Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package sudo for openSUSE:Factory checked in at 2022-11-23 09:47:30 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/sudo (Old) and /work/SRC/openSUSE:Factory/.sudo.new.1597 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "sudo" Wed Nov 23 09:47:30 2022 rev:139 rq:1037191 version:1.9.12p1 Changes: -------- --- /work/SRC/openSUSE:Factory/sudo/sudo.changes 2022-11-07 09:26:05.661526364 +0100 +++ /work/SRC/openSUSE:Factory/.sudo.new.1597/sudo.changes 2022-11-23 09:47:32.902866767 +0100 @@ -1,0 +2,17 @@ +Mon Nov 21 22:25:54 UTC 2022 - Jason Sikes <jsi...@suse.com> + +- Update to 1.9.12p1: + * Changes in 1.9.12p1: + - Sudoâs configure script now does a better job of detecting when + the -fstack-clash-protection compiler option does not work. + GitHub issue #191. + + - Fixed CVE-2022-43995, a potential out-of-bounds write for passwords + smaller than 8 characters when passwd authentication is enabled. + This does not affect configurations that use other authentication + methods such as PAM, AIX authentication or BSD authentication. + + - Fixed a build error with some configurations compiling host_port.c. + * Dropped sudo-CVE-2022-43995.patch + +------------------------------------------------------------------- Old: ---- sudo-1.9.12.tar.gz sudo-1.9.12.tar.gz.sig sudo-CVE-2022-43995.patch New: ---- sudo-1.9.12p1.tar.gz sudo-1.9.12p1.tar.gz.sig ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ sudo.spec ++++++ --- /var/tmp/diff_new_pack.aNP0nm/_old 2022-11-23 09:47:33.650870669 +0100 +++ /var/tmp/diff_new_pack.aNP0nm/_new 2022-11-23 09:47:33.662870732 +0100 @@ -17,7 +17,7 @@ Name: sudo -Version: 1.9.12 +Version: 1.9.12p1 Release: 0 Summary: Execute some commands as root License: ISC @@ -33,7 +33,6 @@ Source7: README_313276.test # PATCH-OPENSUSE: the "SUSE" branding of the default sudo config Patch0: sudo-sudoers.patch -Patch1: sudo-CVE-2022-43995.patch BuildRequires: audit-devel BuildRequires: cyrus-sasl-devel BuildRequires: groff