Commit Graph

54 Commits

Author SHA256 Message Date
313affb53e * remove CVE-2013-1775
* remove CVE-2013-1776
  * The non-Unix group plugin is now supported when sudoers data is stored in LDAP.
  * User messages are now always displayed in the user's locale, even when the
  same message is being logged or mailed in a different locale.  
  * Log files created by sudo now explicitly have the group set to group ID 0
  rather than relying on BSD group semantics (which may not be the default).
  * A new exec_background sudoers option can be used to initially run the 
  command without read access to the terminal when running a command in a 
  pseudo-tty. 
  * Sudo now produces better error messages when there is an error in the sudo.conf file.
  * Two new settings have been added to sudo.conf to give the admin better control of 
  how group database queries are performed.
  * There is now a standalone sudo.conf manual page.
  * New support for specifying a SHA-2 digest along with the command in sudoers.
  Supported hash types are sha224, sha256, sha384 and sha512. See the description
  of Digest_Spec in the sudoers manual or the description of sudoCommand in the
  sudoers.ldap manual for details.
  * Fixed potential false positives in visudo's alias cycle detection.
  * Sudo now only builds Position Independent Executables (PIE) by default on Linux
  systems and verifies that a trivial test program builds and runs.

OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=56
2013-07-02 16:36:04 +00:00
8c93addd58 - restore accidentally dropped suse-specific patches
OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=55
2013-07-02 16:30:47 +00:00
07a0c03b9a Accepting request 181200 from home:stroeder:branches:Base:System
Update to upstream release 1.8.7, obsoleted patches.

OBS-URL: https://build.opensuse.org/request/show/181200
OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=53
2013-06-28 12:03:03 +00:00
Vítězslav Čížek
c942c5ab82 Accepting request 156969 from home:vitezslav_cizek:branches:Base:System
- added two security fixes:
  * CVE-2013-1775 (bnc#806919)
    + sudo-1.8.6p3-CVE-2013-1775.patch
  * CVE-2013-1776 (bnc#806921)
    + sudo-1.8.6p3-CVE-2013-1776.patch

OBS-URL: https://build.opensuse.org/request/show/156969
OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=51
2013-03-01 12:07:40 +00:00
f3304123f3 Accepting request 143855 from home:babelworx:ldig:branches:Base:System
license update: ISC
Look at the license file

OBS-URL: https://build.opensuse.org/request/show/143855
OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=49
2012-12-03 14:39:41 +00:00
60747c3aa2 Accepting request 140141 from home:elvigia:branches:Base:System
- sudo 1.8.6p3
* Support for using the System Security Services Daemon (SSSD) as a source of sudoers data
* Fixed a race condition that could cause sudo to receive SIGTTOU (and stop) 
  when resuming a shell that was run via sudo when I/O logging (and use_pty) is not enabled. 
* The sudoers plugin now takes advantage of symbol visibility controls when supported by the compiler or linker.
* Sending SIGTSTP directly to the sudo process will now suspend 
   the running command when I/O logging (and use_pty) is not enabled.

OBS-URL: https://build.opensuse.org/request/show/140141
OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=47
2012-11-05 08:15:29 +00:00
Cristian Rodríguez
76896bfa49 Accepting request 139469 from home:coolo:branches:openSUSE:Factory
- add explicit buildrequire on groff

OBS-URL: https://build.opensuse.org/request/show/139469
OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=45
2012-10-26 15:57:42 +00:00
Robert Milasan
5dc96be976 Accepting request 124880 from home:vuntz:branches:Base:System
Update to 1.8.5p2; we want this as it includes important fixes

OBS-URL: https://build.opensuse.org/request/show/124880
OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=43
2012-06-14 07:37:32 +00:00
5b4fbad316 Accepting request 121223 from home:vitezslav_cizek:branches:Base:System
- update to 1.8.5
  Some of the changes:
  * /etc/environment is no longer read directly on Linux systems when
    PAM is used. Sudo now merges the PAM environment into the user's
    environment which is typically set by the pam_env module.
  * The plugin API has been extended
  * The policy plugin's init_session function is now called by the
    parent sudo process, not the child process that executes the command
    This allows the PAM session to be open and closed in the same process,
    which some PAM modules require.
  * A new group provider plugin, system_group, is included
  * Fixed a potential security issue in the matching of hosts against
    an IPv4 network specified in sudoers.The flaw may allow a user who
    is authorized to run commands on hosts belonging to one IPv4
    network to run commands on a different host (CVE-2012-2337)

OBS-URL: https://build.opensuse.org/request/show/121223
OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=41
2012-05-16 21:13:33 +00:00
Vítězslav Čížek
8dd91c7580 Accepting request 108646 from home:vitezslav_cizek:branches:Base:System
- update to 1.8.4p2
  Some of the changes:
  * The -D flag in sudo has been replaced with a more general
    debugging framework that is configured in sudo.conf.
  * Fixed a crash with sudo -i when a runas group was specified
    without a runas user.
  * New Serbian and Spanish translations for sudo from translationproject.org.
    LDAP-based sudoers may now access by group ID in addition to group name.
  * visudo will now fix the mode on the sudoers file even if no
    changes are made unless the -f option is specified.
  * On systems that use login.conf, sudo -i now sets environment
    variables based on login.conf
  * values in the LDAP search expression are now escaped as per RFC 4515
  * The deprecated "noexec_file" sudoers option is no longer supported.
  * Fixed a race condition when I/O logging is not enabled that could
    result in tty-generated signals (e.g. control-C) being received
    by the command twice.
  * visudo -c will now list any include files that were checked in
    addition to the main sudoers file when everything parses OK.
  * Users that only have read-only access to the sudoers file may
    now run visudo -c. Previously, write permissions were required
    even though no writing is down in check-only mode.

OBS-URL: https://build.opensuse.org/request/show/108646
OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=39
2012-03-09 15:02:22 +00:00
Vítězslav Čížek
a4db0dcc17 Accepting request 102195 from home:vitezslav_cizek:branches:Base:System
- update to 1.8.3p2
  * Fixed a format string vulnerability when the sudo binary
    (or a symbolic link to the sudo binary) contains printf
    format escapes and the -D (debugging) flag is used.

OBS-URL: https://build.opensuse.org/request/show/102195
OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=37
2012-01-31 12:34:31 +00:00
Cristian Rodríguez
dc65d7161e Accepting request 101520 from home:vitezslav_cizek:branches:Base:System
- honour global CFLAGS and LDFLAGS when compiling sesh,
  to avoid rpmlint error (bnc#743157)

OBS-URL: https://build.opensuse.org/request/show/101520
OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=34
2012-01-25 17:06:41 +00:00
Vítězslav Čížek
f3f2cd6ff6 Accepting request 98778 from home:vitezslav_cizek:branches:Base:System
- update to sudo-1.8.3p1 
  * Fixed a crash in the monitor process on Solaris when NOPASSWD
    was specified or when authentication was disabled.
  * Fixed matching of a Runas_Alias in the group section of a Runas_Spec.

OBS-URL: https://build.opensuse.org/request/show/98778
OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=33
2012-01-04 17:06:35 +00:00
Cristian Rodríguez
7a585a77e0 Accepting request 98341 from home:a_jaeger:FactoryFix
Set timedir correctly

OBS-URL: https://build.opensuse.org/request/show/98341
OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=31
2011-12-28 19:07:41 +00:00
Vítězslav Čížek
64c643111a - remove old tarball
- sudo-grp-include.patch no longer needed

OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=28
2011-10-24 12:08:46 +00:00
Vítězslav Čížek
b2c6f045a9 Accepting request 89134 from home:vitezslav_cizek:branches:Base:System
- update to sudo-1.8.3
  - Fixed expansion of strftime() escape sequences
    in the log_dir sudoers setting.
  - Esperanto, Italian and Japanese
    translations from translationproject.org.
  - Added --enable-werror configure option for gcc's
  -Werror flag.  - Visudo no longer
    assumes all editors support the +linenumber command line argument.
    It now uses a whitelist of editors known to support the option.
  - Fixed matching of network addresses when a netmask is specified but
    the address is not the first one in the CIDR block.
  - The configure script now check whether or not errno.h declares the
    errno variable. Previously, sudo would always declare errno itself
    for older systems that don't declare it in errno.h.
  - The NOPASSWD tag is now honored for denied commands too,
    which matches historic sudo behavior (prior to sudo 1.7.0).
  - Sudo now honors the DEREF
    setting in ldap.conf which controls how alias dereferencing is done
    during an LDAP search.
  - A symbol conflict with the
    pam_ssh_agent_auth PAM module that would cause a crash been
    resolved.
  - The inability to load a group provider plugin is no
    longer a fatal error.
  - A potential crash in the utmp handling
    code has been fixed.
  - Two PAM session issues have been resolved.
    In previous versions of sudo, the PAM session was opened as one
    user and closed as another. Additionally, if no authentication was
    performed, the PAM session would never be closed.

OBS-URL: https://build.opensuse.org/request/show/89134
OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=27
2011-10-24 11:08:52 +00:00
Vítězslav Čížek
371ec6d550 Accepting request 87600 from home:prusnak:branches:Base:System
- updated to sudo-1.8.2
- please forward to factory

OBS-URL: https://build.opensuse.org/request/show/87600
OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=25
2011-10-13 13:29:20 +00:00
Petr Uzel
f18a604ee0 update to 1.8.1p2
OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=22
2011-05-20 12:20:15 +00:00
Petr Uzel
af665bed11 Accepting request 64993 from home:puzel:staging
OBS-URL: https://build.opensuse.org/request/show/64993
OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=20
2011-03-23 12:45:03 +00:00
Petr Uzel
89efcc0d2c bnc#667558, bnc#663881
OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=18
2011-01-28 11:22:22 +00:00
OBS User buildservice-autocommit
1d242cbebb Updating link to change in openSUSE:Factory/sudo revision 31.0
OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=a506db91f329c9c24c65bcc4b0f4ddab
2010-07-30 13:55:28 +00:00
OBS User autobuild
6733f8405c Accepting request 44242 from Base:System
checked in (request 44242)

OBS-URL: https://build.opensuse.org/request/show/44242
OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=16
2010-07-30 13:55:26 +00:00
Stephan Kulow
f06fd25497 Accepting request 42167 from home:jengelh:smp
Copy from home:jengelh:smp/sudo via accept of submit request 42167 revision 2.
Request was accepted with message:
Reviewed ok

OBS-URL: https://build.opensuse.org/request/show/42167
OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=15
2010-06-28 21:22:50 +00:00
Philipp Thomas
1e92e556a4 Accepting request 41518 from home:pbleser:branches:Base:System
Copy from home:pbleser:branches:Base:System/sudo via accept of submit request 41518 revision 2.
Request was accepted with message:
reviewed ok.

OBS-URL: https://build.opensuse.org/request/show/41518
OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=13
2010-06-16 09:14:28 +00:00
OBS User buildservice-autocommit
104c5fc11b Updating link to change in openSUSE:Factory/sudo revision 27.0
OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=fdd61363b4ef456a4506691a09e6283e
2010-06-02 16:12:04 +00:00
OBS User autobuild
f9207a7cdd Accepting request 40990 from Base:System
checked in (request 40990)

OBS-URL: https://build.opensuse.org/request/show/40990
OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=12
2010-06-02 16:12:03 +00:00
Petr Uzel
aeeae9962d bnc#594738
OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=11
2010-06-02 12:31:24 +00:00
OBS User buildservice-autocommit
ebe3884aa7 Updating link to change in openSUSE:Factory/sudo revision 26.0
OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=762302b9eca24013cbda733513da20e3
2010-05-25 11:25:42 +00:00
OBS User autobuild
d5b94ade1b Accepting request 40277 from Base:System
checked in (request 40277)

OBS-URL: https://build.opensuse.org/request/show/40277
OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=10
2010-05-25 11:25:41 +00:00
Petr Uzel
5afda44d49 bnc#594738
OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=9
2010-05-18 15:52:50 +00:00
OBS User autobuild
d726d9c64b Accepting request 33397 from Base:System
checked in (request 33397)

OBS-URL: https://build.opensuse.org/request/show/33397
OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=8
2010-02-25 01:34:38 +00:00
OBS User autobuild
983ba54b5c Accepting request 33397 from Base:System
Copy from Base:System/sudo based on submit request 33397 from user prusnak

OBS-URL: https://build.opensuse.org/request/show/33397
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/sudo?expand=0&rev=24
2010-02-25 01:34:39 +00:00
OBS User autobuild
ad1a4319ea Accepting request 32317 from Base:System
Copy from Base:System/sudo based on submit request 32317 from user coolo

OBS-URL: https://build.opensuse.org/request/show/32317
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/sudo?expand=0&rev=23
2010-02-11 18:37:57 +00:00
OBS User unknown
c6828a9cf8 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/sudo?expand=0&rev=21 2009-07-16 14:55:46 +00:00
OBS User unknown
3544e68c00 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/sudo?expand=0&rev=20 2009-04-27 20:11:38 +00:00
OBS User unknown
ad1e2def27 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/sudo?expand=0&rev=19 2009-01-27 01:25:55 +00:00
OBS User unknown
c9351a3cb8 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/sudo?expand=0&rev=18 2008-08-22 20:03:52 +00:00
OBS User unknown
b232a2dbd6 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/sudo?expand=0&rev=17 2008-08-07 10:00:06 +00:00
OBS User unknown
96574f9ebd OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/sudo?expand=0&rev=16 2008-05-06 22:15:06 +00:00
OBS User unknown
fae157235e OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/sudo?expand=0&rev=15 2008-04-25 14:46:55 +00:00
OBS User unknown
39baf0550d OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/sudo?expand=0&rev=14 2008-03-21 03:40:40 +00:00
OBS User unknown
a4a82963ae OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/sudo?expand=0&rev=13 2007-12-06 00:36:36 +00:00
OBS User unknown
da08cb1ab2 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/sudo?expand=0&rev=12 2007-11-06 22:24:53 +00:00
OBS User unknown
8a9fb54920 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/sudo?expand=0&rev=11 2007-10-30 11:29:53 +00:00
OBS User unknown
e55427ece7 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/sudo?expand=0&rev=10 2007-10-10 10:10:42 +00:00
OBS User unknown
ef4d6a4712 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/sudo?expand=0&rev=9 2007-10-04 01:12:16 +00:00
OBS User unknown
a0fd879071 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/sudo?expand=0&rev=8 2007-08-29 20:45:09 +00:00
OBS User unknown
a95e6b9f9a OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/sudo?expand=0&rev=7 2007-08-15 18:37:18 +00:00
OBS User unknown
88c660518c OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/sudo?expand=0&rev=6 2007-08-12 09:46:56 +00:00
OBS User unknown
16b0f4feab OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/sudo?expand=0&rev=5 2007-08-03 21:18:41 +00:00