- Update to 2.4.6:

* CVE-2018-9336, bsc#1090839: Fix potential double-free() in
    Interactive Service
  * Delete the IPv6 route to the "connected" network on tun close
  * Management: warn about password only when the option is in use
  * Avoid overflow in wakeup time computation

OBS-URL: https://build.opensuse.org/package/show/network:vpn/openvpn?expand=0&rev=136
This commit is contained in:
Reinhard Max 2018-04-27 12:35:13 +00:00 committed by Git OBS Bridge
parent a1ceeccc0c
commit 01270aa102
6 changed files with 31 additions and 21 deletions

View File

@ -1,3 +0,0 @@
version https://git-lfs.github.com/spec/v1
oid sha256:43c0a363a332350f620d1cd93bb431e082bedbc93d4fb872f758650d53c1d29e
size 942696

View File

@ -1,16 +0,0 @@
-----BEGIN PGP SIGNATURE-----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=jjwg
-----END PGP SIGNATURE-----

3
openvpn-2.4.6.tar.xz Normal file
View File

@ -0,0 +1,3 @@
version https://git-lfs.github.com/spec/v1
oid sha256:4f6434fa541cc9e363434ea71a16a62cf2615fb2f16af5b38f43ab5939998c26
size 943376

16
openvpn-2.4.6.tar.xz.asc Normal file
View File

@ -0,0 +1,16 @@
-----BEGIN PGP SIGNATURE-----
iQIzBAABCAAdFiEE1Ri5vWQ8+U2l7Zlw8TKxy68THK4FAlre2XIACgkQ8TKxy68T
HK44BQ//aJOa+mT+BvGqhz3gZCrz3Ez6QumwJcn7Sx/zovxDf9KpNhFzykcwvtEd
cNdorJ0il/WkW819srV6u+665MssiIxm6VFg5WzPz5I+nDO23QfETsSu54PIWQBX
FrI9+6Rec+v4/Y/ktV4FVqUZ/36rnZjX43YYxwijs+tHXROiU9IhIKNmlGVfB7Iy
tysJrqg5wzwhO+CTYTmMKwrb6LLTwcHxyWMqPiPrflIGY6sy41RlmvP90u1zmugx
wIka3oOp7cD70KWMJns68Lc0OkFIz3RO2YW7KhunxdcNzCoHrlCr+HCBLSf8lPbx
yL1sFOVk4ibZxFKzOvtOEJH1wYquI2B5Gd9QQxIeCNUUAvSh3E/0nMZNqJkwlObx
OtxakHSqfskxVrpAz7OT9ARHIZUWVfYv/B+2454VfxRM2Rr+Job6xO2i5ukTKHc7
AdCyY2lZlI8909MjJ0cc/ZeNyB4+jugUPz4XX8ebUctBP1gdUD6XZ6DDo11n9JpD
lwbc/U1w2dmdGIZ3VrfVr3UiNhB5rxhwlxjSj24pczCjP58FQHKhX5u+3y8/MJ/7
Efirugzny3ie1xpW7MOsrndjiv+wQD/gwaszA9HSQnJ4M49byOKJJSg+/Y0vR/PN
8oIR7vnEJ5CS0EVaxBJeZifp+gM5L05xdfaGk5WJ9HZDsP4HkUE=
=dY7S
-----END PGP SIGNATURE-----

View File

@ -1,3 +1,13 @@
-------------------------------------------------------------------
Fri Apr 27 12:25:19 UTC 2018 - max@suse.com
- Update to 2.4.6:
* CVE-2018-9336, bsc#1090839: Fix potential double-free() in
Interactive Service
* Delete the IPv6 route to the "connected" network on tun close
* Management: warn about password only when the option is in use
* Avoid overflow in wakeup time computation
------------------------------------------------------------------- -------------------------------------------------------------------
Tue Apr 10 14:29:18 UTC 2018 - max@suse.com Tue Apr 10 14:29:18 UTC 2018 - max@suse.com

View File

@ -29,7 +29,7 @@
%define _rundir %{_localstatedir}/run %define _rundir %{_localstatedir}/run
%endif %endif
Name: openvpn Name: openvpn
Version: 2.4.5 Version: 2.4.6
Release: 0 Release: 0
Summary: Full-featured SSL VPN solution using a TUN/TAP Interface Summary: Full-featured SSL VPN solution using a TUN/TAP Interface
License: SUSE-GPL-2.0-with-openssl-exception AND LGPL-2.1-only License: SUSE-GPL-2.0-with-openssl-exception AND LGPL-2.1-only
@ -213,7 +213,7 @@ find sample -name .gitignore | xargs rm -f
%post %post
%if %{with_systemd} %if %{with_systemd}
systemd-tmpfiles --create %{_tmpfilesdir}/%{name}.conf ||: %tmpfiles_create %{_tmpfilesdir}/%{name}.conf
%service_add_post %{name}.target %service_add_post %{name}.target
# try to migrate openvpn.service autostart to openvpn@<CONF>.service # try to migrate openvpn.service autostart to openvpn@<CONF>.service
if test ${FIRST_ARG:-$1} -ge 1 -a \ if test ${FIRST_ARG:-$1} -ge 1 -a \