Commit Graph

42 Commits

Author SHA256 Message Date
Dominique Leuenberger
7149753868 Accepting request 665953 from security
Incorporate FATE# in changes file for SLE-15-SP1 (bsc#1121860)

OBS-URL: https://build.opensuse.org/request/show/665953
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tpm2.0-abrmd?expand=0&rev=12
2019-01-21 09:52:59 +00:00
2ffd556609 Incorporate FATE# in changes file for SLE-15-SP1 (bsc#1121860)
OBS-URL: https://build.opensuse.org/package/show/security/tpm2.0-abrmd?expand=0&rev=41
2019-01-14 14:21:47 +00:00
Dominique Leuenberger
92ba446dd8 Accepting request 644573 from security
- add a Requires towards tpm2-0-tss, because that main package holds the udev
  rules and logic for setting up the tss user. Without this the daemon can't
  start up correctly.

OBS-URL: https://build.opensuse.org/request/show/644573
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tpm2.0-abrmd?expand=0&rev=11
2018-10-26 09:10:05 +00:00
1d9194c69e - add a Requires towards tpm2-0-tss, because that main package holds the udev
rules and logic for setting up the tss user. Without this the daemon can't
  start up correctly.

OBS-URL: https://build.opensuse.org/package/show/security/tpm2.0-abrmd?expand=0&rev=39
2018-10-25 09:01:40 +00:00
Dominique Leuenberger
466bf92992 Accepting request 643993 from security
- fix broken build due to newer glib dependency that reports a full path for
  gdbus-codegen, breaking the configure check.

OBS-URL: https://build.opensuse.org/request/show/643993
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tpm2.0-abrmd?expand=0&rev=10
2018-10-23 18:42:25 +00:00
14047cdd08 - fix broken build due to newer glib dependency that reports a full path for
gdbus-codegen, breaking the configure check.

OBS-URL: https://build.opensuse.org/package/show/security/tpm2.0-abrmd?expand=0&rev=37
2018-10-23 15:47:33 +00:00
Dominique Leuenberger
385c6e60ed Accepting request 638481 from security
- update to version 2.0.2:
  - --enable-integration option to configure script now works as documented.
  - Format specifier with wrong size in util module.
  - Initialize TCTI context to 0 before setting values. This will cause all
    members that aren't explicitly initialized by be 0.

OBS-URL: https://build.opensuse.org/request/show/638481
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tpm2.0-abrmd?expand=0&rev=9
2018-09-28 06:53:20 +00:00
8b282ca0aa remove signature file
OBS-URL: https://build.opensuse.org/package/show/security/tpm2.0-abrmd?expand=0&rev=35
2018-09-26 16:04:57 +00:00
6860a81c92 - update to version 2.0.2:
- --enable-integration option to configure script now works as documented.
  - Format specifier with wrong size in util module.
  - Initialize TCTI context to 0 before setting values. This will cause all
    members that aren't explicitly initialized by be 0.

OBS-URL: https://build.opensuse.org/package/show/security/tpm2.0-abrmd?expand=0&rev=34
2018-09-26 15:56:05 +00:00
Yuchen Lin
121abbe5e0 Accepting request 636379 from security
- add recommends to the tcti-device and tcti-abrmd. Otherwise they're not
  installed right away, rendering the abrmd quite unusable.

OBS-URL: https://build.opensuse.org/request/show/636379
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tpm2.0-abrmd?expand=0&rev=8
2018-09-19 12:30:37 +00:00
b29ad9fd05 - add recommends to the tcti-device and tcti-abrmd. Otherwise they're not
installed right away, rendering the abrmd quite unusable.

OBS-URL: https://build.opensuse.org/package/show/security/tpm2.0-abrmd?expand=0&rev=32
2018-09-18 09:05:57 +00:00
Dominique Leuenberger
440b8bea80 Accepting request 628591 from security
- Update to version 2.0.1:
  * SessionList: Fix Connection object reference leak.
  * source/sink: Organize ControlMessage processing.
  * CommandSource: Replace 'connection-removed' signal with ControlMessage.
  * SessionList: Remove all locking.
  * ConnectionManager: Remove 'connection-removed' signal.
  * ci: Build 'check' target when CC is gcc.
  * build: Fix bad URLs in configure script.
  * CHANGELOG.md: Add version number and date for 2.0.1 release.
  * Replace references to drand48_r family of functions for portability
  * Fix for type-punned pointer reported in newer compilers that enforce strict aliasing

OBS-URL: https://build.opensuse.org/request/show/628591
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tpm2.0-abrmd?expand=0&rev=7
2018-08-12 18:53:45 +00:00
e00fdb0c4b fixed source URL
OBS-URL: https://build.opensuse.org/package/show/security/tpm2.0-abrmd?expand=0&rev=30
2018-08-10 11:00:36 +00:00
50ad8ee045 OBS-URL: https://build.opensuse.org/package/show/security/tpm2.0-abrmd?expand=0&rev=29 2018-08-10 10:33:03 +00:00
c0e2898883 - Update to version 2.0.1:
* SessionList: Fix Connection object reference leak.
  * source/sink: Organize ControlMessage processing.
  * CommandSource: Replace 'connection-removed' signal with ControlMessage.
  * SessionList: Remove all locking.
  * ConnectionManager: Remove 'connection-removed' signal.
  * ci: Build 'check' target when CC is gcc.
  * build: Fix bad URLs in configure script.
  * CHANGELOG.md: Add version number and date for 2.0.1 release.
  * Replace references to drand48_r family of functions for portability
  * Fix for type-punned pointer reported in newer compilers that enforce strict aliasing

OBS-URL: https://build.opensuse.org/package/show/security/tpm2.0-abrmd?expand=0&rev=28
2018-08-10 10:31:50 +00:00
Dominique Leuenberger
1de8f4ed3b Accepting request 620450 from security
please handle together with sr#620445, sr#620444

- Trying to fix build on older distros that fail because of a missing or
  broken autoconf valgrind detection macro. Removing  autoreconf to hopefully
  fix this.

- add fix_dlopen.patch: fixes an issue with dlopen()'ing the tcti-device
  library from tpm2-0-tss. See
  https://github.com/tpm2-software/tpm2-abrmd/issues/486.

- update to major version 2.0.0:
  - support_dbus_activation.diff: removed, is not contained upstream
  - the tpm2 stack introduces an incompatible ABI to the previous version with
    this update. There is no compatibility layer, libraries have new names
etc.
  - upstream changelog:
    ## 2.0.0 - 2018-06-22
    ### Added
    - Integration test script and build support to execute integration tests
    against a physical TPM2 device on the build platform.
    - Implementation of dynamic TCTI initialization mechanism.
    - configure option `--enable-integration` to enable integration tests.
    The simulator executable must be on PATH.
    - Support for version 2.0 of tpm2-tss libraries.
    ### Changed
    - 'max-transient-objects' command line option renamted to 'max-transients'.
    - Added -Wextra for more strict checks at compile time.
    - Install location of headers to $(includedir)/tss2.
    ### Fixed
    - Added missing checks for NULL parameters identified by the check-build.
    - Bug in session continuation logic.
    - Off by one error in HandleMap.

OBS-URL: https://build.opensuse.org/request/show/620450
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tpm2.0-abrmd?expand=0&rev=6
2018-07-06 08:41:17 +00:00
63a9433b38 changed source URL to release tarbal, adjust github URL to new tpm2-software org
OBS-URL: https://build.opensuse.org/package/show/security/tpm2.0-abrmd?expand=0&rev=26
2018-07-03 11:47:01 +00:00
3f5af3599f OBS-URL: https://build.opensuse.org/package/show/security/tpm2.0-abrmd?expand=0&rev=25 2018-07-03 10:52:52 +00:00
0ea529fd90 OBS-URL: https://build.opensuse.org/package/show/security/tpm2.0-abrmd?expand=0&rev=24 2018-07-03 10:49:47 +00:00
89d067305c OBS-URL: https://build.opensuse.org/package/show/security/tpm2.0-abrmd?expand=0&rev=23 2018-07-03 10:46:16 +00:00
61a8990276 OBS-URL: https://build.opensuse.org/package/show/security/tpm2.0-abrmd?expand=0&rev=22 2018-07-03 09:59:56 +00:00
ea25d61a41 - Trying to fix build on older distros that fail because of a missing or
broken autoconf valgrind detection macro. Removing  autoreconf to hopefully
  fix this.

OBS-URL: https://build.opensuse.org/package/show/security/tpm2.0-abrmd?expand=0&rev=21
2018-07-03 09:21:33 +00:00
2ccdd2a027 - add fix_dlopen.patch: fixes an issue with dlopen()'ing the tcti-device
library from tpm2-0-tss. See
  https://github.com/tpm2-software/tpm2-abrmd/issues/486.

OBS-URL: https://build.opensuse.org/package/show/security/tpm2.0-abrmd?expand=0&rev=20
2018-07-02 09:29:58 +00:00
5fe02cf67b OBS-URL: https://build.opensuse.org/package/show/security/tpm2.0-abrmd?expand=0&rev=19 2018-06-29 14:14:44 +00:00
Dominique Leuenberger
a6159bc70d Accepting request 578992 from security
- update to upstream version 1.2.0:
  - Limit maximum number of active sessions per connection with '--max-sessions'.
  - Flush all transient objects and sessions on daemon start with '--flush-all'.
  - Allow passing of sessions across connections with ContextSave / Load.
  - Unref the GUnixFDList returned by GIO / dbus in the TCTI init function.
    This fixes a memory leak in the TCTI library.
- correctly trigger udev to update /dev/tpm* permissions after package
  installation. (bnc#1078687)
- prepared support_dbus_activation.diff patch which adds D-Bus activation, but
  can't use it yet due to rpmlint

this depends on sr#578991, please put them into the same staging project

OBS-URL: https://build.opensuse.org/request/show/578992
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tpm2.0-abrmd?expand=0&rev=5
2018-02-26 22:24:21 +00:00
e7db476738 reference added but unused patch to satisfy factory checkers
- prepared support_dbus_activation.diff patch which adds D-Bus activation, but
  can't use it yet due to rpmlint

OBS-URL: https://build.opensuse.org/package/show/security/tpm2.0-abrmd?expand=0&rev=17
2018-02-22 12:17:22 +00:00
e91d8694b6 - correctly trigger udev to update /dev/tpm* permissions after package
installation. (bnc#1078687)

OBS-URL: https://build.opensuse.org/package/show/security/tpm2.0-abrmd?expand=0&rev=16
2018-02-22 11:39:11 +00:00
895b7f4def - update to upstream version 1.2.0:
- Limit maximum number of active sessions per connection with '--max-sessions'.
  - Flush all transient objects and sessions on daemon start with '--flush-all'.
  - Allow passing of sessions across connections with ContextSave / Load.
  - Unref the GUnixFDList returned by GIO / dbus in the TCTI init function.
    This fixes a memory leak in the TCTI library.

OBS-URL: https://build.opensuse.org/package/show/security/tpm2.0-abrmd?expand=0&rev=15
2018-02-22 11:37:19 +00:00
Dominique Leuenberger
25eb4b1290 Accepting request 542015 from security
- fix_service_paths.diff: fixed broken systemd service unit (bnc#1066123). the
  service unit file in the upstream distribution tarball is already configured
  and looks for binaries and configuration files in the /usr/local prefix
  which is wrong.

OBS-URL: https://build.opensuse.org/request/show/542015
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tpm2.0-abrmd?expand=0&rev=4
2017-11-16 13:02:09 +00:00
45aa70719e removed bogus patch, added patch name to changes file.
OBS-URL: https://build.opensuse.org/package/show/security/tpm2.0-abrmd?expand=0&rev=13
2017-11-15 12:21:15 +00:00
177ba37246 - service_path.patch: fixed broken systemd service unit (bnc#1066123). the
service unit file in the upstream distribution tarball is already configured
  and looks for binaries and configuration files in the /usr/local prefix
  which is wrong.

OBS-URL: https://build.opensuse.org/package/show/security/tpm2.0-abrmd?expand=0&rev=12
2017-11-15 12:20:34 +00:00
b981d03939 - fixed broken systemd service unit (bnc#1066123). the service unit file in
the upstream distribution tarball is already configured and looks for
  binaries and configuration files in the /usr/local prefix which is wrong.

OBS-URL: https://build.opensuse.org/package/show/security/tpm2.0-abrmd?expand=0&rev=11
2017-11-15 11:44:33 +00:00
Dominique Leuenberger
dd75eb48ae Accepting request 520199 from security
- package version symlink correctly, belongs into the lib package itself, not
  the -devel.

OBS-URL: https://build.opensuse.org/request/show/520199
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tpm2.0-abrmd?expand=0&rev=3
2017-09-04 10:34:51 +00:00
aef1f3004c - package version symlink correctly, belongs into the lib package itself, not
the -devel.

OBS-URL: https://build.opensuse.org/package/show/security/tpm2.0-abrmd?expand=0&rev=9
2017-09-01 14:38:05 +00:00
Dominique Leuenberger
63717e6b31 Accepting request 519625 from security
- update to upstream version 1.1.1 which fixes some local denial-of-service
  security issues among other things:
  - Replace use of sigaction with g_unix_signal_* stuff from glib.
  - Rewrite of INSTALL.md including info on custom configure script options.
  - Default value for --with-simulatorbin configure option has been removed.
  New default behavior is to disable integration tests.
  - CommandSource will no longer reject commands without parameters.
  - Unit tests updated to use cmocka v1.0.0 API.
  - Integration tests now run daemon under valgrind memcheck and fail when
  errors are found.
  - CommandSource now tracks max FD in set of client FDs to prevent unnecessary
  iterations over FD_SETSIZE fds.
- no longer call bootstrap and switch to the release upstream tarball which
  has now been fixed to contain all necessary files

OBS-URL: https://build.opensuse.org/request/show/519625
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tpm2.0-abrmd?expand=0&rev=2
2017-08-30 14:24:39 +00:00
209831ef3d fix rm line for i586
OBS-URL: https://build.opensuse.org/package/show/security/tpm2.0-abrmd?expand=0&rev=7
2017-08-30 08:45:40 +00:00
5acd8f14e1 - update to upstream version 1.1.1 which fixes some local denial-of-service
security issues among other things:
  - Replace use of sigaction with g_unix_signal_* stuff from glib.
  - Rewrite of INSTALL.md including info on custom configure script options.
  - Default value for --with-simulatorbin configure option has been removed.
  New default behavior is to disable integration tests.
  - CommandSource will no longer reject commands without parameters.
  - Unit tests updated to use cmocka v1.0.0 API.
  - Integration tests now run daemon under valgrind memcheck and fail when
  errors are found.
  - CommandSource now tracks max FD in set of client FDs to prevent unnecessary
  iterations over FD_SETSIZE fds.
- no longer call bootstrap and switch to the release upstream tarball which
  has now been fixed to contain all necessary files

OBS-URL: https://build.opensuse.org/package/show/security/tpm2.0-abrmd?expand=0&rev=6
2017-08-30 08:33:05 +00:00
Dominique Leuenberger
278b33d980 Accepting request 514219 from security
please add to factory

OBS-URL: https://build.opensuse.org/request/show/514219
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tpm2.0-abrmd?expand=0&rev=1
2017-08-24 16:44:54 +00:00
b9994caa9f adjust artifact name to match download URL basename
OBS-URL: https://build.opensuse.org/package/show/security/tpm2.0-abrmd?expand=0&rev=4
2017-08-03 11:53:43 +00:00
a5a889c22a switch to source tarball, correct upstream URL, documented the situation
OBS-URL: https://build.opensuse.org/package/show/security/tpm2.0-abrmd?expand=0&rev=3
2017-08-03 11:39:21 +00:00
22f00b7eca OBS-URL: https://build.opensuse.org/package/show/security/tpm2.0-abrmd?expand=0&rev=2 2017-08-03 10:00:31 +00:00
431d7c228c Accepting request 514156 from home:mgerstner:branches:security
New package tpm2.0-abrmd containing a new implementation of Intel's tpm 2.0
resource manager. The old one is currently delivered by way of package
tpm-2-0-tss.

This submission is coupled with updates for tpm2-0-tss and tpm2.0-tools which
I will submit right after.

OBS-URL: https://build.opensuse.org/request/show/514156
OBS-URL: https://build.opensuse.org/package/show/security/tpm2.0-abrmd?expand=0&rev=1
2017-08-03 08:13:01 +00:00