lp:ubuntu/oneiric-security/sudo
- Get this branch:
- bzr branch lp:ubuntu/oneiric-security/sudo
Branch merges
Branch information
Recent revisions
- 53. By Marc Deslauriers
-
* SECURITY UPDATE: authentication bypass via clock set to epoch
- debian/patches/ CVE-2013- 1775.patch: ignore time stamp file if it is
set to epoch in check.c.
- CVE-2013-1775 - 52. By Tyler Hicks
-
* SECURITY UPDATE: Properly handle multiple netmasks in sudoers Host and
Host_List values
- debian/patches/ CVE-2012- 2337.patch: Don't perform IPv6 checks on IPv4
addresses. Based on upstream patch.
- CVE-2012-2337 - 51. By Kees Cook
-
* debian/
patches/ enable_ badpass. patch: turn on "mail_badpass" by default:
- attempting sudo without knowing a login password is as bad as not
being listed in the sudoers file, especially if getting the password
wrong means doing the access-check-email- notification never happens
(Closes: 641218). - 50. By Michael Vogt
-
* Merge from debian/unstable, remaining changes:
- debian/patches/ keep_home_ by_default. patch:
+ Set HOME in initial_keepenv_ table.
- debian/rules:
+ compile with --without-lecture --with-tty-tickets (Ubuntu specific)
+ install man/man8/sudo_root. 8 (Ubuntu specific)
+ install apport hooks
- debian/sudoers:
+ grant admin group sudo access
- debian/sudo-ldap. dirs, debian/sudo.dirs:
+ add usr/share/apport/ package- hooks
* drop debian/patches/ CVE-2011- 0010.patch, applied upstream now - 49. By Scott Moser
-
* debian/
sudo.preinst:
- if well-known ec2 vmbuilder file is found, write a file in
sudoers.d for the 'ubuntu' user (LP: #768625) - 48. By Michael Vogt
-
* debian/
sudo.preinst:
- do not consider the ec2 vmbuilder default sudoers file
verbatim as its actually customized (LP: #761689) - 44. By Michael Vogt
-
* debian/
sudo.preinst:
- avoid conffile prompt by checking for known default /etc/sudoers
and if found installing the correct default /etc/sudoers file
(LP: #690873)
Branch metadata
- Branch format:
- Branch format 7
- Repository format:
- Bazaar repository format 2a (needs bzr 1.16 or later)
- Stacked on:
- lp:ubuntu/quantal/sudo