Compare commits

...
Sign in to create a new pull request.

3 commits

Author SHA1 Message Date
Radovan Sroka
f48ef1ee0a Rebase to 1.8.28
Resolves: rhbz#1761533

- fixes CVE-2019-14287
- Privilege escalation via 'Runas' specification with 'ALL' keyword
  Resolves: rhbz#1761584
2019-10-15 15:39:36 +02:00
Radovan Sroka
f7de4db3d3 Rebase sudo to 1.8.27 2019-03-11 13:29:25 +01:00
Radovan Sroka
1a8949caa2 Rebase sudo to latest stable version
- install /etc/dnf/protected.d/sudo instead of /etc/yum/protected.d/sudo (1626968)
2018-09-10 13:39:37 +02:00
3 changed files with 23 additions and 6 deletions

3
.gitignore vendored
View file

@ -14,3 +14,6 @@
/sudo-1.8.22b1.tar.gz /sudo-1.8.22b1.tar.gz
/sudo-1.8.23b3.tar.gz /sudo-1.8.23b3.tar.gz
/sudo-1.8.23.tar.gz /sudo-1.8.23.tar.gz
/sudo-1.8.25.tar.gz
/sudo-1.8.27.tar.gz
/sudo-1.8.28.tar.gz

View file

@ -1 +1 @@
SHA512 (sudo-1.8.23.tar.gz) = a9d61850a4857bfd075547a13efb13b054e4736e3ebe3c8a98a90a090b1d9b9688354ec9725fc99d1d256999b6f9c6ae6215ce9770fcdebd7f24731107b48342 SHA512 (sudo-1.8.28.tar.gz) = 09e589cdfd18d7c43b0859a0e11c008b3cb995ae4f8c89c717c5242db9e5696361eb574ebe74a0b5316afffb3a8037f7a7f3c249176e8ed9caffeb4cd860ddc7

View file

@ -2,8 +2,8 @@
Summary: Allows restricted root access for specified users Summary: Allows restricted root access for specified users
Name: sudo Name: sudo
Version: 1.8.23 Version: 1.8.28
Release: 3%{?dist} Release: 1%{?dist}
License: ISC License: ISC
Group: Applications/System Group: Applications/System
URL: http://www.courtesan.com/sudo/ URL: http://www.courtesan.com/sudo/
@ -103,10 +103,10 @@ install -p -d -m 700 $RPM_BUILD_ROOT/var/db/sudo/lectured
install -p -d -m 750 $RPM_BUILD_ROOT/etc/sudoers.d install -p -d -m 750 $RPM_BUILD_ROOT/etc/sudoers.d
install -p -c -m 0440 %{SOURCE1} $RPM_BUILD_ROOT/etc/sudoers install -p -c -m 0440 %{SOURCE1} $RPM_BUILD_ROOT/etc/sudoers
#add sudo to protected packages #add sudo to protected packages
install -p -d -m 755 $RPM_BUILD_ROOT/etc/yum/protected.d/ install -p -d -m 755 $RPM_BUILD_ROOT/etc/dnf/protected.d/
touch sudo.conf touch sudo.conf
echo sudo > sudo.conf echo sudo > sudo.conf
install -p -c -m 0644 sudo.conf $RPM_BUILD_ROOT/etc/yum/protected.d/ install -p -c -m 0644 sudo.conf $RPM_BUILD_ROOT/etc/dnf/protected.d/
rm -f sudo.conf rm -f sudo.conf
chmod +x $RPM_BUILD_ROOT%{_libexecdir}/sudo/*.so # for stripping, reset in %%files chmod +x $RPM_BUILD_ROOT%{_libexecdir}/sudo/*.so # for stripping, reset in %%files
@ -156,7 +156,7 @@ EOF
%config(noreplace) /etc/pam.d/sudo %config(noreplace) /etc/pam.d/sudo
%config(noreplace) /etc/pam.d/sudo-i %config(noreplace) /etc/pam.d/sudo-i
%attr(0644,root,root) %{_tmpfilesdir}/sudo.conf %attr(0644,root,root) %{_tmpfilesdir}/sudo.conf
%attr(0644,root,root) /etc/yum/protected.d/sudo.conf %attr(0644,root,root) /etc/dnf/protected.d/sudo.conf
%dir /var/db/sudo %dir /var/db/sudo
%dir /var/db/sudo/lectured %dir /var/db/sudo/lectured
%attr(4111,root,root) %{_bindir}/sudo %attr(4111,root,root) %{_bindir}/sudo
@ -199,6 +199,20 @@ EOF
%{_mandir}/man8/sudo_plugin.8* %{_mandir}/man8/sudo_plugin.8*
%changelog %changelog
* Tue Oct 15 2019 Radovan Sroka <rsroka@redhat.com> - 1.8.28-1
- rebase to 1.8.28
Resolves: rhbz#1761533
- fixes CVE-2019-14287
- Privilege escalation via 'Runas' specification with 'ALL' keyword
Resolves: rhbz#1761584
* Mon Mar 11 2019 Radovan Sroka <rsroka@redhat.com> - 1.8.27-1
- rebase sudo to 1.8.27
* Mon Sep 10 2018 Radovan Sroka <rsroka@redhat.com> 1.8.25-1
- rebase sudo to latest stawble version
- install /etc/dnf/protected.d/sudo instead of /etc/yum/protected.d/sudo (1626968)
* Sat Jul 14 2018 Fedora Release Engineering <releng@fedoraproject.org> - 1.8.23-3 * Sat Jul 14 2018 Fedora Release Engineering <releng@fedoraproject.org> - 1.8.23-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild - Rebuilt for https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild