Changelog for
tcb-1.1-owl1.i686.rpm :
* Sun Jul 17 2011 Solar Designer
1.1-owl1- Changed the default hash encoding prefix from \"$2a$\" to \"$2y$\" (requirescrypt_blowfish 1.2 or newer).
* Mon Jun 07 2010 Dmitry V. Levin 1.0.6-owl1- Dropped faulty check for sparse files in tcb_is_suspect().
* Thu Feb 25 2010 Dmitry V. Levin 1.0.5-owl1- Decreased the size of tcb_privs structure allocated in .data segmentfrom 256K to a two dozen bytes by moving a groups array to .bss segment.
* Wed Feb 10 2010 Dmitry V. Levin 1.0.4-owl1- Fixed potential grpbuf buffer overflow in tcb_drop_priv_r(). Theredoesn\'t appear to be any untrusted user input involved, so this bugdoesn\'t have to be treated as a security issue.- Patched Makefiles to use LDFLAGS more consistently. Reported byPaweł Hajdan.
* Fri Apr 03 2009 Dmitry V. Levin 1.0.3-owl1- In the PAM module, replaced all calls to exit(3) in child processeswith calls to _exit(2). Reported by Pascal Terjan.- In the PAM module, added fflush(3) and fsync(2) calls right beforeclosing file opened for writing. Reported by Ermanno Scaglione.
* Tue Oct 31 2006 Dmitry V. Levin 1.0.2-owl1- In the PAM module and tcb_chkpwd helper, fixed memory leaks reportedby Alexander Kanevskiy.
* Sat May 06 2006 Dmitry V. Levin 1.0.1-owl1- In the PAM module, hardened pam_sm_open_session() to fail for unknown users.
* Wed Dec 28 2005 Dmitry V. Levin 1.0-owl1- Fixed potential NULL dereferences in the PAM module password handling.- Removed user prompt override in calls to pam_get_user.- Implemented OpenPAM build support.- Updated logging code to use pam_syslog.- Updated conversation code to use pam_prompt.
* Tue Aug 23 2005 Dmitry V. Levin 0.9.9-owl1- Restricted list of global symbols exported by the library,NSS and PAM modules.- In the PAM module, implemented \"openlog\" option and disabledopenlog/closelog calls for each logging function invocation,according to new convention introduced in pam-0.80-owl1.- Packaged pam_pwdb.so symlink in addition to pam_unix.so.- Packaged /usr/libexec/chkpwd directory.
* Fri Apr 22 2005 Dmitry V. Levin 0.9.8.9-owl1- Deal with compilation warnings generated by new gcc compiler.
* Wed Jan 05 2005 (GalaxyMaster) 0.9.8.8-owl2- Tell RPM to not verify permissions and group ownership of tcb_chkpwd sincewe\'re setting the correct permissions via a trigger on shadow-utils.- Cleaned up the spec.
* Fri Jun 25 2004 Dmitry V. Levin 0.9.8.8-owl1- tcb_unconvert: Zero errno before each readdir(3) call.
* Sun Nov 02 2003 Solar Designer 0.9.8.7-owl1- Build the PAM module with -fPIC.- Renamed FAKEROOT to DESTDIR.
* Wed Oct 29 2003 Solar Designer 0.9.8.6-owl1- Don\'t depend on
*BSD-style asprintf(3) semantics as Ulrich has rejectedthat patch.- Require glibc-crypt_blowfish-devel for builds, but just glibc-crypt_blowfishfor package installation.
* Fri Apr 18 2003 Solar Designer 0.9.8.5-owl1- Use bold face for component names in .SH NAME, but avoid
*roff commandsto not confuse makewhatis and apropos(1).
* Wed Apr 16 2003 Dmitry V. Levin 0.9.8.4-owl1- In pam_tcb, implemented proper fake salt creation to avoid a timing attack.
* Thu Oct 31 2002 Solar Designer - Optimized unix_verify_password() a bit, from Dmitry V. Levin of ALT Linux.
* Wed Oct 30 2002 Solar Designer - In tcb_convert.8, noted that /etc/shadow backups need to be removed aswell, with /etc/shadow- as the particular example.
* Thu Oct 24 2002 Solar Designer - Cleaned up the recent changes.
* Mon Aug 19 2002 Rafal Wojtczuk - Merged enhancements which remove 32K users limit.- Added ENABLE_SETFSUGID.- Pass the username to the helper binary such that it can handle non-uniqueUIDs.
* Mon Aug 19 2002 Solar Designer - Moved libtcb.so symlink to /usr/lib (patch from Dmitry V. Levin).
* Sun Aug 04 2002 Solar Designer - Moved the pam_tcb and pam_unix manual pages to section 8.
* Sun Jul 07 2002 Solar Designer - No longer let root enforced password changes (sp_lstchg == 0) takeprecedence over expired accounts (sp_expire).
* Sun May 19 2002 Solar Designer - Moved the chkpwd directory to /usr/libexec.
* Mon Feb 04 2002 Solar Designer - Enforce our new spec file conventions.
* Sun Dec 09 2001 Solar Designer - Various minor fixes from Dmitry V. Levin of ALT Linux.- A GNU-style ChangeLog will now be maintained.
* Sun Nov 18 2001 Solar Designer - Patches from Nergal to make delays on failure work with the \"fork\"option and to not produce a warning when su\'ing to pseudo-users fromroot.
* Fri Nov 16 2001 Solar Designer - Don\'t include the /sbin/chkpwd.d directory in this package as it\'sprovided by our pam package.- Use a trigger on shadow-utils for possibly creating and making use ofgroup shadow. This makes no difference on Owl as either the group isprovided by owl-etc (on new installs) or groupadd is already availablewhen this package is installed, but may be useful on hybrid systems.
* Thu Nov 15 2001 Solar Designer - Provide compatibility symlinks and a man page for pam_unix.- tcb_convert(8) man page fixes from Nergal.- Moved all of pam_tcb\'s prompts and messages to support.h and made themmore consistent with those used by pam_passwdqc.- Improved logging.
* Thu Nov 01 2001 Solar Designer - Changed everything all over the place during October. ;-)
* Tue Sep 11 2001 Rafal Wojtczuk - Makefiles and code layout rewrite.- Added reentrant tcb_
*_privs_r() functions, needed for nss.
* Sun Aug 19 2001 Rafal Wojtczuk - version 0.5- man pages- nis fixes- removed ugly _unix_getpwnam(), clean replacement
* Sat Aug 04 2001 Rafal Wojtczuk - 0.4 packaged for Owl.