Projects / sudo / Releases

All releases of sudo

  •  14 Nov 2008 14:42
Avatar

    Release Notes: A crash which occurred when the -i flag was used with a uid not in the password database has been fixed. Sudo now operates in the C locale again when doing a match against sudoers. A potential crash when a glob matches a large number of files has been fixed. A compilation problem with certain versions of Heimdal KerberosV has been fixed. When setting the umask, sudo will now use the union of the user's umask and the value set in sudoers. Sudo now stats fewer files when doing a wildcard match.

    •  12 May 2008 17:35
    Avatar

      Release Notes: There was missing whitespace before the LDAP libraries in the Makefile for some configurations. LDAP support now compiles on systems where LDAPS_PORT is not defined. Also fixes a bug introduced in sudo 1.6.9p14 if the LDAP server could not be contacted and the user was not present in the sudoers file, a syntax error in sudoers was incorrectly reported.

      •  30 Mar 2008 07:19
      Avatar

        Release Notes: The installation of sudo_noexec.so on AIX systems was fixed. libtool was updated to version 1.5.26. Printing of default SELinux role and type in -V mode was fixed. The HOME environment variable is once again preserved by default, as per the documentation.

        •  20 Feb 2008 18:41
        Avatar

          Release Notes: Sudo will now set the nproc resource limit to unlimited on Linux systems to work around Linux's setuid() resource limit semantics. On PAM systems the resource limits will be reset by pam_limits.so before the command is executed. Sudo now has SELinux support that can be used to implement role based access control (RBAC). A role and (optional) type may be specified in sudoers or on the command line. These are then used in the security context that the command is run as. This release also fixes a Kerberos 5 compilation problem with MIT Kerberos.

          •  21 Jan 2008 21:21
          Avatar

            Release Notes: LDAP improvements, including an added configure check for the ber_set_option() function and support for the tls_checkpeer ldap.conf variable for Netscape-based LDAP SDKs. A long-standing problem where an incomplete password could be echoed to the screen if there was a read timeout has been fixed. This release includes updated Kerberos 5 ticket verification code.

            •  07 Jan 2008 01:18
            Avatar

              Release Notes: This release fixes a compilation problem on SCO UNIX related to how it stores the high resolution timestamps in struct stat. The URI specifier can now be used in ldap.conf even when the LDAP SDK doesn't support ldap_initialize(). There is a new %p prompt escape that expands to the user whose password is being prompted, as specified by the rootpw, targetpw, and runaspw sudoers flags.

              •  03 Dec 2007 13:11
              Avatar

                Release Notes: The ALL command in sudoers now implies SETENV permissions. The command search is now performed using the target user's auxiliary group vector, not just the target's primary group. When determining if the PAM prompt is the default "Password: ", the localized version is compared if possible. The passprompt_override option was added in sudoers to cause sudo's prompt to be used in all cases (set when the -p flag is used).

                •  02 Nov 2007 21:48
                Avatar

                  Release Notes: This release fixes a bug where a sudoers entry with no runas user specified was treated differently from a line with the default runas user explicitly specified.

                  •  26 Oct 2007 17:53
                  Avatar

                    Release Notes: This release goes back to to using TCSAFLUSH instead of TCSADRAIN when turning off echo during password reading. A configure bug that was preventing the addition of -lutil for login.conf support on FreeBSD and NetBSD has been fixed. A configure check has been added for struct in6_addr, since some systems define AF_INET6 but have no real IPv6 support.

                    •  09 Oct 2007 18:21
                    Avatar

                      Release Notes: This release works around bugs in the session support of some PAM implementations. The full TTY path is now passed to PAM as well. Sudo now only prints a password prompt if the process is in the foreground.

                      Screenshot

                      Project Spotlight

                      episoder

                      A tool to tell you about new episodes of your favourite TV shows.

                      Screenshot

                      Project Spotlight

                      BalanceNG

                      A modern software IP load balancer.