sudo 1.8.23rc1 released

"Todd C. Miller" <[email protected]> Thu, 19 Apr 2018 10:24:20 -0600
Newsgroups gmane.comp.tools.sudo.devel
Message-ID <[email protected]>
The first release candidate version of sudo 1.8.23 is now available.
In addition to bug fixes, sudo 1.8.23 introduces the cvtsudoers
utility which can convert between sudoers formats and perform some
basic filtering.

Source:
    https://www.sudo.ws/sudo/dist/beta/sudo-1.8.23rc1.tar.gz
    ftp://ftp.sudo.ws/pub/sudo/beta/sudo-1.8.23rc1.tar.gz

SHA256 checksum:
    c94e9bde459e92e9e0c079638ab3c9d98dcd840f9a973f89644e33f51d26c758
MD5 checksum:
    1e9a6a4a3b3be94b3b8ff0d18b75a3da

Binary packages:
    https://www.sudo.ws/sudo/dist/beta/packages/index.html#binary

For a list of download mirror sites, see:
    https://www.sudo.ws/sudo/download_mirrors.html

Sudo web site:
    https://www.sudo.ws/sudo/

Sudo web site mirrors:
    https://www.sudo.ws/sudo/mirrors.html

Major changes between sudo 1.8.23rc1 and 1.8.23b4:

 * Sudo now includes an optional set of Monty Python-inspired insults.

 * Fixed a minor memory leak discovered with address sanitizer.

 * Manual page updates.

 * Updated translations from translationproject.org.

 * Fixed a hang in cvtsudoers converting LDIF input when the -b
   option was specified.

Major changes between sudo 1.8.23b4 and 1.8.23b3:

 * Fixes for cvtsudoers bugs exposed by the new cvtsudoers regression
   tests.

 * Updated translations from translationproject.org.

Major changes between sudo 1.8.23b3 and 1.8.23b2:

 * The cvtsudoers utility now supports setting defaults types and
   the suppression list in its config file.

 * The cvtsudoers utility has a new "-p" option to prune non-matching
   entries from the output when the "-m" option is also used.

 * Fixed a problem with the process start time test in "make check"
   when run in a Linux container.  The test now uses the "btime"
   field in /proc/stat to get the system start time instead of using
   /proc/uptime, which is the container uptime.  Bug #829.

 * Sudoedit now checks the writability of a temporary directory
   before using it.  For example, if /var/tmp is not writable but
   /tmp is, then /tmp will be used.

 * If the cvtsudoers utility is given the -d option, any aliases
   used by Defaults entries that are not being converted are omitted
   from the output if they are otherwise unused.

 * Updated translations from translationproject.org.

Major changes between sudo 1.8.23b2 and 1.8.23b1:

 * Fixed a bug on some systems where sudo could hang on command
   exit when I/O logging was enabled.  Bug #826.

 * The cvtsudoers utility has gained an option to control what type
   of Defaults entries are translated.

 * The sudoers.ldap manual now has a section on converting from
   file-based sudoers to LDAP-based.

Major changes between sudo 1.8.23b1 and 1.8.22:

 * PAM account management modules and BSD auto approval modules are
   now run even when no password is required.

 * For kernel-based time stamps, if no terminal is present, fall
   back to parent-pid style time stamps.

 * The new cvtsudoers utility replaces both the "sudoers2ldif" script
   and the "visudo -x" functionality.  It can read a file in either
   sudoers or LDIF format and produce JSON, LDIF or sudoers output.
   It is also possible to filter the generated output file by user,
   group or host name.

 * The file, ldap and sss sudoers backends now share a common set
   of formatting functions for "sudo -l" output, which is also used
   by the cvtsudoers utility.

 * The /run directory is now used in preference to /var/run if it
   exists. Bug #822.

 * More accurate descriptions of the --with-rundir and --with-vardir
   configure options.  Bug #823.

 * The setpassent() and setgroupent() functions are now used on systems
   that support them to keep the passwd and group database open.
   Sudo performs a lot of passwd and group lookups so it can be
   beneficial to avoid opening and closing the files each time.

 * The new case_insensitive_user and case_insensitive_group sudoers
   options can be used to control whether sudo does case-sensitive
   matching of users and groups in sudoers.  Case insensitive
   matching is now the default.

____________________________________________________________
sudo-workers mailing list <[email protected]>
For list information, options, or to unsubscribe, visit:
https://www.sudo.ws/mailman/listinfo/sudo-workers
signature.asc (application/pgp-signature, 801 B)
-----BEGIN PGP SIGNATURE-----
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=8qz+
-----END PGP SIGNATURE-----