Revisions of pam

Ana Guerrero's avatar Ana Guerrero (anag+factory) accepted request 1166585 from Thorsten Kukuk's avatar Thorsten Kukuk (kukuk) (revision 138)
- Update to version 1.6.1
  - pam_env: fixed --disable-econf --enable-vendordir support.
  - pam_unix: do not warn if password aging is disabled.
  - pam_unix: try to set uid to 0 before unix_chkpwd invocation.
  - pam_unix: allow empty passwords with non-empty hashes.
  - Multiple minor bug fixes, build fixes, portability fixes,
    documentation improvements, and translation updates.
- Remove backports:
  - pam_env-fix_vendordir.patch
  - pam_env-fix-enable-vendordir-fallback.patch
  - pam_env-remove-escaped-newlines.patch
  - pam_unix-fix-password-aging-disabled.patch
Ana Guerrero's avatar Ana Guerrero (anag+factory) accepted request 1145173 from Thorsten Kukuk's avatar Thorsten Kukuk (kukuk) (revision 136)
- pam.tmpfiles: Make sure the content of the /run directories get
  removed in case of a soft-reboot
Ana Guerrero's avatar Ana Guerrero (anag+factory) accepted request 1143388 from Thorsten Kukuk's avatar Thorsten Kukuk (kukuk) (revision 135)
- Enable pam_canonicalize_user.so
Ana Guerrero's avatar Ana Guerrero (anag+factory) accepted request 1139944 from Thorsten Kukuk's avatar Thorsten Kukuk (kukuk) (revision 134)
- Add post 1.6.0 release fixes for pam_env and pam_unix:
  - pam_env-fix-enable-vendordir-fallback.patch
  - pam_env-fix_vendordir.patch
  - pam_env-remove-escaped-newlines.patch
  - pam_unix-fix-password-aging-disabled.patch
- Update to version 1.6.0
  - Added support of configuration files with arbitrarily long lines.
  - build: fixed build outside of the source tree.
  - libpam: added use of getrandom(2) as a source of randomness if available.
  - libpam: fixed calculation of fail delay with very long delays.
  - libpam: fixed potential infinite recursion with includes.
  - libpam: implemented string to number conversions validation when parsing
    controls in configuration.
  - pam_access: added quiet_log option.
  - pam_access: fixed truncation of very long group names.
  - pam_canonicalize_user: new module to canonicalize user name.
  - pam_echo: fixed file handling to prevent overflows and short reads.
  - pam_env: added support of '\' character in environment variable values.
  - pam_exec: allowed expose_authtok for password PAM_TYPE.
  - pam_exec: fixed stack overflow with binary output of programs.
  - pam_faildelay: implemented parameter ranges validation.
  - pam_listfile: changed to treat \r and \n exactly the same in configuration.
  - pam_mkhomedir: hardened directory creation against timing attacks.
  - Please note that using *at functions leads to more open file handles
    during creation.
  - pam_namespace: fixed potential local DoS (CVE-2024-22365).
  - pam_nologin: fixed file handling to prevent short reads.
  - pam_pwhistory: helper binary is now built only if SELinux support is
    enabled.
  - pam_pwhistory: implemented reliable usernames handling when remembering
Ana Guerrero's avatar Ana Guerrero (anag+factory) accepted request 1108086 from Factory Maintainer's avatar Factory Maintainer (factory-maintainer) (revision 133)
Automatic submission by obs-autosubmit
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 1102711 from Thorsten Kukuk's avatar Thorsten Kukuk (kukuk) (revision 132)
Backport of upstream fixes for ALP
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 1073099 from Thorsten Kukuk's avatar Thorsten Kukuk (kukuk) (revision 129)
- Add common-session-nonlogin and postlogin-* pam.d config files
  for https://github.com/SUSE/pam-config/pull/16, pam_lastlog2
  and upcoming pam_wtmpdb.
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 1045205 from Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) (revision 126)
- Also obsolete pam_unix-32bit to have clean upgrade path.

- Merge pam_unix back into pam, seperate package not needed anymore

- Update pam-git.diff to current upstream
  - pam_env: Use vendor specific pam_env.conf and environment as fallback
  - pam_shells: Use the vendor directory
  obsoletes pam_env_econf.patch
- Refresh docbook5.patch
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 984917 from Factory Maintainer's avatar Factory Maintainer (factory-maintainer) (revision 122)
Automatic submission by obs-autosubmit
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 940244 from Thorsten Kukuk's avatar Thorsten Kukuk (kukuk) (revision 120)
- Drop pam_umask-usergroups-login_defs.patch, does more harm
  than helps. If not explizit specified as module option, we
  use UMASK from login.defs unmodified. (forwarded request 940243 from kukuk)
Displaying revisions 1 - 20 of 138
openSUSE Build Service is sponsored by