Call for testing: sudo 1.8.24
"Todd C. Miller" <[email protected]>
| Newsgroups | gmane.comp.tools.sudo.user |
|---|---|
| Message-ID | <[email protected]> |
A release candidate for sudo 1.8.24 is now available. I expect
1.8.24 final to be released at the end of the week.
Sudo 1.8.24 builds on the changes in 1.8.23 to merge the LDAP/SSSD
and file-based lookup code. This has allowed the removal almost
1,500 lines of code from the LDAP and SSSD backends.
If you rely on the LDAP or SSSD backends, please do give the 1.8.24
beta a try if you are able to.
Source:
https://www.sudo.ws/dist/beta/sudo-1.8.24rc1.tar.gz
ftp://ftp.sudo.ws/pub/sudo/beta/sudo-1.8.24rc1.tar.gz
SHA256 checksum:
c3a767fbef13f3c83bf62ffb1708ddc8c61020b973d3625e80b61ea12db18666
MD5 checksum:
25515345fb1841383fd1150c866a72a1
Binary packages:
https://www.sudo.ws/dist/beta/packages/index.html#binary
For a list of download mirror sites, see:
https://www.sudo.ws/download_mirrors.html
Sudo web site:
https://www.sudo.ws/
Sudo web site mirrors:
https://www.sudo.ws/mirrors.html
Major changes between sudo 1.8.24rc1 and 1.8.23:
* The LDAP and SSS back-ends now use the same rule evaluation code
as the sudoers file backend. This builds on the work in sudo
1.8.23 where the formatting functions for "sudo -l" output were
shared. The handling of negated commands in SSS and LDAP is
unchanged.
* Fixed a regression introduced in 1.8.23 where "sudo -i" could
not be used in conjunction with --preserve-env=VARIABLE. Bug #835
* cvtsudoers can now parse base64-encoded attributes in LDIF files.
* Random insults are now more random.
* Fixed the noexec wordexp(3) test on FreeBSD.
* Added SUDO_CONV_PREFER_TTY flag for conversation function to
tell sudo to try writing to /dev/tty first. Can be used in
conjunction with SUDO_CONV_INFO_MSG and SUDO_CONV_ERROR_MSG.
* Sudo now supports an arbitrary number of groups per user on
Solaris. Previously, only the first 64 groups were found.
This should remove the need to set "max_groups" in sudo.conf.
* Fixed typos in the OpenLDAP sudo schema. Bugs #839 and #840.
* Fixed a race condition when building with parallel make.
Bug #842
* Fixed a duplicate free when netgroup_base in ldap.conf is set
to an invalid value.
* Fixed a bug introduced in sudo 1.8.23 on AIX that could prevent
local users and groups from being resolved properly on systems
that have users stored in NIS, LDAP or AD.
* Added a workaround for an AIX bug exposed by a change in sudo
1.8.23 that prevents the terminal mode from being restored when
I/O logging is enabled.
* On systems using PAM, sudo now ignores the PAM_NEW_AUTHTOK_REQD
and PAM_AUTHTOK_EXPIRED errors from PAM account management if
authentication is disabled for the user. This fixes a regression
introduced in sudo 1.8.23. Bug #843
* Fixed an ambiguity in the sudoers manual in the description and
definition of User, Runas, Host, and Cmnd Aliases. Bug #834
* Fixed a bug that resulted in only the first window size change
event being logged.
____________________________________________________________
sudo-users mailing list <[email protected]>
For list information, options, or to unsubscribe, visit:
https://www.sudo.ws/mailman/listinfo/sudo-users
signature.asc
(application/pgp-signature, 801 B)
-----BEGIN PGP SIGNATURE----- iQIcBAEBCAAGBQJbcschAAoJEKn0wCHOpHD7Q2kP/0g+f/cptx/nvEnwxsTu0gAg 2hjKnORjNhrcSxEkRQYnOfsUpEPNRt20tgEuBIP77JyKMimFXRDAqbAO8tG6WhjX sFvfPlFKDm9lMOgV84SG5Pxh4n5S3jbXN0E15JMU25S1jJPvHemXGBZZIFTeSo0P ZrCinOmUHEvzVOmM9NdpgTXybvdYpcjpZfLymQ1kUo6CL7fn+9F849uzd0pCrvMd uCw7b5xEf1eBFzKcWSGewSrVleQVaOgHRDqNrrYIS/44BMUwkEommOyN5eQfo8kL o/ROs826J7znG4i6wsVgAz0l0NigjIdsWi7tfPWSn8KjpogyITWQuSlr1DGZ45b/ jgIokIrkwegklvQ7epkv7By0MIKdP7ak7Gy1B0GQjfZkGWnNyDXbY92wMoNhqO3q Wn9aCwfLI9rwY0D4Jx0ibHbEl7FrrhjycFW5xpyUl6Iqf9MJa8e+hs09P3Vbt2pa Th87nzyiUhJgil0jv/LEeP1fGUelzXihkc3s3bLFPh6Fvv4uwgFSb/AJJZW2UexQ tP6VdLP6C5DqwzlQAhZm0J5JXc8yNoCIB4XIYMhBzn7aphb6ge0X51IFmhg+mTZR 7GC7BgQhyTlJUQbNUgvmmi7T0Qaml0pZLZgz0WU+bMpp6ksQ4LZlDzn1dm+vL5wS xMEq54++W3lKAcmhSegs =Xvbl -----END PGP SIGNATURE-----