sudo 1.8.30b3 released
"Todd C. Miller" <[email protected]> Thu, 26 Dec 2019 08:10:32 -0700
| Newsgroups | gmane.comp.tools.sudo.devel |
|---|---|
| Message-ID | <[email protected]> |
The third beta version of sudo 1.8.30 is now available. Sudo
1.8.30 is primarily a bug fix release.
Source:
https://www.sudo.ws/dist/beta/sudo-1.8.30b3.tar.gz
ftp://ftp.sudo.ws/pub/sudo/beta/sudo-1.8.30b3.tar.gz
SHA256 checksum:
6440aab0dbd624614464d17ec7f2ba50e2e2f416665454d5c1d93e81c1dad583
MD5 checksum:
31a6d252dda96e3232da63a64bcc673a
Binary packages:
https://www.sudo.ws/dist/beta/packages/index.html#binary
For a list of download mirror sites, see:
https://www.sudo.ws/download_mirrors.html
Sudo web site:
https://www.sudo.ws/
Sudo web site mirrors:
https://www.sudo.ws/mirrors.html
Major changes between sudo 1.8.30b3 and 1.8.30b2:
* Fixed an intermittent warning on NetBSD when sudo restores the
initial stack size limit.
Major changes between sudo 1.8.30b2 and 1.8.30b1:
* The user's time stamp file is now only updated if both authentication
and approval phases succeed. This is consistent with the behavior
of sudo prior to version 1.8.23. Bug #910
* The new allow_unknown_runas_id sudoers setting can be used to
enable or disable the use of unknown user or group IDs. Previously,
sudo would always allow unknown user or group IDs if the sudoers
entry permitted it, including via the "ALL" alias. As of sudo
1.8.30, the admin must explicitly enable support for unknown IDs.
* The new runas_check_shell sudoers setting can be used to require
that the runas user have a shell listed in the /etc/shells file.
On many systems, users such as "bin", do not have a valid shell
and this flag can be used to prevent commands from being run as
those users.
* Fixed a problem restoring the SELinux tty context during reboot
if mctransd is killed before sudo finishes. GitHub Issue #17.
Major changes between sudo 1.8.30b1 and 1.8.29:
* Fixed a warning on macOS introduced in sudo 1.8.29 when sudo
attempts to set the open file limit to unlimited. Bug #904.
* Sudo now closes file descriptors before changing uids. This
prevents a non-root process from interfering with sudo's ability
to close file descriptors on systems that support the prlimit(2)
system call.
* Sudo now treats an attempt to run "sudo sudoedit" as simply
"sudoedit". If the sudoers file contains a fully-qualified path
to sudoedit, sudo will now treat it simply as "sudoedit" (with
no path). Visudo will will now treat a fully-qualified path
to sudoedit as an error. Bug #871.
* Fixed a bug introduced in sudo 1.8.28 where sudo would warn about
a missing /etc/environment file on AIX and Linux when PAM is not
enabled. Bug #907
* Fixed a bug on Linux introduced in sudo 1.8.29 that prevented
the askpass program from running due to an unlimited stack size
resource limit. Bug #908.
* If a group provider plugin has optional arguments, the argument list
passed to the plugin is now NULL terminated as per the documentation.
____________________________________________________________
sudo-workers mailing list <[email protected]>
For list information, options, or to unsubscribe, visit:
https://www.sudo.ws/mailman/listinfo/sudo-workers
signature.asc
(application/pgp-signature, 801 B)
-----BEGIN PGP SIGNATURE----- iQIcBAEBCAAGBQJeBM1fAAoJEKn0wCHOpHD7CX0P/344BYW9jboRbn8eG5POoNj/ HlX6lTV+bp7NA0JeKUI4zh8Q8suvjBAHPVxa6k75XEk40tBAoiUnE9HnuaakH9E2 5XBTo9ic3ZpKP/4Aj30+qvleOn8kfqFDsOyIxTi9ibNYZJXm2CaRFSfoVAwRrJxo RAFhjHCtpFmHsvkfowjzNmNcazi42u+rSIZSRUsPGSb69OYEEqPkhkl2vkDi3Rt0 8V8q3vZjshM1QifmGBbGfCTDwf42klPUzBulgKrgYaKg10EEFiqhGaXC4giOj33R fpioZQu8ifdl2Gm9kbCQXBdzPNLbXMkYyxtP3QHflwgEaHDZulZ06RkbnIlCVaG9 vwJDmvGIqojQ19iBSsMSMMMoQPH02sC06HShQc2pgupsdM1nCr2qO3xi5+TSmxrY GZuOsgeQGYwB3UO5940XHK0YpVVfPMhqXZT6Lu2YuLFmPrgwInG1CD01yRGGya4y oExYEW1/2K3FL3NcFH8LaqIs0F9NxEnKLNLJXLhjgYOj4azGHetogcjEB8OflxY7 JH+/c8DWmwI8j+n08mYCIU8LKm8TBMGrLQjyN5uM/vZy6KkA1csOL72ZhlxBN7CX hQGpv1ctTDOY5gjjCTaO21DwsxbMwbNxx7SehTcwIl2Wb4r22w+qWlHbw9xtbr9E Mw64Vt93XAghEQ49DpQM =6+8L -----END PGP SIGNATURE-----