commit 89b19f0a628b14fd900f10b9a70868a4feba74a5
Author: Arkadiusz Miśkiewicz <[email protected]>
Date:   Wed Oct 16 13:24:09 2019 +0200

    - up to 1.8.28
    
     * Fixed CVE-2019-14287, a bug where a sudo user may be able to
       run a command as root when the Runas specification explicitly
       disallows root access as long as the ALL keyword is listed first.

 sudo.spec | 4 ++--
 1 file changed, 2 insertions(+), 2 deletions(-)
---
diff --git a/sudo.spec b/sudo.spec
index 8a72884..7597a23 100644
--- a/sudo.spec
+++ b/sudo.spec
@@ -28,13 +28,13 @@ Summary(ru.UTF-8):  Позволяет определенным пользова
 Summary(uk.UTF-8):     Дозволяє вказаним користувачам виконувати команди від 
імені root
 Name:          sudo
 # please see doc/UPGRADE for important changes each time updating sudo
-Version:       1.8.27
+Version:       1.8.28
 Release:       1
 Epoch:         1
 License:       BSD
 Group:         Applications/System
 Source0:       ftp://ftp.sudo.ws/pub/sudo/%{name}-%{version}.tar.gz
-# Source0-md5: b5c184b13b6b5de32af630af2fd013fd
+# Source0-md5: 5afa5acd0c55b40916e4ad864607edfe
 Source1:       %{name}.pamd
 Source2:       %{name}-i.pamd
 Patch0:                %{name}-env.patch
================================================================

---- gitweb:

http://git.pld-linux.org/gitweb.cgi/packages/sudo.git/commitdiff/89b19f0a628b14fd900f10b9a70868a4feba74a5

_______________________________________________
pld-cvs-commit mailing list
[email protected]
http://lists.pld-linux.org/mailman/listinfo/pld-cvs-commit

Reply via email to