File pam_pkcs11.changes of Package pam_pkcs11.37564

-------------------------------------------------------------------
Wed Feb 19 14:52:33 UTC 2025 - Angel Yankov <angel.yankov@suse.com>

- Security update fix [bsc#1237062, CVE-2025-24032], [bsc#1237058, CVE-2025-24031]
  * Fix CVE-2025-24032: vulnerable to authentication bypass with default value for `cert_policy` (`none`)
  * Fix CVE-2025-24031: vulnerable to segmentation fault on ctrl-c/ctrl-d when asked for PIN
  * Add pam_pkcs11-CVE-2025-24032.patch
  * Add pam_pkcs11-CVE-2025-24031.patch
  * spec: add %check section

-------------------------------------------------------------------
Fri Aug 17 10:12:31 UTC 2018 - vcizek@suse.com

- Address security issues found by X41 D-Sec audit (bsc#1105012)
  * Authentication Replay
  * Buffer Overflow
  * Memory not cleaned properly before free()
- add patches:
  * 0001-verify-using-a-nonce-from-the-system-not-the-card.patch
  * 0002-fixed-buffer-overflow-with-long-home-directory.patch
  * 0003-fixed-wiping-secrets-with-OpenSSL_cleanse.patch

-------------------------------------------------------------------
Wed Aug  9 15:08:07 UTC 2017 - astieger@suse.com

- add service file bsc#1049219

-------------------------------------------------------------------
Tue Jul 10 17:24:56 CEST 2012 - sbrabec@suse.cz

- Updated to version 0.6.8:
  * Code cleanup.
  * Bug fixes.
  * Translation updates.

-------------------------------------------------------------------
Tue Feb 28 19:54:16 CET 2012 - sbrabec@suse.cz

- Change nssdb path to /etc/pki/nssdb (bnc#463469).
- Make libdir paths in pam_pkcs11.conf biarch-wise.

-------------------------------------------------------------------
Wed Jan  5 18:40:44 CET 2011 - sbrabec@suse.cz

- Updated to version 0.6.6:
  * Compatible with pcsc-lite-1.6.
  * New mapper API.
  * Minor fixes.
  * Translaton updates.

-------------------------------------------------------------------
Mon Feb  1 12:20:03 UTC 2010 - jengelh@medozas.de

- package baselibs.conf

-------------------------------------------------------------------
Wed Aug  5 15:55:31 CEST 2009 - sbrabec@suse.cz

- Updated to version 0.6.1:
  * Added functions to API.
  * Fixes from openSUSE packages upstreamed.
  * Minor fixes.
  * Translaton updates.

-------------------------------------------------------------------
Thu Jun 25 12:41:19 CEST 2009 - sbrabec@suse.cz

- Supplement pam-32bit/pam-64bit in baselibs.conf (bnc#354164).

-------------------------------------------------------------------
Wed Oct 15 18:30:29 CEST 2008 - sbrabec@suse.cz

- Fixed all implicit declarations.

-------------------------------------------------------------------
Tue Sep 23 17:49:42 CEST 2008 - sbrabec@suse.cz

- Fixed uninitialized variable (bnc#351207).

-------------------------------------------------------------------
Thu Apr 10 12:54:45 CEST 2008 - ro@suse.de

- added baselibs.conf file to build xxbit packages
  for multilib support

-------------------------------------------------------------------
Thu Sep  6 21:08:43 CEST 2007 - jberkman@novell.com

- use the same directory for nssdb as the kerberos pkinit plugin

-------------------------------------------------------------------
Tue Jul 31 17:34:21 CEST 2007 - sbrabec@suse.cz

- Build with NSS instead of openssl.
- Applied patches from Jacob Berkman: MS UPN OID and NSS
  configuration.
- Fixed implicit declaration.

-------------------------------------------------------------------
Thu Jul 26 14:32:24 CEST 2007 - sbrabec@suse.cz

- Updated to version 0.6.0:
  * compiler warning fixes
  * I18N support
  * new configuration options
  * support for new environment variables
  * new tool pkcs11_setup
  * support for the NSS crypto libraries (off by default)
  * for more changes see ChangeLog.svn

-------------------------------------------------------------------
Fri May 12 16:18:38 CEST 2006 - sbrabec@suse.cz

- New SuSE package, version 0.5.3.

openSUSE Build Service is sponsored by