sudo 1.9.7rc1 released
"Todd C. Miller" <[email protected]> Fri, 07 May 2021 19:51:01 -0600
| Newsgroups | gmane.comp.tools.sudo.devel |
|---|---|
| Message-ID | <[email protected]> |
--===============2391521481419748135==
Content-Type: multipart/signed; protocol="application/pgp-signature";
micalg=pgp-; boundary="171_Fri_May__7_19_50_55_MDT_2021"
--171_Fri_May__7_19_50_55_MDT_2021
Content-Type: text/plain; charset=us-ascii
The first release candidate for sudo 1.9.7 is now available. In
addition to bug fixes, sudo 1.9.7 adds a relay mode to sudo_logsrvd.
This can be used to create a hierarchy of log servers and supports
both real-time relaying as well as a store-and-forward mode.
Source:
https://www.sudo.ws/dist/beta/sudo-1.9.7rc1.tar.gz
ftp://ftp.sudo.ws/pub/sudo/beta/sudo-1.9.7rc1.tar.gz
SHA256 checksum:
83932a1dfafac7bf39ef7bcfdb4b666f64870c90132f010018f4ae0bdab905ab
MD5 checksum:
1817574303b14a1c92419f2b1d177543
Binary packages:
https://www.sudo.ws/dist/beta/packages/index.html#binary
For a list of download mirror sites, see:
https://www.sudo.ws/download_mirrors.html
Sudo web site:
https://www.sudo.ws/
Sudo web site mirrors:
https://www.sudo.ws/mirrors.html
Major changes between sudo 1.9.7rc1 and 1.9.7b2:
* The configure script now outputs a summary of the user-configurable
options at the end, separate from output of configure script tests.
Bug #820.
* Corrected the description of which groups may be specified via the
-g option in the Runas_Spec section. Bug #975.
* Updated translations from translationproject.org.
Major changes between sudo 1.9.7b2 and 1.9.7b1:
* Fixed a bug that prevented the "log_server_verify" sudoers option
from taking effect.
* The sudo_sendlog utility has a new -s option to cause it to stop
sending I/O records after a user-specified elapsed time. This
can be used to test the I/O log restart functionality of sudo_logsrvd.
* Fixed a crash introduced in sudo 1.9.4 in sudo_logsrvd when
attempting to restart an interrupted I/O log transfer.
* The TLS connection timeout in the sudoers log client was previously
hard-coded to 10 seconds. It now uses the value of log_server_timeout.
* Updated translations from translationproject.org.
Major changes between sudo 1.9.7b1 and 1.9.6p1:
* The "fuzz" Makefile target now runs all the fuzzers for 8192
passes (can be overridden via the FUZZ_RUNS variable). This makes
it easier to run the fuzzers in-tree. To run a fuzzer indefinitely,
set FUZZ_RUNS=-1, e.g. "make FUZZ_RUNS=-1 fuzz".
* Fixed fuzzing on FreeBSD where the ld.lld linker returns an
error by default when a symbol is multiply-defined.
* Added support for determining local IPv6 addresses on systems
that lack the getifaddrs() function. This now works on AIX,
HP-UX and Solaris (at least). Bug #969.
* Fixed a bug introduced in sudo 1.9.6 that caused "sudo -V" to
report a usage error. Also, when invoked as sudoedit, sudo now
allows a more restricted set of options that matches the usage
statement and documentation. GitHub issue #95.
* Fixed a crash in sudo_sendlog when the specified certificate
or key does not exist or is invalid. Bug #970
* Fixed a compilation error when sudo is configured with the
--disable-log-client option.
* Sudo's limited support for SUCCESS=return entries in nsswitch.conf
is now documented. Bug #971.
* Sudo now requires autoconf 2.70 or higher to regenerate the
configure script. Bug #972.
* sudo_logsrvd now has a relay mode which can be used to create
a hierarchy of log servers. By default, when a relay server is
defined, messages from the client are forwarded immediately to
the relay. However, if the "store_first" setting is enabled,
the log will be stored locally until the command completes and
then relayed. Bug #965.
* Sudo now links with OpenSSL by default if it is available unless
the --disable-openssl configure option is used or both the
--disable-log-client and --disable-log-server configure options
are specified.
* Fixed configure's Python version detection when the version minor
number is more than a single digit, for example Python 3.10.
* The sudo Python module tests now pass for Python 3.10.
* Sudo will now avoid changing the datasize resource limit
as long as the existing value is at least 1GB. This works around
a problem on 64-bit HP-UX where it is not possible to exactly
restore the original datasize limit. Bug #973.
* Fixed a race condition that could result in a hang when sudo is
executed by a process where the SIGCHLD handler is set to SIG_IGN.
This fixes the bug described by GitHub PR #98.
* Fixed an out-of-bounds read in sudoedit and visudo when the
EDITOR, VISUAL or SUDO_EDITOR environment variables end in an
unescaped backslash. Also fixed the handling of quote characters
that are escaped by a backslash. GitHub issue #99.
--171_Fri_May__7_19_50_55_MDT_2021
Content-Type: application/pgp-signature
-----BEGIN PGP SIGNATURE-----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=iZYy
-----END PGP SIGNATURE-----
--171_Fri_May__7_19_50_55_MDT_2021--
--===============2391521481419748135==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline
____________________________________________________________
sudo-workers mailing list <[email protected]>
For list information, options, or to unsubscribe, visit:
https://www.sudo.ws/mailman/listinfo/sudo-workers
--===============2391521481419748135==--