From 08f8bf62024193d1a71bf4631c8e7c1ac0a3e68d885fadd0c9d1476dce8321b6 Mon Sep 17 00:00:00 2001 From: Marcus Meissner Date: Fri, 18 Mar 2016 10:09:27 +0000 Subject: [PATCH 1/2] Accepting request 374691 from home:stroeder:branches:Base:System update to 1.8.16 OBS-URL: https://build.opensuse.org/request/show/374691 OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=94 --- sudo-1.8.15.tar.gz | 3 --- sudo-1.8.16.tar.gz | 3 +++ sudo.changes | 53 ++++++++++++++++++++++++++++++++++++++++++++++ sudo.spec | 6 +++--- 4 files changed, 59 insertions(+), 6 deletions(-) delete mode 100644 sudo-1.8.15.tar.gz create mode 100644 sudo-1.8.16.tar.gz diff --git a/sudo-1.8.15.tar.gz b/sudo-1.8.15.tar.gz deleted file mode 100644 index 01dc02e..0000000 --- a/sudo-1.8.15.tar.gz +++ /dev/null @@ -1,3 +0,0 @@ -version https://git-lfs.github.com/spec/v1 -oid sha256:4316381708324da8b6cb151f655c1a11855207c7c02244d8ffdea5104d7cc308 -size 2660128 diff --git a/sudo-1.8.16.tar.gz b/sudo-1.8.16.tar.gz new file mode 100644 index 0000000..b6b8b15 --- /dev/null +++ b/sudo-1.8.16.tar.gz @@ -0,0 +1,3 @@ +version https://git-lfs.github.com/spec/v1 +oid sha256:2d83826fc5125bf073acc203dbda1cf2abeee017090ccc9dddb0431a53d5064d +size 2707358 diff --git a/sudo.changes b/sudo.changes index a3d0d71..c11faee 100644 --- a/sudo.changes +++ b/sudo.changes @@ -1,3 +1,56 @@ +------------------------------------------------------------------- +Thu Mar 17 23:32:59 UTC 2016 - michael@stroeder.com + +- update to 1.8.16: + * Fixed a compilation error on Solaris 10 with Stun Studio 12. + Bug #727. + * When preserving variables from the invoking user's environment, if + there are duplicates sudo now only keeps the first instance. + * Fixed a bug that could cause warning mail to be sent in list + mode (sudo -l) for users without sudo privileges when the + LDAP and sssd backends are used. + * Fixed a bug that prevented the "mail_no_user" option from working + properly with the LDAP backend. + * In the LDAP and sssd backends, white space is now ignored between + an operator (!, +, +=, -=) when parsing a sudoOption. + * It is now possible to disable Path settings in sudo.conf + by omitting the path name. + * The sudoedit_checkdir Defaults option is now enabled by default + and has been extended. When editing files with sudoedit, each + directory in the path to be edited is now checked. If a directory + is writable by the invoking user, symbolic links will not be + followed. If the parent directory of the file to be edited is + writable, sudoedit will refuse to edit it. + Bug #707. + * The netgroup_tuple Defaults option has been added to enable matching + of the entire netgroup tuple, not just the host or user portion. + Bug #717. + * When matching commands based on the SHA2 digest, sudo will now + use fexecve(2) to execute the command if it is available. This + fixes a time of check versus time of use race condition when the + directory holding the command is writable by the invoking user. + * On AIX systems, sudo now caches the auth registry string along + with password and group information. This fixes a potential + problem when a user or group of the same name exists in multiple + auth registries. For example, local and LDAP. + * Fixed a crash in the SSSD backend when the invoking user is not + found. Bug #732. + * Added the --enable-asan configure flag to enable address sanitizer + support. A few minor memory leaks have been plugged to quiet + the ASAN leak detector. + * The value of _PATH_SUDO_CONF may once again be overridden via + the Makefile. Bug #735. + * The sudoers2ldif script now handles multiple roles with same name. + * Fixed a compilation error on systems that have the posix_spawn() + and posix_spawnp() functions but an unusable spawn.h header. + Bug #730. + * Fixed support for negating character classes in sudo's version + of the fnmatch() function. + * Fixed a bug in the LDAP and SSSD backends that could allow an + unauthorized user to list another user's privileges. Bug #738. + * The PAM conversation function now works around an ambiguity in the + PAM spec with respect to multiple messages. Bug #726. + ------------------------------------------------------------------- Fri Nov 6 11:55:17 UTC 2015 - kstreitova@suse.com diff --git a/sudo.spec b/sudo.spec index 33470c6..f0afa3c 100644 --- a/sudo.spec +++ b/sudo.spec @@ -17,13 +17,13 @@ Name: sudo -Version: 1.8.15 +Version: 1.8.16 Release: 0 Summary: Execute some commands as root License: ISC Group: System/Base -Url: http://www.sudo.ws/ -Source0: http://sudo.ws/sudo/dist/%{name}-%{version}.tar.gz +Url: https://www.sudo.ws/ +Source0: https://sudo.ws/sudo/dist/%{name}-%{version}.tar.gz Source1: sudo.pamd Source2: README.SUSE Source3: fate_313276_test.sh From e3c141bcbea6fb6c5ee95adc8233e7450021e80d9f2b2993821086499f3eb947 Mon Sep 17 00:00:00 2001 From: Kristyna Streitova Date: Mon, 21 Mar 2016 10:14:29 +0000 Subject: [PATCH 2/2] Accepting request 375498 from home:pluskalm:branches:Base:System - Add gpg signature - Use valid category for tests OBS-URL: https://build.opensuse.org/request/show/375498 OBS-URL: https://build.opensuse.org/package/show/Base:System/sudo?expand=0&rev=95 --- sudo-1.8.16.tar.gz.sig | Bin 0 -> 72 bytes sudo.changes | 6 ++++++ sudo.keyring | 31 +++++++++++++++++++++++++++++++ sudo.spec | 8 +++++--- 4 files changed, 42 insertions(+), 3 deletions(-) create mode 100644 sudo-1.8.16.tar.gz.sig create mode 100644 sudo.keyring diff --git a/sudo-1.8.16.tar.gz.sig b/sudo-1.8.16.tar.gz.sig new file mode 100644 index 0000000000000000000000000000000000000000000000000000000000000000..7b701cdbb0c1729ef787e7de77c1d6a3b0d3095b508e794b1ce68e8abff87132 GIT binary patch literal 72 zcmV-O0Jr~$Mg#y60ssaD0#@qR`2Y$D5L$`fqJHFX#KFY?pKc?SVT*cK6@=6|48hUB+2r90^81@?J3Fryb1z literal 0 HcmV?d00001 diff --git a/sudo.changes b/sudo.changes index c11faee..2b1d9c9 100644 --- a/sudo.changes +++ b/sudo.changes @@ -1,3 +1,9 @@ +------------------------------------------------------------------- +Sat Mar 19 10:02:09 UTC 2016 - mpluskal@suse.com + +- Add gpg signature +- Use valid category for tests + ------------------------------------------------------------------- Thu Mar 17 23:32:59 UTC 2016 - michael@stroeder.com diff --git a/sudo.keyring b/sudo.keyring new file mode 100644 index 0000000..0574dc0 --- /dev/null +++ b/sudo.keyring @@ -0,0 +1,31 @@ +-----BEGIN PGP PUBLIC KEY BLOCK----- +Version: GnuPG v2 + +mQGiBD2bdiURBACyoSsYq9t8jiLnhABRZcgDP2vaoJoGJD3eb9HNsv2+0IrcHaut +s1QR1AY88AGTMnQTFWjH1vIXz/YCKnvgqklfbVCMehvkOUKvGv2eP7IkmWvVPIQb +kayHCtChOKW86hqxZXyT8sbBJqHGHq7xBbg71uZ/CSaTY3ATencRX+UndwCg6ujz +FFQhKoVwnPdYPkYA10kp2UsD/2Act3O9UJabaln5MLqLQrxo1Cqa3+ht4liAAOr3 +psMPcieyIULQ4yE19Jvb90s2sao88BUPVeDxBHV/nhcNQxlH4Boc+kWtU36XSxU3 +yrUhZDQIvrM4o1yCSgNSwUM88+qYm6ETAT0sZAiFT9biMjsT4Bw13KihyYtE2L36 +LdXOA/9MEH8zWRqUjQMt4X1yKTjwmIotAd9xetVNj+4lfTgmsnlZoex7T94Id0+B +FDDSj4gpQ7GpFa0qOQgTyaUo5HgoPFw4F9TjebWiyey2SznIw4960KoAwfSTdSOG +GoD96xuBsmQGCfdIFW43SJngXKiOpF/3VHoUxGYhTefOSGHAvLQqVG9kZCBDLiBN +aWxsZXIgPFRvZGQuTWlsbGVyQGNvdXJ0ZXNhbi5jb20+iEYEEhECAAYFAkFF7YQA +CgkQdtwsPwG+XUqQZwCgiQQQzEwrFWoU4Mlv5QHSXhJyQY0AnRxtRStEF3oK4Lje +AyhwmN8Ii7oDiEYEExECAAYFAj6VvLYACgkQ76rb1U/0m22NvgCgiZ5+RUdokqMS +weErY0MNJqkbIE4AnRTAxhEJ379aiG+8FSxZkt8aXUuMiFkEExECABkFAj2bdiUE +CwcDAgMVAgMDFgIBAh4BAheAAAoJEFqJ36J+5HDEQigAoLdD+y5EQzvogb6oybhC +pBBmefqYAKDGlnXX7JNBJYBv/r5TBg4+zLOOL4icBBABAgAGBQJRdsCIAAoJEDQB +qWfpGXNhvlwD/1qaXdVB0F/90q/TD+K4wGSNTgxzSz7WxfeEFnaOmyKzPzZYo7PD +Apfb68IxLGutG+LJjOiC+46smQBSFETiyM5U7YycpOFH0I908uJzMDqZm2UuVn9V +WM/Y8oCjZbdmmECqbO+Mh+E+YHu7ojnVCXxXN+J21eVec781Q7YmRpPbuQENBD2b +dicQBADOE3R8587Pf7ObSscn6EJbTowT1bVRZOA92SHqLMw7b2Pm2yrswM4SiIED +x8Y1X37WepdLc9axik+qeb5jH/zMc+x6mI5Z7dRomu4F8VPwGUZLM3qn1o7WWJA6 +e/ntei5Fpvm1QVk8MzsAMcYCWu7K9mPPLCP+/oVY2hjoMuKqiwADBQQApJqntyzD ++yQUQPSUX+WyWW+ZFrviR3+URgY8HrYLJq7/ie5yudmsE0/vBIh2kIvNDGrqX+P+ +8/lpRXyo3Zbr4NjUJkCuh21ko9Q0YcJ2in1lyyQTHp44baK9imCfTPqxyhdQniDm +QJKyHM950bgM4scUy0SFUNbGcd22fRQUKe2IRgQYEQIABgUCPZt2JwAKCRBaid+i +fuRwxM54AKCYI8PUizkqFGZz7uRjggt91Rfk5QCfaZ1IGT+k5sB+l0/NqwlPtDEh +AUs= +=j4Qf +-----END PGP PUBLIC KEY BLOCK----- diff --git a/sudo.spec b/sudo.spec index f0afa3c..635e71a 100644 --- a/sudo.spec +++ b/sudo.spec @@ -1,7 +1,7 @@ # # spec file for package sudo # -# Copyright (c) 2015 SUSE LINUX GmbH, Nuernberg, Germany. +# Copyright (c) 2016 SUSE LINUX GmbH, Nuernberg, Germany. # # All modifications and additions to the file contributed by third parties # remain the property of their copyright owners, unless otherwise agreed @@ -28,6 +28,8 @@ Source1: sudo.pamd Source2: README.SUSE Source3: fate_313276_test.sh Source4: README_313276.test +Source5: https://sudo.ws/sudo/dist/%{name}-%{version}.tar.gz.sig +Source6: %{name}.keyring Patch0: sudoers2ldif-env.patch # PATCH-OPENSUSE: the "SUSE" branding of the default sudo config Patch1: sudo-sudoers.patch @@ -61,7 +63,7 @@ These header files are needed for building of sudo plugins. %package test Summary: Tests for the package -Group: Development/Tests +Group: Development/Tools/Other Requires: %{name} = %{version} %description test @@ -73,7 +75,7 @@ Tests for fate#313276 %patch1 -p1 %build -%ifarch s390 s390x %{sparc} +%ifarch s390 s390x %sparc F_PIE=-fPIE %else F_PIE=-fpie