Accepting request 1157608 from home:pmonrealgonzalez:branches:security

- Update to 2.7.1:
 * Fix interrupted LUKS1 decryption resume.
   With the replacement of the cryptsetup-reencrypt tool by the cryptsetup
   reencrypt command, resuming the interrupted LUKS1 decryption operation
   could fail. LUKS2 was not affected.
 * Allow --link-vk-to-keyring with --test-passphrase option.
   This option allows uploading the volume key in a user-specified kernel
   keyring without activating the device.
 * Fix crash when --active-name was used in decryption initialization.
 * Updates and changes to man pages, including indentation, sorting options
   alphabetically, fixing mistakes in crypt_set_keyring_to_link, and fixing
   some typos.
 * Fix compilation with libargon2 when --disable-internal-argon2 was used.
 * Do not require installed argon2.h header and never compile internal
   libargon2 code if the crypto library directly supports Argon2.
 * Fixes to regression tests to support older Linux distributions.

OBS-URL: https://build.opensuse.org/request/show/1157608
OBS-URL: https://build.opensuse.org/package/show/security/cryptsetup?expand=0&rev=194
This commit is contained in:
Pedro Monreal Gonzalez 2024-03-15 11:46:26 +00:00 committed by Git OBS Bridge
parent 9a7370c09b
commit a3ab8c2f62
6 changed files with 41 additions and 21 deletions

View File

@ -1,16 +0,0 @@
-----BEGIN PGP SIGNATURE-----
iQIzBAABCAAdFiEEKikYJD/eRmSNBob52bBXe9k+mPwFAmWw5zoACgkQ2bBXe9k+
mPztwhAAh8ieUWCcw7WwW4lc00ZH77sLc7Ro5J2/0ZAg/HpowOqGqhzJQZ+KJdeF
b6mebw7mKq4PHyzUS7Rba4wQiVEUD2kAQuoyXZJljsxegFOc1LxL/DSOCt7IFJyc
WB+525kPoRrpBWJhGXMn4OcVaelmIJAgDFHcYAccJJTKNgPjDrivpkTAxUsfdTTf
a1F/4I2o7eP5zkWkPqqQIvXzlwQnfD5ulZvnJ30t8E/07CZJ5Hf9iLRa6vruo7Rg
8cJHcOu4MhjuMu+oDvuefj8hM4FyfLU+tt0L7Z3iOZXAGffe+iQUQUyChvN/waEI
R8mpdc89amTHkMTCjYOo2X4sAH9a7mo5L2v+rm5NTZTZn53Gy1Ytbzy2agXY+ebf
DeKTVL3KTMe6KvQUfIqMSrM9oub6o8JDfO+0La9GSkNU/1VvHU5LK3FIomuP8Top
BPfdL8IxSgIityBbby1ZQD97aIgzPZkGsC7/5bVY7mj/LUZxJK61p49U0dlolwss
uzJarjAtDY0iNCfOv/AKZGnVzHAc2cEmVKJ6X243h2NRB5z1snFP8lDtB2AIdcUf
0vEZz1HcwW1de1C0jjQsf9elkeVJfrsFhRhRrEEiHyplR3/uaVwUtrDGOxPsRE+J
SE2sSfURqQPuBKeTO/ymVDt7G0iPd8Ts/BOhQYTn94rsjhONiz8=
=6sya
-----END PGP SIGNATURE-----

View File

@ -1,3 +0,0 @@
version https://git-lfs.github.com/spec/v1
oid sha256:94003a00cd5a81944f45e8dc529e0cfd2a6ff629bd2cd21cf5e574e465daf795
size 11632432

16
cryptsetup-2.7.1.tar.sign Normal file
View File

@ -0,0 +1,16 @@
-----BEGIN PGP SIGNATURE-----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=JiO6
-----END PGP SIGNATURE-----

3
cryptsetup-2.7.1.tar.xz Normal file
View File

@ -0,0 +1,3 @@
version https://git-lfs.github.com/spec/v1
oid sha256:da5d1419e2a86e01aa32fd79582cd54d208857cb541bca2fd426a5ff1aaabbc3
size 11639372

View File

@ -1,3 +1,23 @@
-------------------------------------------------------------------
Wed Mar 13 12:20:35 UTC 2024 - Pedro Monreal <pmonreal@suse.com>
- Update to 2.7.1:
* Fix interrupted LUKS1 decryption resume.
With the replacement of the cryptsetup-reencrypt tool by the cryptsetup
reencrypt command, resuming the interrupted LUKS1 decryption operation
could fail. LUKS2 was not affected.
* Allow --link-vk-to-keyring with --test-passphrase option.
This option allows uploading the volume key in a user-specified kernel
keyring without activating the device.
* Fix crash when --active-name was used in decryption initialization.
* Updates and changes to man pages, including indentation, sorting options
alphabetically, fixing mistakes in crypt_set_keyring_to_link, and fixing
some typos.
* Fix compilation with libargon2 when --disable-internal-argon2 was used.
* Do not require installed argon2.h header and never compile internal
libargon2 code if the crypto library directly supports Argon2.
* Fixes to regression tests to support older Linux distributions.
-------------------------------------------------------------------
Mon Jan 29 16:40:40 UTC 2024 - Pedro Monreal <pmonreal@suse.com>

View File

@ -18,7 +18,7 @@
%define so_ver 12
Name: cryptsetup
Version: 2.7.0
Version: 2.7.1
Release: 0
Summary: Setup program for dm-crypt Based Encrypted Block Devices
License: LGPL-2.0-or-later AND SUSE-GPL-2.0-with-openssl-exception
@ -45,7 +45,7 @@ BuildRequires: pkgconfig(libssh)
BuildRequires: pkgconfig(openssl)
BuildRequires: rubygem(asciidoctor)
Requires(post): coreutils
Requires(postun):coreutils
Requires(postun): coreutils
Provides: integritysetup = %{version}-%{release}
Provides: veritysetup = %{version}-%{release}
%if %{?suse_version} >= 1550