Changelog for
sudo-1.9.5p2-7.el9.x86_64.rpm :
* Fri Aug 20 2021 Radovan Sroka
- 1.9.5p2-7- utmp resource leak in sudoResolves: rhbz#1986579- sudo does not list /etc/dnf/protected.d/sudo.conf in the rpm config files listingResolves: rhbz#1997030- sudo uses Recommends for sudo-python-plugin(x86-64) = 1.9.5p2-2.el9 and vim-minimalResolves: rhbz#1947908- review of important potential issues detected by static analyzers in sudo-1.9.5p2-2.el9Resolves: rhbz#1938879
* Tue Aug 10 2021 Mohan Boddu - 1.9.5p2-6- Rebuilt for IMA sigs, glibc 2.34, aarch64 flags Related: rhbz#1991688
* Fri Jul 09 2021 Radovan Sroka - 1.9.5p2-5RHEL 9 BETA- sync with rhel8 specResolves: rhbz#1908882Resolves: rhbz#1942383Resolves: rhbz#1946707Resolves: rhbz#1946709Resolves: rhbz#1981278
* Wed Jun 16 2021 Mohan Boddu - 1.9.5p2-4- Rebuilt for RHEL 9 BETA for openssl 3.0 Related: rhbz#1971065
* Fri Apr 16 2021 Mohan Boddu - 1.9.5p2-3- Rebuilt for RHEL 9 BETA on Apr 15th 2021. Related: rhbz#1947937
* Tue Feb 09 2021 Zoltan Fridrich - 1.9.5p2-2- change ldap.conf to sudo-ldap.confResolves: rhbz#1908882- remove /usr/local/
* from secure_pathResolves: rhbz#1908923- fixed CVE-2021-23239 sudo: possible directory existence test due to race condition in sudoeditResolves: rhbz#1916655- fixed CVE-2021-23240 sudo: symbolic link attack in SELinux-enabled sudoeditResolves: rhbz#1917039- fixed CVE-2021-3156 sudo: Heap buffer overflow in argument parsingResolves: rhbz#1917735
* Tue Jan 26 2021 Matthew Miller - 1.9.5p2-1- rebase to 1.9.5p2Resolves: rhbz#1920611- fixed CVE-2021-3156 sudo: Heap buffer overflow in argument parsingResolves: rhbz#1920618
* Mon Jan 18 2021 Radovan Sroka - 1.9.5p1-1- rebase to 1.9.5p1Resolves: rhbz#1902758- fixed double free in sss_to_sudoersResolves: rhbz#1885874- fixed CVE-2021-23239 sudo: possible directory existence test due to race condition in sudoeditResolves: rhbz#1915055- fixed CVE-2021-23240 sudo: symbolic link attack in SELinux-enabled sudoeditResolves: rhbz#1915054
* Wed Jan 13 2021 Jonathan Lebon - 1.9.3p1-2- split out Python modules into separate subpackageResolves: rhbz#1909299
* Mon Oct 05 2020 Radovan Sroka - 1.9.3p1-1- rebase to 1.9.3p1- enable python modulesResolves: rhbz#1881112
* Tue Sep 15 2020 Radovan Sroka - 1.9.2-1- rebase to 1.9.2Resolves: rhbz#1859577- added logsrvd subpackage- added openssl-devel buildrequiresResolves: rhbz#1860653- fixed sudo runstatedir path- it was generated as /sudo instead of /run/sudoResolves: rhbz#1868215- added /var/lib/snapd/snap/bin to secure_path variableResolves: rhbz#1691996
* Sat Aug 01 2020 Fedora Release Engineering - 1.9.1-3- Second attempt - Rebuilt for https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild
* Wed Jul 29 2020 Fedora Release Engineering - 1.9.1-2- Rebuilt for https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild
* Wed Jul 08 2020 Attila Lakatos - 1.9.1-1- rebase to 1.9.1Resolves: rhbz#1848788- fix rpmlint errorsResolves: rhbz#1817139
* Wed Mar 25 2020 Attila Lakatos - 1.9.0-0.1.b4- update to latest development version 1.9.0b4Resolves: rhbz#1816593- setrlimit(RLIMIT_CORE): Operation not permitted warning message fixResolves: rhbz#1773148
* Mon Feb 24 2020 Attila Lakatos - 1.9.0-0.1.b1- update to latest development version 1.9.0b1- added sudo_logsrvd and sudo_sendlog to files and their appropriate man pagesResolves: rhbz#1787823- Stack based buffer overflow in when pwfeedback is enabledResolves: rhbz#1796945- fixes: CVE-2019-18634- By using ! character in the shadow file instead of a password hash can access to a run as all sudoer accountResolves: rhbz#1786709- fixes CVE-2019-19234- attacker with access to a Runas ALL sudoer account can impersonate a nonexistent userResolves: rhbz#1786705- fixes CVE-2019-19232
* Fri Jan 31 2020 Fedora Release Engineering - 1.8.29-2- Rebuilt for https://fedoraproject.org/wiki/Fedora_32_Mass_Rebuild
* Mon Nov 11 2019 Radovan Sroka - 1.8.29-1- rebase to 1.8.29Resolves: rhbz#1766233
* Tue Oct 22 2019 Radovan Sroka - 1.8.28p1-1- rebase to 1.8.28p1Resolves: rhbz#1762350
* Tue Oct 15 2019 Radovan Sroka - 1.8.28-1- rebase to 1.8.28Resolves: rhbz#1761533- set always_set_home by defaultResolves: rhbz#1728687- Sync sudoers options from rhel8 to fedoraResolves: rhbz#1761781- CVE-2019-14287Resolves: rhbz#1761584