ANNOUNCE: fetchmail 6.4.24 is available (manual & translation updates, OpenSSL 1.0.2 workaround for Let's Encrypt sites)

Matthias Andree <[email protected]>
Newsgroups gmane.mail.fetchmail.user
Message-ID <YZjCzUjX9RkFmNu9__25355.1058283605$1637401328$gmane$org@ryzen.an3e.de>
Greetings,

The 6.4.24 release of fetchmail is now available at 
<https://sourceforge.net/projects/fetchmail/files/branch_6.4/>.

DISTRIBUTORS please note OpenSSL's licensing change for OpenSSL 3,
and you may want to review COPYING. NOTE that LibreSSL licensing
is incompatible with fetchmail's, as there is no GPL clause 2(b) 
exception for LibreSSL.

The source archive is available at:
<https://sourceforge.net/projects/fetchmail/files/branch_6.4/fetchmail-6.4.24.tar.xz/download>
<https://sourceforge.net/projects/fetchmail/files/branch_6.4/fetchmail-6.4.24.tar.lz/download>

Detached GnuPG signatures for the respective tarballs are at:
<https://sourceforge.net/projects/fetchmail/files/branch_6.4/fetchmail-6.4.24.tar.xz.asc/download>
<https://sourceforge.net/projects/fetchmail/files/branch_6.4/fetchmail-6.4.24.tar.lz.asc/download>

SHA256 hash values for the tarballs:
SHA256(fetchmail-6.4.24.tar.lz)= 10018eaf3930cdc3162304f507bbd063233a0dde1febb82795c910c4c2f54b64
SHA256(fetchmail-6.4.24.tar.xz)= 9c961df25cd922f539218b0b56a77e7a47778e49ed907edaa5b4941ad3b253cf

Here are the release notes:

---------------------------------------------------------------------------------
fetchmail-6.4.24 (released 2021-11-20, 30218 LoC):

# OPENSSL AND LICENSING NOTE:
> see fetchmail-6.4.22, and the file COPYING.

  Note that distribution of packages linked with LibreSSL is not feasible
  due to a missing GPLv2 clause 2(b) exception.

# COMPATIBILITY:
* Bison 3.8 dropped yytoknum altogether, breaking compilation due to a
  warning workaround. Remove the cast of yytoknum to void.  This may cause
  a compiler warning to reappear with older Bison versions.
* OpenSSL 1.0.2: Workaround for systems that keep the expired DST Root CA X3 
  certificate in its trust store because OpenSSL by default prefers the 
  untrusted certificate and fails.  Fetchmail now sets the 
  X509_V_FLAG_TRUSTED_FIRST flag (on OpenSSL 1.0.2 only).
  This is workaround #2 from the OpenSSL Blog.  For details, see both:
  https://www.openssl.org/blog/blog/2021/09/13/LetsEncryptRootCertExpire/
  https://letsencrypt.org/docs/dst-root-ca-x3-expiration-september-2021/

  NOTE: OpenSSL 1.0.2 is end of life, it is assumed that the OpenSSL library
  is kept up to date by a distributor or via OpenSSL support contract.
  Where this is not the case, please upgrade to a supported OpenSSL version.

# DOCUMENTATION:
* The manual page was revised after re-checking with mandoc -Tlint, aspell,
  igor. Some more revisions were made for clarity.

# TRANSLATIONS: language translations were updated by these fine people:
* sv:    Göran Uddeborg [Swedish]
* pl:    Jakub Bogusz [Polish]
* fr:    Frédéric Marchal [French]
* cs:    Petr Pisar [Czech]
* eo:    Keith Bowes [Esperanto]
* ja:    Takeshi Hamasaki [Japanese]

--------------------------------------------------------------------------------

Happy fetches,
Matthias

_______________________________________________
Fetchmail-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/fetchmail-users
signature.asc (application/pgp-signature, 833 B)
-----BEGIN PGP SIGNATURE-----
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=aOEI
-----END PGP SIGNATURE-----
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.