Accepting request 78546 from home:msmeissn:branches:security

updated to version 90

OBS-URL: https://build.opensuse.org/request/show/78546
OBS-URL: https://build.opensuse.org/package/show/security/ecryptfs-utils?expand=0&rev=16
This commit is contained in:
Marcus Meissner 2011-08-11 15:36:30 +00:00 committed by Git OBS Bridge
parent bbf069a9f3
commit f81736c3e9
4 changed files with 22 additions and 5 deletions

View File

@ -1,3 +1,20 @@
-------------------------------------------------------------------
Thu Aug 11 17:25:21 CEST 2011 - meissner@suse.de
- Updated to 90
Fixed several security issues:
* CVE-2011-1831 - Race condition when checking mountpoint during mount.
* CVE-2011-1832 - Race condition when checking mountpoint during unmount.
* CVE-2011-1833 - Race condition when checking source during mount.
* CVE-2011-1834 - Improper mtab handling allowing corruption due to resource
limits, signals, etc.
* CVE-2011-1835 - Key poisoning in ecryptfs-setup-private due to insecure temp
directory.
* CVE-2011-1836 - ecryptfs-recover-private mounts directly in /tmp
* CVE-2011-1837 - Predictable lock counter name and associated races.
New ecryptfs-find binary to find by inode.
-------------------------------------------------------------------
Mon Apr 18 17:06:50 CEST 2011 - meissner@suse.de

View File

@ -24,8 +24,8 @@ License: GPLv2+
Group: Productivity/Security
AutoReqProv: on
Summary: Userspace Utilities for ecryptfs
Version: 87
Release: 1
Version: 90
Release: 2
Source0: http://launchpad.net/ecryptfs/trunk/%version/+download/ecryptfs-utils_%version.orig.tar.gz
Source1: baselibs.conf
BuildRoot: %{_tmppath}/%{name}-%{version}-build

View File

@ -1,3 +0,0 @@
version https://git-lfs.github.com/spec/v1
oid sha256:02952f122ae2a9c1a0fe6835575970fab4cefeb16b88e81ccaf00241c0161e7f
size 542880

View File

@ -0,0 +1,3 @@
version https://git-lfs.github.com/spec/v1
oid sha256:1cdce5ab1f46b58926826dd2f733b98a5b0449d36d43d40147da96fb749cac7e
size 569148