From f5d8d49f63d8e5b82e58a990ce901ccd524772467c1053ff3529039e8654e218 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Adrian=20Schr=C3=B6ter?= Date: Mon, 30 Sep 2024 16:44:49 +0200 Subject: [PATCH] Sync from SUSE:SLFO:Main 389-ds revision e6915b013ad3488a0227cfb40aca2d3e --- 389-ds-base-2.2.10~git2.345056d3.tar.zst | 3 ++ 389-ds-base-2.2.8~git65.347aae6.tar.zst | 3 -- 389-ds-base.obsinfo | 6 +-- 389-ds.changes | 54 ++++++++++++++++++++++++ 389-ds.spec | 2 +- _servicedata | 2 +- vendor.tar.zst | 4 +- 7 files changed, 64 insertions(+), 10 deletions(-) create mode 100644 389-ds-base-2.2.10~git2.345056d3.tar.zst delete mode 100644 389-ds-base-2.2.8~git65.347aae6.tar.zst diff --git a/389-ds-base-2.2.10~git2.345056d3.tar.zst b/389-ds-base-2.2.10~git2.345056d3.tar.zst new file mode 100644 index 0000000..f7a9c6c --- /dev/null +++ b/389-ds-base-2.2.10~git2.345056d3.tar.zst @@ -0,0 +1,3 @@ +version https://git-lfs.github.com/spec/v1 +oid sha256:c23e6313b8451c945b7f654eed869c2d6ae74cc21f43bd2d49c3f3feb8f3e8f7 +size 4493944 diff --git a/389-ds-base-2.2.8~git65.347aae6.tar.zst b/389-ds-base-2.2.8~git65.347aae6.tar.zst deleted file mode 100644 index 3721043..0000000 --- a/389-ds-base-2.2.8~git65.347aae6.tar.zst +++ /dev/null @@ -1,3 +0,0 @@ -version https://git-lfs.github.com/spec/v1 -oid sha256:39ad2754b94e7fecfced6496eeba50192c8db95b463b491b920e864cce0060b6 -size 4486106 diff --git a/389-ds-base.obsinfo b/389-ds-base.obsinfo index 9fbe9dc..a0a998d 100644 --- a/389-ds-base.obsinfo +++ b/389-ds-base.obsinfo @@ -1,4 +1,4 @@ name: 389-ds-base -version: 2.2.8~git65.347aae6 -mtime: 1706796399 -commit: 347aae6f7f461cbfd736656cfe9e8ddba9e0217b +version: 2.2.10~git2.345056d3 +mtime: 1723140407 +commit: 345056d3b5cf6e2d7d592b00feb0755496c0dc9a diff --git a/389-ds.changes b/389-ds.changes index 44cea32..7e12770 100644 --- a/389-ds.changes +++ b/389-ds.changes @@ -1,3 +1,57 @@ +------------------------------------------------------------------- +Mon Aug 12 01:55:09 UTC 2024 - william.brown@suse.com + +- bsc#1225512 - VUL-0: CVE-2024-3657: 389-ds: potential denial of + service via specially crafted kerberos AS-REQ request +- bsc#1226277 - VUL-0: CVE-2024-5953: 389-ds: malformed userPassword + hashes may cause a denial of service +- bsc#1228912 - 389ds crash when user does change password using + iso-8859-1 encoding +- Update to version 2.2.10~git2.345056d3: + * Issue 2324 - Add a CI test (#6289) + * Issue 6284 - BUG - freelist ordering causes high wtime + * Bump version to 2.2.10 + * Issue 5327 - Fix test metadata + * Security fix for CVE-2024-5953 + * Security fix for CVE-2024-3657 + * Security fix for CVE-2024-2199 (bsc#1225507) + * Issue 5853 - Update Cargo.lock + * Issue 5962 - Rearrange includes for 32-bit support logic + * Issue 5973 - Fix fedora cop RawHide builds (#5974) + * Bump braces from 3.0.2 to 3.0.3 in /src/cockpit/389-console + * Issue 6254 - Enabling replication for a sub suffix crashes browser (#6255) + * Issue 6224 - d2entry - Could not open id2entry err 0 - at startup when having sub-suffixes (#6225) + * Issue 6183 - Slow ldif2db import on a newly created BDB backend (#6208) + * Issue 6170 - audit log buffering doesn't handle large updates + * Issue 6193 - Test failure: test_tls_command_returns_error_text + * Issue 6189 - CI tests fail with `[Errno 2] No such file or directory: '/var/cache/dnf/metadata_lock.pid'` + * Issue 6172 - RFE: improve the performance of evaluation of filter component when tested against a large valueset (like group members) (#6173) + * Issue 6092 - passwordHistory is not updated with a pre-hashed password (#6093) + * Issue 6080 - ns-slapd crash in referint_get_config (#6081) + * Issue 6117 - Fix the UTC offset print (#6118) + * Issue 5305 - OpenLDAP version autodetection doesn't work + * Issue 6112 - RFE - add new operation note for MFA authentications + * Issue 5842 - Add log buffering to audit log + * Issue 6103 - New connection timeout error breaks errormap (#6104) + * Issue 6067 - Improve dsidm CLI No Such Entry handling (#6079) + * Issue 6096 - Improve connection timeout error logging (#6097) + * Issue 6067 - Add hidden -v and -j options to each CLI subcommand (#6088) + * Issue 5487 - Fix various isses with logconv.pl (#6085) + * Issue 6052 - Paged results test sets hostname to `localhost` on test collection + * Issue 6061 - Certificate lifetime displayed as NaN + * Issue 6043, 6044 - Enhance Rust and JS bundling and add SPDX licenses for both (#6045) + * Issue 3555 - Remove audit-ci from dependencies (#6056) + * Issue 5647 - Fix unused variable warning from previous commit (#5670) + * issue 5647 - covscan: memory leak in audit log when adding entries (#5650) + * Issue 6047 - Add a check for tagged commits + * Issue 6041 - dscreate ds-root - accepts relative path (#6042) + * Issue 6034 - Change replica_id from str to int + * Issue 5938 - Attribute Names changed to lowercase after adding the Attributes (#5940) + * Issue 5870 - ns-slapd crashes at startup if a backend has no suffix (#5871) + * Issue 5939 - During an update, if the target entry is reverted in the entry cache, the server should not retry to lock it (#6007) + * Issue 5944 - Reversion of the entry cache should be limited to BETXN plugin failures (#5994) + * Issue 5954 - Disable Transparent Huge Pages + ------------------------------------------------------------------- Tue Feb 13 03:08:49 UTC 2024 - william.brown@suse.com diff --git a/389-ds.spec b/389-ds.spec index 289549d..b56b16e 100644 --- a/389-ds.spec +++ b/389-ds.spec @@ -33,7 +33,7 @@ %define svrcorelib libsvrcore0 Name: 389-ds -Version: 2.2.8~git65.347aae6 +Version: 2.2.10~git2.345056d3 Release: 0 Summary: 389 Directory Server License: GPL-3.0-or-later AND MPL-2.0 diff --git a/_servicedata b/_servicedata index 7082c84..815739d 100644 --- a/_servicedata +++ b/_servicedata @@ -1,4 +1,4 @@ https://github.com/389ds/389-ds-base.git - 347aae6f7f461cbfd736656cfe9e8ddba9e0217b \ No newline at end of file + 345056d3b5cf6e2d7d592b00feb0755496c0dc9a \ No newline at end of file diff --git a/vendor.tar.zst b/vendor.tar.zst index a14d794..c3814a1 100644 --- a/vendor.tar.zst +++ b/vendor.tar.zst @@ -1,3 +1,3 @@ version https://git-lfs.github.com/spec/v1 -oid sha256:5816b96ff7ec3a2f7d8f9da6fbf85cd9bd8f2f2e67f884059f5ee2aa8d5a4928 -size 14411744 +oid sha256:e6587338114a85baad589637d80e68c4272d8e0ad6a8fce8caef41c5dc7cd7e2 +size 17199603