ANNOUNCE: fetchmail 6.4.25 release candidate #1 available (wolfSSL support, OpenSSL 1.0.2 workaround for Let's Encrypt fixed)

Matthias Andree <[email protected]> Sun, 21 Nov 2021 00:54:07 +0100
Newsgroups gmane.mail.fetchmail.announce
Message-ID <YZmKn3tsgJ0RPdbx__8741.28960292495$1637452489$gmane$org@ryzen.an3e.de>
--===============8786444041290619771==
Content-Type: multipart/signed; micalg=pgp-sha512;
	protocol="application/pgp-signature"; boundary="NUiSZcXrtosZeNa5"
Content-Disposition: inline


--NUiSZcXrtosZeNa5
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline

Greetings,

The 6.4.25 release CANDIDATE #1 of fetchmail is now available at
<https://sourceforge.net/projects/fetchmail/files/branch_6.4/>.

It fixes up the OpenSSL 1.0.2 workaround for Let's Encrypt Sites.
It contains support for wolfSSL 5.0, blocks out LibreSSL due to
licensing issues, and overhauls the configure script for OpenSSL.

See COPYING, INSTALL, README.SSL for more details on the news.

Please test this thoroughly and report your findings so we can be sure that
6.4.25 will be a good release.

It has been mailed out to the translation project to solicit translation updates.

The source archive is available at:
<https://sourceforge.net/projects/fetchmail/files/branch_6.4/fetchmail-6.4.25.rc1.tar.xz/download>

Detached GnuPG signatures for the respective tarballs are at:
<https://sourceforge.net/projects/fetchmail/files/branch_6.4/fetchmail-6.4.25.rc1.tar.xz.asc/download>

SHA256 hash values for the tarballs:
SHA256(fetchmail-6.4.25.rc1.tar.xz)= 300787d19c31490fba2e8842b5f9ac13750c4db30def3222eec88b530b305161

Thanks to Corey Halpin for the suggestion about license clarification
with gnu.org links (submitted through FreeBSD's Bugzilla).

Here are the release notes:

---------------------------------------------------------------------------------
fetchmail-6.4.25.rc1 (released 2021-11-20, 31632 LoC):

# BREAKING CHANGES
* Since distributions continue patching for LibreSSL use, which cannot be
  linked legally, block out LibreSSL in configure.ac and socket.c, and
  refer to COPYING.  OpenSSL and wolfSSL 5 can be used.
* Bump OpenSSL version requirement to 1.0.2f in order to safely remove
  the obsolete OpenSSL flag SSL_OP_SINGLE_DH_USE. 1.0.2f was a security fix
  release, and 1.0.2u is publicly available from
  https://www.openssl.org/source/old/1.0.2/

# BUG FIXES
* 6.4.24's workaround for OpenSSL 1.0.2's X509_V_FLAG_TRUSTED_FIRST flag
  contained a typo and would not kick in properly.
* Library and/or rpath setting from configure.ac was fixed.

# CHANGES
* fetchmail can now be used with wolfSSL 5's OpenSSL compatibility layer,
  see INSTALL and README.SSL. This is considered experimental.
  Feedback solicited.
* The getstats.py dist-tool now counts lines of .ac and .am files.
* ./configure --with-ssl now supports pkg-config module names, too. See INSTALL.

--------------------------------------------------------------------------------

Happy fetches,
Matthias

--NUiSZcXrtosZeNa5
Content-Type: application/pgp-signature; name="signature.asc"

-----BEGIN PGP SIGNATURE-----
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=pqQ2
-----END PGP SIGNATURE-----

--NUiSZcXrtosZeNa5--


--===============8786444041290619771==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline


--===============8786444041290619771==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

_______________________________________________
Fetchmail-announce mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/fetchmail-announce

--===============8786444041290619771==--