ANNOUNCE: The 6.5.0.beta3 snapshot of fetchmail is available

Matthias Andree <[email protected]> Sat, 24 Apr 2021 15:26:22 +0200
Newsgroups gmane.mail.fetchmail.announce
Message-ID <YIQcfs9pAICBbzCH__46558.1327489176$1619349875$gmane$org@ryzen.an3e.de>
--===============8564337573475669110==
Content-Type: multipart/signed; micalg=pgp-sha512;
	protocol="application/pgp-signature"; boundary="89edoW4PoACGOpb0"
Content-Disposition: inline


--89edoW4PoACGOpb0
Content-Type: text/plain; charset=iso-8859-1
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

Greetings,

The 6.5.0.beta3 release of fetchmail is now available at the usual location=
s,
including <https://sourceforge.net/projects/fetchmail/files/branch_6.5/>

The source archive is available at:
<https://sourceforge.net/projects/fetchmail/files/branch_6.5/fetchmail-6.5.=
0.beta3.tar.xz/download>

This is a deep link to the GnuPG signature:
<https://sourceforge.net/projects/fetchmail/files/branch_6.5/fetchmail-6.5.=
0.beta3.tar.xz.asc/download>

This is mostly merging of the recent 6.4 releases, with these additional ch=
anges:

* 13d7eab8 2021-04-24 | INSTALL: Spell-check [Matthias Andree]
* deb5e66f 2021-03-29 | Add basic test framework to source from other tests=
=2E [Matthias Andree]
* 9c9d47c9 2021-03-29 | fetchmail.man: Add QUICKSTART section. [Matthias An=
dree]
* 3aafc8bd 2021-03-23 | Reduce 15 different translatable "Query status" mes=
sages into 2. [Lauri Nurmi]
* c4ba1d68 2021-03-13 | po/de.po: Update. [Matthias Andree]
* 13c9a52c 2021-03-13 | INSTALL: mention Python 3 optional, and suggest mak=
e check [Matthias Andree]
* 6161c8c2 2021-03-13 | OpenSSL: Prepare for removal of TLS_MAX_VERSION dec=
laration. [Matthias Andree]
* 1b374b5f 2021-03-13 | tests: import Ubuntu's POP3 mock server operation t=
est [Bryce Harrington]
* da6eb347 2021-03-13 | sanity check well-known POP3/IMAP ports vs. SSL [Ma=
tthias Andree]
* 58cd8002 2021-01-30 | tls-aux.h: Remove unneeded 1.0.2 compatibility code=
=2E [Matthias Andree]

Here are the release notes:

---------------------------------------------------------------------------=
-----
fetchmail-6.5.0 (not yet released):

## REMOVED FEATURES
* fetchmail no longer supports using an MDA as SMTP fallback. This is requi=
red=20
  to make deliveries consistent.
  The --enable-fallback configure option is gone.
* fetchmail no longer supports SSLv3. --sslproto ssl3 and ssl3+ options have
  been removed and behave as though "--sslproto auto" had been given.

## INCOMPATIBLE CHANGES
* fetchmail by default only negotiates TLS v1.2 or higher. (RFC-7525)
* fetchmail can auto-negotiate TLS v1.1 through the --sslproto tls1.1+ opti=
on.
* fetchmail can auto-negotiate TLS v1.0 through the --sslproto tls1+ option.
* fetchmailconf now requires Python 3.7.0 or newer.
* fetchmail, with --logfile, now logs time stamps into the file, in localti=
me
  and in the format "Jun 20 23:45:01 fetchmail: ". It will be localized thr=
ough
  the environment variables LC_TIME (or LC_ALL) and TZ.
  Contributed by Holger Hoffst=E4tte.
* fetchmail sets the OPENSSL security level to 2 by default.
  Override is possible from an environment variable,
  see EXPERIMENTAL CHANGES below.

## CHANGED REQUIREMENTS
* fetchmail 6.5.0 is written in C99 and requires a SUSv3 (Single Unix
  Specification v3, a superset of POSIX.1-2001 aka. IEEE Std 1003.1-2001 wi=
th
  XSI extension) compliant system.

  In particular, older fetchmail versions had workarounds or replacement co=
de
  for several functions standardized in the Single Unix Specification v3, t=
hese=20
  have been removed. Hence:
  - The trio/ library has been removed from the distribution.
  - The libesmtp/getaddrinfo.? library has been removed from the distributi=
on.
  - The KAME/getnameinfo.c file has been removed from the distribution.

* fetchmail 6.5.0 requires a TLSv1.3-capable version of OpenSSL,
  at a minimum OpenSSL v1.1.1.

## BUG FIXES
* fetchmail can now report mailbox sizes of 2^31 octets and beyond.
  This required C99 support (for the long long type).
  Fixes Debian Bug#873668, reported by Andreas Schmidt.
* fetchmail now defines its OpenSSL API level (1.1.1, or 10101) so
  as to compile with OpenSSL 3.0.0. (fetchmail was requesting to hide
  deprecated APIs.)

## CHANGES
* When fetchmail attempts to log out from an IMAP4 server and the server me=
sses
  up its responses (it is supposed to send an untagged * BYE and a tagged
  A4711 OK) and sends a tagged A4711 BYE response, tolerate that, rather th=
an
  reporting a protocol error. We don't intend to chat any more so the proto=
col
  violation is harmless, and we know the server cannot send more untagged
  status responses.
  Analysis and fix courtesy of Maciej S. Szmigiero, GitLab merge request !2=
0.
* The configure script now spends more effort for getting --with-ssl right,=
 by=20
  running pkg-config in the right environment, and using the AC_LIB_LINKFLA=
GS=20
  macro to obtain run-time library path setting flags.

## EXPERIMENTAL CHANGES - these are not documented anywhere else, only here:
* fetchmail supports a FETCHMAIL_SSL_SECLEVEL environment variable that
  can be used to override the OpenSSL security level. Fetchmail by default
  raises the security level to 2 if lower. This variable can be used to low=
er it.
  Use with extreme caution. Note that levels 3 or higher will frequently ca=
use
  incompabilities with servers because server-side data sizes are often too=
 low.
  Valid range: 0 to 5 for OpenSSL 1.1.1 and 3.0.0-alpha4.
* fetchmail supports a FETCHMAIL_SSL_CIPHERS environment variable that
  sets the cipher string (through two different OpenSSL functions) for SSL =
and
  TLS versions up to TLSv1.2.
  If setting the ciphers fails, fetchmail will not connect.
  If not given, defaults to Postfix's "medium" list,=20
  "aNULL:-aNULL:HIGH:MEDIUM:+RC4:@STRENGTH".
* fetchmail supports a FETCHMAIL_TLS13_CIPHERSUITES environment variable
  that sets the ciphersuites (a colon-separated list, without + ! -) for
  TLSv1.3. If not given, defaults to OpenSSL's built-in list. If setting th=
e=20
  ciphersuites fails, fetchmail refuses to connect.
* NOTE the features above are simplistic. For instance, even though you=20
  configure --sslproto tls1.3, a failure to set tls1.2 ciphers could cause
  a connection abort.

# KNOWN BUGS AND WORKAROUNDS
  (This section usually floats upwards through the NEWS file so it stays wi=
th=20
  the current release information)
* Fetchmail does not handle messages without Message-ID header well
* Fetchmail currently uses 31-bit signed integers in several places
  where unsigned and/or wider types should have been used.
* BSMTP is mostly untested and errors can cause corrupt output.
* Fetchmail does not track pending deletes across crashes.
* The command line interface is sometimes a bit stubborn, for instance,
  fetchmail -s doesn't work with a daemon running.
* Linux systems may return duplicates of an IP address in some circumstance=
s if
  no or no global IPv6 addresses are configured.
  (No workaround. Ubuntu Bug#582585, Novell Bug#606980.)
* Kerberos 5 may be broken, particularly on Heimdal, and provide bogus error
  messages. This will not be fixed, because the maintainer has no Kerberos 5
  server to test against. Use GSSAPI.
---------------------------------------------------------------------------=
-----

--89edoW4PoACGOpb0
Content-Type: application/pgp-signature; name="signature.asc"

-----BEGIN PGP SIGNATURE-----
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=5vtn
-----END PGP SIGNATURE-----

--89edoW4PoACGOpb0--


--===============8564337573475669110==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline


--===============8564337573475669110==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

_______________________________________________
Fetchmail-announce mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/fetchmail-announce

--===============8564337573475669110==--