feb 24 2010 Kamil Dudka <kdudka@redhat.com> 7.20.0-2
b35f73
- exclude test1112 from the test suite (#565305)
b35f73
b35f73
* Thu Feb 11 2010 Kamil Dudka <kdudka@redhat.com> 7.20.0-1
b35f73
- new upstream release - added support for IMAP(S), POP3(S), SMTP(S) and RTSP
b35f73
- dropped patches applied upstream
b35f73
- dropped curl-7.16.0-privlibs.patch no longer useful
b35f73
- a new patch forcing -lrt when linking the curl tool and test-cases
b35f73
b35f73
* Fri Jan 29 2010 Kamil Dudka <kdudka@redhat.com> 7.19.7-11
b35f73
- upstream patch adding a new option -J/--remote-header-name
b35f73
- dropped temporary workaround for #545779
b35f73
b35f73
* Thu Jan 14 2010 Chris Weyl <cweyl@alumni.drew.edu> 7.19.7-10
b35f73
- bump for libssh2 rebuild
b35f73
b35f73
* Sun Dec 20 2009 Kamil Dudka <kdudka@redhat.com> 7.19.7-9
b35f73
- temporary workaround for #548269
b35f73
  (restored behavior of 7.19.7-4)
b35f73
b35f73
* Wed Dec 09 2009 Kamil Dudka <kdudka@redhat.com> 7.19.7-8
b35f73
- replace hard wired port numbers in the test suite
b35f73
b35f73
* Wed Dec 09 2009 Kamil Dudka <kdudka@redhat.com> 7.19.7-7
b35f73
- use different port numbers for 32bit and 64bit builds
b35f73
- temporary workaround for #545779
b35f73
b35f73
* Tue Dec 08 2009 Kamil Dudka <kdudka@redhat.com> 7.19.7-6
b35f73
- make it possible to run test241
b35f73
- re-enable SCP/SFTP tests (#539444)
b35f73
b35f73
* Sat Dec 05 2009 Kamil Dudka <kdudka@redhat.com> 7.19.7-5
b35f73
- avoid use of uninitialized value in lib/nss.c
b35f73
- suppress failure of test513 on s390
b35f73
b35f73
* Tue Dec 01 2009 Kamil Dudka <kdudka@redhat.com> 7.19.7-4
b35f73
- do not require valgrind on s390 and s390x
b35f73
- temporarily disabled SCP/SFTP test-suite (#539444)
b35f73
b35f73
* Thu Nov 12 2009 Kamil Dudka <kdudka@redhat.com> 7.19.7-3
b35f73
- fix crash on doubly closed NSPR descriptor, patch contributed
b35f73
  by Kevin Baughman (#534176)
b35f73
- new version of patch for broken TLS servers (#525496, #527771)
b35f73
b35f73
* Wed Nov 04 2009 Kamil Dudka <kdudka@redhat.com> 7.19.7-2
b35f73
- increased release number (CVS problem)
b35f73
b35f73
* Wed Nov 04 2009 Kamil Dudka <kdudka@redhat.com> 7.19.7-1
b35f73
- new upstream release, dropped applied patches
b35f73
- workaround for broken TLS servers (#525496, #527771)
b35f73
b35f73
* Wed Oct 14 2009 Kamil Dudka <kdudka@redhat.com> 7.19.6-13
b35f73
- fix timeout issues and gcc warnings within lib/nss.c
b35f73
b35f73
* Tue Oct 06 2009 Kamil Dudka <kdudka@redhat.com> 7.19.6-12
b35f73
- upstream patch for NSS support written by Guenter Knauf
b35f73
b35f73
* Wed Sep 30 2009 Kamil Dudka <kdudka@redhat.com> 7.19.6-11
b35f73
- build libcurl with c-ares support (#514771)
b35f73
b35f73
* Sun Sep 27 2009 Kamil Dudka <kdudka@redhat.com> 7.19.6-10
b35f73
- require libssh2>=1.2 properly (#525002)
b35f73
b35f73
* Sat Sep 26 2009 Kamil Dudka <kdudka@redhat.com> 7.19.6-9
b35f73
- let curl test-suite use valgrind
b35f73
- require libssh2>=1.2 (#525002)
b35f73
b35f73
* Mon Sep 21 2009 Chris Weyl <cweyl@alumni.drew.edu> - 7.19.6-8
b35f73
- rebuild for libssh2 1.2
b35f73
b35f73
* Thu Sep 17 2009 Kamil Dudka <kdudka@redhat.com> 7.19.6-7
b35f73
- make curl test-suite more verbose
b35f73
b35f73
* Wed Sep 16 2009 Kamil Dudka <kdudka@redhat.com> 7.19.6-6
b35f73
- update polling patch to the latest upstream version
b35f73
b35f73
* Thu Sep 03 2009 Kamil Dudka <kdudka@redhat.com> 7.19.6-5
b35f73
- cover ssh and stunnel support by the test-suite
b35f73
b35f73
* Wed Sep 02 2009 Kamil Dudka <kdudka@redhat.com> 7.19.6-4
b35f73
- use pkg-config to find nss and libssh2 if possible
b35f73
- better patch (not only) for SCP/SFTP polling
b35f73
- improve error message for not matching common name (#516056)
b35f73
b35f73
* Fri Aug 21 2009 Kamil Dudka <kdudka@redhat.com> 7.19.6-3
b35f73
- avoid tight loop during a sftp upload
b35f73
- http://permalink.gmane.org/gmane.comp.web.curl.library/24744
b35f73
b35f73
* Tue Aug 18 2009 Kamil Dudka <kdudka@redhat.com> 7.19.6-2
b35f73
- let curl package depend on the same version of libcurl
b35f73
b35f73
* Fri Aug 14 2009 Kamil Dudka <kdudka@redhat.com> 7.19.6-1
b35f73
- new upstream release, dropped applied patches
b35f73
- changed NSS code to not ignore the value of ssl.verifyhost and produce more
b35f73
  verbose error messages (#516056)
b35f73
b35f73
* Wed Aug 12 2009 Ville Skyttä <ville.skytta@iki.fi> - 7.19.5-10
b35f73
- Use lzma compressed upstream tarball.
b35f73
b35f73
* Fri Jul 24 2009 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 7.19.5-9
b35f73
- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild
b35f73
b35f73
* Wed Jul 22 2009 Kamil Dudka <kdudka@redhat.com> 7.19.5-8
b35f73
- do not pre-login to all PKCS11 slots, it causes problems with HW tokens
b35f73
- try to select client certificate automatically when not specified, thanks
b35f73
  to Claes Jakobsson
b35f73
b35f73
* Fri Jul 10 2009 Kamil Dudka <kdudka@redhat.com> 7.19.5-7
b35f73
- fix SIGSEGV when using NSS client certificates, thanks to Claes Jakobsson
b35f73
b35f73
* Sun Jul 05 2009 Kamil Dudka <kdudka@redhat.com> 7.19.5-6
b35f73
- force test suite to use the just built libcurl, thanks to Paul Howarth
b35f73
b35f73
* Thu Jul 02 2009 Kamil Dudka <kdudka@redhat.com> 7.19.5-5
b35f73
- run test suite after build
b35f73
- enable built-in manual
b35f73
b35f73
* Wed Jun 24 2009 Kamil Dudka <kdudka@redhat.com> 7.19.5-4
b35f73
- fix bug introduced by the last build (#504857)
b35f73
b35f73
* Wed Jun 24 2009 Kamil Dudka <kdudka@redhat.com> 7.19.5-3
b35f73
- exclude curlbuild.h content from spec (#504857)
b35f73
b35f73
* Wed Jun 10 2009 Kamil Dudka <kdudka@redhat.com> 7.19.5-2
b35f73
- avoid unguarded comparison in the spec file, thanks to R P Herrold (#504857)
b35f73
b35f73
* Tue May 19 2009 Kamil Dudka <kdudka@redhat.com> 7.19.5-1
b35f73
- update to 7.19.5, dropped applied patches
b35f73
b35f73
* Mon May 11 2009 Kamil Dudka <kdudka@redhat.com> 7.19.4-11
b35f73
- fix infinite loop while loading a private key, thanks to Michael Cronenworth
b35f73
  (#453612)
b35f73
b35f73
* Mon Apr 27 2009 Kamil Dudka <kdudka@redhat.com> 7.19.4-10
b35f73
- fix curl/nss memory leaks while using client certificate (#453612, accepted
b35f73
  by upstream)
b35f73
b35f73
* Wed Apr 22 2009 Kamil Dudka <kdudka@redhat.com> 7.19.4-9
b35f73
- add missing BuildRequire for autoconf
b35f73
b35f73
* Wed Apr 22 2009 Kamil Dudka <kdudka@redhat.com> 7.19.4-8
b35f73
- fix configure.ac to not discard -g in CFLAGS (#496778)
b35f73
b35f73
* Tue Apr 21 2009 Debarshi Ray <rishi@fedoraproject.org> 7.19.4-7
b35f73
- Fixed configure to respect the environment's CFLAGS and CPPFLAGS settings.
b35f73
b35f73
* Tue Apr 14 2009 Kamil Dudka <kdudka@redhat.com> 7.19.4-6
b35f73
- upstream patch fixing memory leak in lib/nss.c (#453612)
b35f73
- remove redundant dependency of libcurl-devel on libssh2-devel
b35f73
b35f73
* Wed Mar 18 2009 Kamil Dudka <kdudka@redhat.com> 7.19.4-5
b35f73
- enable 6 additional crypto algorithms by default (#436781,
b35f73
  accepted by upstream)
b35f73
b35f73
* Thu Mar 12 2009 Kamil Dudka <kdudka@redhat.com> 7.19.4-4
b35f73
- fix memory leak in src/main.c (accepted by upstream)
b35f73
- avoid using %%ifarch
b35f73
b35f73
* Wed Mar 11 2009 Kamil Dudka <kdudka@redhat.com> 7.19.4-3
b35f73
- make libcurl-devel multilib-ready (bug #488922)
b35f73
b35f73
* Fri Mar 06 2009 Jindrich Novy <jnovy@redhat.com> 7.19.4-2
b35f73
- drop .easy-leak patch, causes problems in pycurl (#488791)
b35f73
- fix libcurl-devel dependencies (#488895)
b35f73
b35f73
* Tue Mar 03 2009 Jindrich Novy <jnovy@redhat.com> 7.19.4-1
b35f73
- update to 7.19.4 (fixes CVE-2009-0037)
b35f73
- fix leak in curl_easy* functions, thanks to Kamil Dudka
b35f73
- drop nss-fix patch, applied upstream
b35f73
b35f73
* Tue Feb 24 2009 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 7.19.3-2
b35f73
- Rebuilt for https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild
b35f73
b35f73
* Tue Feb 17 2009 Kamil Dudka <kdudka@redhat.com> 7.19.3-1
b35f73
- update to 7.19.3, dropped applied nss patches
b35f73
- add patch fixing 7.19.3 curl/nss bugs
b35f73
b35f73
* Mon Dec 15 2008 Jindrich Novy <jnovy@redhat.com> 7.18.2-9
b35f73
- rebuild for f10/rawhide cvs tag clashes
b35f73
b35f73
* Sat Dec 06 2008 Jindrich Novy <jnovy@redhat.com> 7.18.2-8
b35f73
- use improved NSS patch, thanks to Rob Crittenden (#472489)
b35f73
b35f73
* Tue Sep 09 2008 Jindrich Novy <jnovy@redhat.com> 7.18.2-7
b35f73
- update the thread safety patch, thanks to Rob Crittenden (#462217)
b35f73
b35f73
* Wed Sep 03 2008 Warren Togami <wtogami@redhat.com> 7.18.2-6
b35f73
- add thread safety to libcurl NSS cleanup() functions (#459297)
b35f73
b35f73
* Fri Aug 22 2008 Tom "spot" Callaway <tcallawa@redhat.com> 7.18.2-5
b35f73
- undo mini libcurl.so.3
b35f73
b35f73
* Mon Aug 11 2008 Tom "spot" Callaway <tcallawa@redhat.com> 7.18.2-4
b35f73
- make miniature library for libcurl.so.3
b35f73
b35f73
* Fri Jul  4 2008 Jindrich Novy <jnovy@redhat.com> 7.18.2-3
b35f73
- enable support for libssh2 (#453958)
b35f73
b35f73
* Wed Jun 18 2008 Jindrich Novy <jnovy@redhat.com> 7.18.2-2
b35f73
- fix curl_multi_perform() over a proxy (#450140), thanks to
b35f73
  Rob Crittenden
b35f73
b35f73
* Wed Jun  4 2008 Jindrich Novy <jnovy@redhat.com> 7.18.2-1
b35f73
- update to 7.18.2
b35f73
b35f73
* Wed May  7 2008 Jindrich Novy <jnovy@redhat.com> 7.18.1-2
b35f73
- spec cleanup, thanks to Paul Howarth (#225671)
b35f73
  - drop BR: libtool
b35f73
  - convert CHANGES and README to UTF-8
b35f73
  - _GNU_SOURCE in CFLAGS is no more needed
b35f73
  - remove bogus rpath
b35f73
b35f73
* Mon Mar 31 2008 Jindrich Novy <jnovy@redhat.com> 7.18.1-1
b35f73
- update to curl 7.18.1 (fixes #397911)
b35f73
- add ABI docs for libcurl
b35f73
- remove --static-libs from curl-config
b35f73
- drop curl-config patch, obsoleted by @SSL_ENABLED@ autoconf
b35f73
  substitution (#432667)
b35f73
b35f73
* Fri Feb 15 2008 Jindrich Novy <jnovy@redhat.com> 7.18.0-2
b35f73
- define _GNU_SOURCE so that NI_MAXHOST gets defined from glibc
b35f73
b35f73
* Mon Jan 28 2008 Jindrich Novy <jnovy@redhat.com> 7.18.0-1
b35f73
- update to curl-7.18.0
b35f73
- drop sslgen patch -> applied upstream
b35f73
- fix typo in description
b35f73
b35f73
* Tue Jan 22 2008 Jindrich Novy <jnovy@redhat.com> 7.17.1-6
b35f73
- fix curl-devel obsoletes so that we don't break F8->F9 upgrade
b35f73
  path (#429612)
b35f73
b35f73
* Tue Jan  8 2008 Jindrich Novy <jnovy@redhat.com> 7.17.1-5
b35f73
- do not attempt to close a bad socket (#427966),
b35f73
  thanks to Caolan McNamara
b35f73
b35f73
* Tue Dec  4 2007 Jindrich Novy <jnovy@redhat.com> 7.17.1-4
b35f73
- rebuild because of the openldap soname bump
b35f73
- remove old nsspem patch
b35f73
b35f73
* Fri Nov 30 2007 Jindrich Novy <jnovy@redhat.com> 7.17.1-3
b35f73
- drop useless ldap library detection since curl doesn't
b35f73
  dlopen()s it but links to it -> BR: openldap-devel
b35f73
- enable LDAPS support (#225671), thanks to Paul Howarth
b35f73
- BR: krb5-devel to reenable GSSAPI support
b35f73
- simplify build process
b35f73
- update description
b35f73
b35f73
* Wed Nov 21 2007 Jindrich Novy <jnovy@redhat.com> 7.17.1-2
b35f73
- update description to contain complete supported servers list (#393861)
b35f73
b35f73
* Sat Nov 17 2007 Jindrich Novy <jnovy@redhat.com> 7.17.1-1
b35f73
- update to curl 7.17.1
b35f73
- include patch to enable SSL usage in NSS when a socket is opened
b35f73
  nonblocking, thanks to Rob Crittenden (rcritten@redhat.com)
b35f73
b35f73
* Wed Oct 24 2007 Jindrich Novy <jnovy@redhat.com> 7.16.4-10
b35f73
- correctly provide/obsolete curl-devel (#130251)
b35f73
b35f73
* Wed Oct 24 2007 Jindrich Novy <jnovy@redhat.com> 7.16.4-9
b35f73
- create libcurl and libcurl-devel subpackages (#130251)
b35f73
b35f73
* Thu Oct 11 2007 Jindrich Novy <jnovy@redhat.com> 7.16.4-8
b35f73
- list features correctly when curl is compiled against NSS (#316191)
b35f73
b35f73
* Mon Sep 17 2007 Jindrich Novy <jnovy@redhat.com> 7.16.4-7
b35f73
- add zlib-devel BR to enable gzip compressed transfers in curl (#292211)
b35f73
b35f73
* Mon Sep 10 2007 Jindrich Novy <jnovy@redhat.com> 7.16.4-6
b35f73
- provide webclient (#225671)
b35f73
b35f73
* Thu Sep  6 2007 Jindrich Novy <jnovy@redhat.com> 7.16.4-5
b35f73
- add support for the NSS PKCS#11 pem reader so the command-line is the
b35f73
  same for both OpenSSL and NSS by Rob Crittenden (rcritten@redhat.com)
b35f73
- switch to NSS again
b35f73
b35f73
* Mon Sep  3 2007 Jindrich Novy <jnovy@redhat.com> 7.16.4-4
b35f73
- revert back to use OpenSSL (#266021)
b35f73
b35f73
* Mon Aug 27 2007 Jindrich Novy <jnovy@redhat.com> 7.16.4-3
b35f73
- don't use openssl, use nss instead
b35f73
b35f73
* Fri Aug 10 2007 Jindrich Novy <jnovy@redhat.com> 7.16.4-2
b35f73
- fix anonymous ftp login (#251570), thanks to David Cantrell
b35f73
b35f73
* Wed Jul 11 2007 Jindrich Novy <jnovy@redhat.com> 7.16.4-1
b35f73
- update to 7.16.4
b35f73
b35f73
* Mon Jun 25 2007 Jindrich Novy <jnovy@redhat.com> 7.16.3-1
b35f73
- update to 7.16.3
b35f73
- drop .print patch, applied upstream
b35f73
- next series of merge review fixes by Paul Howarth
b35f73
- remove aclocal stuff, no more needed
b35f73
- simplify makefile arguments
b35f73
- don't reference standard library paths in libcurl.pc
b35f73
- include docs/CONTRIBUTE
b35f73
b35f73
* Mon Jun 18 2007 Jindrich Novy <jnovy@redhat.com> 7.16.2-5
b35f73
- don't print like crazy (#236981), backported from upstream CVS
b35f73
b35f73
* Fri Jun 15 2007 Jindrich Novy <jnovy@redhat.com> 7.16.2-4
b35f73
- another series of review fixes (#225671),
b35f73
  thanks to Paul Howarth
b35f73
- check version of ldap library automatically
b35f73
- don't use %%makeinstall and preserve timestamps
b35f73
- drop useless patches
b35f73
b35f73
* Fri May 11 2007 Jindrich Novy <jnovy@redhat.com> 7.16.2-3
b35f73
- add automake BR to curl-devel to fix aclocal dir. ownership,
b35f73
  thanks to Patrice Dumas
b35f73
b35f73
* Thu May 10 2007 Jindrich Novy <jnovy@redhat.com> 7.16.2-2
b35f73
- package libcurl.m4 in curl-devel (#239664), thanks to Quy Tonthat
b35f73
b35f73
* Wed Apr 11 2007 Jindrich Novy <jnovy@redhat.com> 7.16.2-1
b35f73
- update to 7.16.2
b35f73
b35f73
* Mon Feb 19 2007 Jindrich Novy <jnovy@redhat.com> 7.16.1-3
b35f73
- don't create/ship static libraries (#225671)
b35f73
b35f73
* Mon Feb  5 2007 Jindrich Novy <jnovy@redhat.com> 7.16.1-2
b35f73
- merge review related spec fixes (#225671)
b35f73
b35f73
* Mon Jan 29 2007 Jindrich Novy <jnovy@redhat.com> 7.16.1-1
b35f73
- update to 7.16.1
b35f73
b35f73
* Tue Jan 16 2007 Jindrich Novy <jnovy@redhat.com> 7.16.0-5
b35f73
- don't package generated makefiles for docs/examples to avoid
b35f73
  multilib conflicts
b35f73
b35f73
* Mon Dec 18 2006 Jindrich Novy <jnovy@redhat.com> 7.16.0-4
b35f73
- convert spec to UTF-8
b35f73
- don't delete BuildRoot in %%prep phase
b35f73
- rpmlint fixes
b35f73
b35f73
* Thu Nov 16 2006 Jindrich Novy <jnovy@redhat.com> -7.16.0-3
b35f73
- prevent curl from dlopen()ing missing ldap libraries so that
b35f73
  ldap:// requests work (#215928)
b35f73
b35f73
* Tue Oct 31 2006 Jindrich Novy <jnovy@redhat.com> - 7.16.0-2
b35f73
- fix BuildRoot
b35f73
- add Requires: pkgconfig for curl-devel
b35f73
- move LDFLAGS and LIBS to Libs.private in libcurl.pc.in (#213278)
b35f73
b35f73
* Mon Oct 30 2006 Jindrich Novy <jnovy@redhat.com> - 7.16.0-1
b35f73
- update to curl-7.16.0
b35f73
b35f73
* Thu Aug 24 2006 Jindrich Novy <jnovy@redhat.com> - 7.15.5-1.fc6
b35f73
- update to curl-7.15.5
b35f73
- use %%{?dist}
b35f73
b35f73
* Fri Jun 30 2006 Ivana Varekova <varekova@redhat.com> - 7.15.4-1
b35f73
- update to 7.15.4
b35f73
b35f73
* Mon Mar 20 2006 Ivana Varekova <varekova@redhat.com> - 7.15.3-1
b35f73
- fix multilib problem using pkg-config
b35f73
- update to 7.15.3
b35f73
b35f73
* Thu Feb 23 2006 Ivana Varekova <varekova@redhat.com> - 7.15.1-2
b35f73
- fix multilib problem - #181290 - 
b35f73
  curl-devel.i386 not installable together with curl-devel.x86-64
b35f73
b35f73
* Fri Feb 10 2006 Jesse Keating <jkeating@redhat.com> - 7.15.1-1.2.1
b35f73
- bump again for double-long bug on ppc(64)
b35f73
b35f73
* Tue Feb 07 2006 Jesse Keating <jkeating@redhat.com> - 7.15.1-1.2
b35f73
- rebuilt for new gcc4.1 snapshot and glibc changes
b35f73
b35f73
* Fri Dec 09 2005 Jesse Keating <jkeating@redhat.com>
b35f73
- rebuilt
b35f73
b35f73
* Thu Dec  8 2005 Ivana Varekova <varekova@redhat.com> 7.15.1-1
b35f73
- update to 7.15.1 (bug 175191)
b35f73
b35f73
* Wed Nov 30 2005 Ivana Varekova <varekova@redhat.com> 7.15.0-3
b35f73
- fix curl-config bug 174556 - missing vernum value
b35f73
b35f73
* Wed Nov  9 2005 Ivana Varekova <varekova@redhat.com> 7.15.0-2
b35f73
- rebuilt
b35f73
b35f73
* Tue Oct 18 2005 Ivana Varekova <varekova@redhat.com> 7.15.0-1
b35f73
- update to 7.15.0
b35f73
b35f73
* Thu Oct 13 2005 Ivana Varekova <varekova@redhat.com> 7.14.1-1
b35f73
- update to 7.14.1
b35f73
b35f73
* Thu Jun 16 2005 Ivana Varekova <varekova@redhat.com> 7.14.0-1
b35f73
- rebuild new version 
b35f73
b35f73
* Tue May 03 2005 Ivana Varekova <varekova@redhat.com> 7.13.1-3
b35f73
- fix bug 150768 - curl-7.12.3-2 breaks basic authentication
b35f73
  used Daniel Stenberg patch 
b35f73
b35f73
* Mon Apr 25 2005 Joe Orton <jorton@redhat.com> 7.13.1-2
b35f73
- update to use ca-bundle in /etc/pki
b35f73
- mark License as MIT not MPL
b35f73
b35f73
* Wed Mar  9 2005 Ivana Varekova <varekova@redhat.com> 7.13.1-1
b35f73
- rebuilt (7.13.1)
b35f73
b35f73
* Tue Mar  1 2005 Tomas Mraz <tmraz@redhat.com> 7.13.0-2
b35f73
- rebuild with openssl-0.9.7e
b35f73
b35f73
* Sun Feb 13 2005 Florian La Roche <laroche@redhat.com>
b35f73
- 7.13.0
b35f73
b35f73
* Wed Feb  9 2005 Joe Orton <jorton@redhat.com> 7.12.3-3
b35f73
- don't pass /usr to --with-libidn to remove "-L/usr/lib" from
b35f73
  'curl-config --libs' output on x86_64.
b35f73
b35f73
* Fri Jan 28 2005 Adrian Havill <havill@redhat.com> 7.12.3-1
b35f73
- Upgrade to 7.12.3, which uses poll() for FDSETSIZE limit (#134794)
b35f73
- require libidn-devel for devel subpkg (#141341)
b35f73
- remove proftpd kludge; included upstream
b35f73
b35f73
* Wed Oct 06 2004 Adrian Havill <havill@redhat.com> 7.12.1-1
b35f73
- upgrade to 7.12.1
b35f73
- enable GSSAPI auth (#129353)
b35f73
- enable I18N domain names (#134595)
b35f73
- workaround for broken ProFTPD SSL auth (#134133). Thanks to
b35f73
  Aleksandar Milivojevic
b35f73
b35f73
* Wed Sep 29 2004 Adrian Havill <havill@redhat.com> 7.12.0-4
b35f73
- move new docs position so defattr gets applied
b35f73
b35f73
* Mon Sep 27 2004 Warren Togami <wtogami@redhat.com> 7.12.0-3
b35f73
- remove INSTALL, move libcurl docs to -devel
b35f73
b35f73
* Mon Jul 26 2004 Jindrich Novy <jnovy@redhat.com>
b35f73
- updated to 7.12.0
b35f73
- updated nousr patch
b35f73
b35f73
* Tue Jun 15 2004 Elliot Lee <sopwith@redhat.com>
b35f73
- rebuilt
b35f73
b35f73
* Wed Apr 07 2004 Adrian Havill <havill@redhat.com> 7.11.1-1
b35f73
- upgraded; updated nousr patch
b35f73
- added COPYING (#115956)
b35f73
- 
b35f73
b35f73
* Tue Mar 02 2004 Elliot Lee <sopwith@redhat.com>
b35f73
- rebuilt
b35f73
b35f73
* Fri Feb 13 2004 Elliot Lee <sopwith@redhat.com>
b35f73
- rebuilt
b35f73
b35f73
* Sat Jan 31 2004 Florian La Roche <Florian.LaRoche@redhat.de>
b35f73
- update to 7.10.8
b35f73
- remove patch2, already upstream
b35f73
b35f73
* Wed Oct 15 2003 Adrian Havill <havill@redhat.com> 7.10.6-7
b35f73
- aclocal before libtoolize
b35f73
- move OpenLDAP license so it's present as a doc file, present in
b35f73
  both the source and binary as per conditions
b35f73
b35f73
* Mon Oct 13 2003 Adrian Havill <havill@redhat.com> 7.10.6-6
b35f73
- add OpenLDAP copyright notice for usage of code, add OpenLDAP
b35f73
  license for this code
b35f73
b35f73
* Tue Oct 07 2003 Adrian Havill <havill@redhat.com> 7.10.6-5
b35f73
- match serverAltName certs with SSL (#106168)
b35f73
b35f73
* Tue Sep 16 2003 Adrian Havill <havill@redhat.com> 7.10.6-4.1
b35f73
- bump n-v-r for RHEL
b35f73
b35f73
* Tue Sep 16 2003 Adrian Havill <havill@redhat.com> 7.10.6-4
b35f73
- restore ca cert bundle (#104400)
b35f73
- require openssl, we want to use its ca-cert bundle
b35f73
b35f73
* Sun Sep  7 2003 Joe Orton <jorton@redhat.com> 7.10.6-3
b35f73
- rebuild
b35f73
b35f73
* Fri Sep  5 2003 Joe Orton <jorton@redhat.com> 7.10.6-2.2
b35f73
- fix to include libcurl.so
b35f73
b35f73
* Mon Aug 25 2003 Adrian Havill <havill@redhat.com> 7.10.6-2.1
b35f73
- bump n-v-r for RHEL
b35f73
b35f73
* Mon Aug 25 2003 Adrian Havill <havill@redhat.com> 7.10.6-2
b35f73
- devel subpkg needs openssl-devel as a Require (#102963)
b35f73
b35f73
* Mon Jul 28 2003 Adrian Havill <havill@redhat.com> 7.10.6-1
b35f73
- bumped version
b35f73
b35f73
* Tue Jul 01 2003 Adrian Havill <havill@redhat.com> 7.10.5-1
b35f73
- bumped version
b35f73
b35f73
* Wed Jun 04 2003 Elliot Lee <sopwith@redhat.com>
b35f73
- rebuilt
b35f73
b35f73
* Sat Apr 12 2003 Florian La Roche <Florian.LaRoche@redhat.de>
b35f73
- update to 7.10.4
b35f73
- adapt nousr patch
b35f73
b35f73
* Wed Jan 22 2003 Tim Powers <timp@redhat.com>
b35f73
- rebuilt
b35f73
b35f73
* Tue Jan 21 2003 Joe Orton <jorton@redhat.com> 7.9.8-4
b35f73
- don't add -L/usr/lib to 'curl-config --libs' output
b35f73
b35f73
* Tue Jan  7 2003 Nalin Dahyabhai <nalin@redhat.com> 7.9.8-3
b35f73
- rebuild
b35f73
b35f73
* Wed Nov  6 2002 Joe Orton <jorton@redhat.com> 7.9.8-2
b35f73
- fix `curl-config --libs` output for libdir!=/usr/lib
b35f73
- remove docs/LIBCURL from docs list; remove unpackaged libcurl.la
b35f73
- libtoolize and reconf
b35f73
b35f73
* Mon Jul 22 2002 Trond Eivind Glomsrød <teg@redhat.com> 7.9.8-1
b35f73
- 7.9.8 (# 69473)
b35f73
b35f73
* Fri Jun 21 2002 Tim Powers <timp@redhat.com>
b35f73
- automated rebuild
b35f73
b35f73
* Sun May 26 2002 Tim Powers <timp@redhat.com>
b35f73
- automated rebuild
b35f73
b35f73
* Thu May 16 2002 Trond Eivind Glomsrød <teg@redhat.com> 7.9.7-1
b35f73
- 7.9.7
b35f73
b35f73
* Wed Apr 24 2002 Trond Eivind Glomsrød <teg@redhat.com> 7.9.6-1
b35f73
- 7.9.6
b35f73
b35f73
* Thu Mar 21 2002 Trond Eivind Glomsrød <teg@redhat.com> 7.9.5-2
b35f73
- Stop the curl-config script from printing -I/usr/include 
b35f73
  and -L/usr/lib (#59497)
b35f73
b35f73
* Fri Mar  8 2002 Trond Eivind Glomsrød <teg@redhat.com> 7.9.5-1
b35f73
- 7.9.5
b35f73
b35f73
* Tue Feb 26 2002 Trond Eivind Glomsrød <teg@redhat.com> 7.9.3-2
b35f73
- Rebuild
b35f73
b35f73
* Wed Jan 23 2002 Nalin Dahyabhai <nalin@redhat.com> 7.9.3-1
b35f73
- update to 7.9.3
b35f73
b35f73
* Wed Jan 09 2002 Tim Powers <timp@redhat.com> 7.9.2-2
b35f73
- automated rebuild
b35f73
b35f73
* Wed Jan  9 2002 Trond Eivind Glomsrød <teg@redhat.com> 7.9.2-1
b35f73
- 7.9.2
b35f73
b35f73
* Fri Aug 17 2001 Nalin Dahyabhai <nalin@redhat.com>
b35f73
- include curl-config in curl-devel
b35f73
- update to 7.8 to fix memory leak and strlcat() symbol pollution from libcurl
b35f73
b35f73
* Wed Jul 18 2001 Crutcher Dunnavant <crutcher@redhat.com>
b35f73
- added openssl-devel build req
b35f73
b35f73
* Mon May 21 2001 Tim Powers <timp@redhat.com>
b35f73
- built for the distro
b35f73
b35f73
* Tue Apr 24 2001 Jeff Johnson <jbj@redhat.com>
b35f73
- upgrade to curl-7.7.2.
b35f73
- enable IPv6.
b35f73
b35f73
* Fri Mar  2 2001 Tim Powers <timp@redhat.com>
b35f73
- rebuilt against openssl-0.9.6-1
b35f73
b35f73
* Thu Jan  4 2001 Tim Powers <timp@redhat.com>
b35f73
- fixed mising ldconfigs
b35f73
- updated to 7.5.2, bug fixes
b35f73
b35f73
* Mon Dec 11 2000 Tim Powers <timp@redhat.com>
b35f73
- updated to 7.5.1
b35f73
b35f73
* Mon Nov  6 2000 Tim Powers <timp@redhat.com>
b35f73
- update to 7.4.1 to fix bug #20337, problems with curl -c
b35f73
- not using patch anymore, it's included in the new source. Keeping
b35f73
  for reference
b35f73
b35f73
* Fri Oct 20 2000 Nalin Dahyabhai <nalin@redhat.com>
b35f73
- fix bogus req in -devel package
b35f73
b35f73
* Fri Oct 20 2000 Tim Powers <timp@redhat.com> 
b35f73
- devel package needed defattr so that root owns the files
b35f73
b35f73
* Mon Oct 16 2000 Nalin Dahyabhai <nalin@redhat.com>
b35f73
- update to 7.3
b35f73
- apply vsprintf/vsnprintf patch from Colin Phipps via Debian
b35f73
b35f73
* Mon Aug 21 2000 Nalin Dahyabhai <nalin@redhat.com>
b35f73
- enable SSL support
b35f73
- fix packager tag
b35f73
- move buildroot to %%{_tmppath}
b35f73
b35f73
* Tue Aug 1 2000 Tim Powers <timp@redhat.com>
b35f73
- fixed vendor tag for bug #15028
b35f73
b35f73
* Mon Jul 24 2000 Prospector <prospector@redhat.com>
b35f73
- rebuilt
b35f73
b35f73
* Tue Jul 11 2000 Tim Powers <timp@redhat.com>
b35f73
- workaround alpha build problems with optimizations
b35f73
b35f73
* Mon Jul 10 2000 Tim Powers <timp@redhat.com>
b35f73
- rebuilt
b35f73
b35f73
* Mon Jun 5 2000 Tim Powers <timp@redhat.com>
b35f73
- put man pages in correct place
b35f73
- use %%makeinstall
b35f73
b35f73
* Mon Apr 24 2000 Tim Powers <timp@redhat.com>
b35f73
- updated to 6.5.2
b35f73
b35f73
* Wed Nov 3 1999 Tim Powers <timp@redhat.com>
b35f73
- updated sources to 6.2
b35f73
- gzip man page
b35f73
b35f73
* Mon Aug 30 1999 Tim Powers <timp@redhat.com>
b35f73
- changed group
b35f73
b35f73
* Thu Aug 26 1999 Tim Powers <timp@redhat.com>
b35f73
- changelog started
b35f73
- general cleanups, changed prefix to /usr, added manpage to files section
b35f73
- including in Powertools