ANNOUNCE: The 6.5.0.dev20200711a snapshot of fetchmail is available

Matthias Andree <[email protected]> Sat, 11 Jul 2020 14:39:20 +0200
Newsgroups gmane.mail.fetchmail.announce
Message-ID <20200711123920.GA1716334__5335.01267652667$1594471197$gmane$org@ryzen.an3e.de>
--===============4820490603008406407==
Content-Type: multipart/signed; micalg=pgp-sha256;
	protocol="application/pgp-signature"; boundary="0OAP2g/MAC+5xKAE"
Content-Disposition: inline


--0OAP2g/MAC+5xKAE
Content-Type: text/plain; charset=iso-8859-1
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

The 6.5.0.dev20200711a release of fetchmail is now available at the usual l=
ocations,
including <https://downloads.sourceforge.net/project/fetchmail/branch_6.5/>.

NOTE: replies with your findings should go to the fetchmail-devel@ mailing
list, not -users@.

I've made some configure changes that should assist with finding and linking
against OpenSSL outside the typical paths, and also set the run-time linker
path (rpath) properly. Let me know if/where this regresses and then provide
me details (config.log, config.h and make logs) if it fails.

It also tightens up OpenSSL to security level 2, so if you know your mail
server is pretty old, let me know if it still works for you.

This is supposed to become a 6.5.0 in several months' time.

The source archive is available at:
<https://downloads.sourceforge.net/project/fetchmail/branch_6.5/fetchmail-6=
=2E5.0.dev20200711a.tar.lz>

There's also a GnuPG signature file (with .asc appended) available.

Here are the release notes:

---------------------------------------------------------------------------=
-----
fetchmail-6.5.0 (not yet released):

## REMOVED FEATURES
* fetchmail no longer supports using an MDA as SMTP fallback. This is requi=
red=20
  to make deliveries consistent.
  The --enable-fallback configure option is gone.
* fetchmail no longer supports SSLv3. --sslproto ssl3 and ssl3+ options have
  been removed and behave as though "--sslproto auto" had been given.

## INCOMPATIBLE CHANGES
* fetchmail by default only negotiates TLS v1.2 or higher. (RFC-7525)
* fetchmail can auto-negotiate TLS v1.1 through the --sslproto tls1.1+ opti=
on.
* fetchmail can auto-negotiate TLS v1.0 through the --sslproto tls1+ option.
* fetchmailconf now requires Python 3.7.0 or newer.
* fetchmail, with --logfile, now logs time stamps into the file, in localti=
me
  and in the format "Jun 20 23:45:01 fetchmail: ". It will be localized thr=
ough
  the environment variables LC_TIME (or LC_ALL) and TZ.
  Contributed by Holger Hoffst=E4tte.
* fetchmail sets the OPENSSL security level to 2 by default. This can only
  be changed in socket.c, look for SSL_min_security_level =3D 2.

## CHANGED REQUIREMENTS
* fetchmail 6.5.0 is written in C99 and requires a SUSv3 (Single Unix
  Specification v3, a superset of POSIX.1-2001 aka. IEEE Std 1003.1-2001 wi=
th
  XSI extension) compliant system.

  In particular, older fetchmail versions had workarounds or replacement co=
de
  for several functions standardized in the Single Unix Specification v3, t=
hese=20
  have been removed. Hence:
  - The trio/ library has been removed from the distribution.
  - The libesmtp/getaddrinfo.? library has been removed from the distributi=
on.
  - The KAME/getnameinfo.c file has been removed from the distribution.

* fetchmail 6.5.0 requires a TLSv1.3-capable version of OpenSSL,
  at a minimum OpenSSL v1.1.1.

## BUG FIXES
* fetchmail can now report mailbox sizes of 2^31 octets and beyond.
  This required C99 support (for the long long type).
  Fixes Debian Bug#873668, reported by Andreas Schmidt.
* fetchmail now defines its OpenSSL API level (1.1.1, or 10101) so
  as to compile with OpenSSL 3.0.0. (fetchmail was requesting to hide
  deprecated APIs.)

## CHANGES
* When fetchmail attempts to log out from an IMAP4 server and the server me=
sses
  up its responses (it is supposed to send an untagged * BYE and a tagged
  A4711 OK) and sends a tagged A4711 BYE response, tolerate that, rather th=
an
  reporting a protocol error. We don't intend to chat any more so the proto=
col
  violation is harmless, and we know the server cannot send more untagged
  status responses.
  Analysis and fix courtesy of Maciej S. Szmigiero, GitLab merge request !2=
0.
* The configure script now spends more effort for getting --with-ssl right,=
 by=20
  running pkg-config in the right environment, and using the AC_LIB_LINKFLA=
GS=20
  macro to obtain run-time library path setting flags.

# KNOWN BUGS AND WORKAROUNDS
  (This section floats upwards through the NEWS file so it stays with the
  current release information)
* Fetchmail does not handle messages without Message-ID header well
  (See sourceforge.net bug #780933)
* Fetchmail currently uses 31-bit signed integers in several places
  where unsigned and/or wider types should have been used, for instance,
  for mailbox sizes, and misreports sizes of 2 GibiB and beyond.=20
  Fixing this requires C89 compatibility to be relinquished.
* BSMTP is mostly untested and errors can cause corrupt output.
* Fetchmail does not track pending deletes across crashes.
* The command line interface is sometimes a bit stubborn, for instance,
  fetchmail -s doesn't work with a daemon running.
* Linux systems may return duplicates of an IP address in some circumstance=
s if
  no or no global IPv6 addresses are configured.
  (No workaround. Ubuntu Bug#582585, Novell Bug#606980.)
* Kerberos 5 may be broken, particularly on Heimdal, and provide bogus error
  messages. This will not be fixed, because the maintainer has no Kerberos 5
  server to test against. Use GSSAPI.
---------------------------------------------------------------------------=
-----

Happy fetches,
Matthias

--0OAP2g/MAC+5xKAE
Content-Type: application/pgp-signature; name="signature.asc"

-----BEGIN PGP SIGNATURE-----
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=AjL6
-----END PGP SIGNATURE-----

--0OAP2g/MAC+5xKAE--


--===============4820490603008406407==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline


--===============4820490603008406407==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

_______________________________________________
Fetchmail-announce mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/fetchmail-announce

--===============4820490603008406407==--