Subject: CVS commit: pkgsrc/security/gnupg
From: Thomas Klausner
Date: 2006-07-03 23:15:14
Message id: 20060703211514.E3040211CA@cvs.netbsd.org

Log Message:
Update to 1.4.4:

Noteworthy changes in version 1.4.4 (2006-06-25)
------------------------------------------------

    * User IDs are now capped at 2048 byte.  This avoids a memory
      allocation attack (see CVE-2006-3082).
	[was already fixed in pkgsrc]

    * Added support for the SHA-224 hash.  Like the SHA-384 hash, it
      is mainly useful when DSS (the US Digital Signature Standard)
      compatibility is desired.

    * Added support for the latest update to DSA keys and signatures.
      This allows for larger keys than 1024 bits and hashes other than
      SHA-1 and RIPEMD/160.  Note that not all OpenPGP implementations
      can handle these new keys and signatures yet.  See
      "--enable-dsa2" in the manual for more information.

Files:
RevisionActionfile
1.87modifypkgsrc/security/gnupg/Makefile
1.41modifypkgsrc/security/gnupg/distinfo
1.1removepkgsrc/security/gnupg/patches/patch-ba