Группа :: Работа с файлами
Пакет: ecryptfs-utils
Главная Изменения Спек Патчи Sources Загрузить Gear Bugs and FR Repocop
22 апреля 2022 Vitaly Lipatov <lav at altlinux.ru> 111-alt1
- initial build for ALT Sisyphus
- disable openssl module (missed ecryptfs_openssl_init_from_param_vals function)
- disable python module (no users now)
- Rebuilt for https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild
- Rebuilt with OpenSSL 3.0.0
- Rebuilt for https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild
- fix fail to install #1978884
- Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild
- Rebuilt for https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild
- Rebuilt for https://fedoraproject.org/wiki/Fedora_32_Mass_Rebuild
- Rebuilt for https://fedoraproject.org/wiki/Fedora_31_Mass_Rebuild
- require kernel-modules, where ecryptfs kernel module lives
- Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
- drop python2 subpackage is python2 is no longer supported in Fedora 30+ (#1627433)
- switch to authselect since it replaced authconfig in F28 (RHBZ#1577174)
- Rebuild with fixed binutils
- Rebuilt for https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
- avoid unversioned python executable
- add python3 subpackage (experimental, found odd bug in automake)
- optimize generally here and there
- Escape macros in %changelog
- Rebuilt for https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild
- Add Provides for the old name without %_isa
- Python 2 binary package renamed to python2-ecryptfs-utils
See https://fedoraproject.org/wiki/FinalizingFedoraSwitchtoPython3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Binutils_Mass_Rebuild
- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild
- add patch for openssl 1.1.x, rhbz#1384023
- mark patches of upstream and downstream
- fix legacy patches to still work, drop obsolete patch for memcpyfix
- general modernization according to guidelines, drop obsolete commands
- Rebuilt for https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild
- do not crash when using fingerprint reader #1339714
- https://fedoraproject.org/wiki/Changes/Automatic_Provides_for_Python_RPM_Packages
- %{name} updated to 111
- fix ecryptfs-setup-swap improperly configures encrypted swap when using GPT
partitioning on a NVMe or MMC drive (CVE-2016-6224, rhbz#1356828)
- %{name} updated to 110
- Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild
- %{name} updated to 109
- %{name} updated to 108
- Rebuilt for https://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild
- %{name} updated to 106
- fix pam sigsegv (#1184645)
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild
- %{name} updated to 104
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
- ecryptfs-migrate-home did not restore selinux labels (#1017402)
- Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild
- make executables hardened (#965505)
- %{name} updated to 103
- %{name} updated to 101
- home migration did not work under sudo (#868330)
- set selinux boolean only if not already set (#868298)
- fix typo in restorecon path (#865839)
- do not crash in pam module when non-existent user name is used (#859766)
- fix Werror messages in new build environment
- %{name} updated to 100
- %{name} updated to 99
- fixes: suid helper does not restrict mounting filesystems with
nosuid, nodev leading to possible privilege escalation (CVE-2012-3409)
- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild
- %{name} updated to 97
- for file name encryption support check, module must be loaded already
- when ecryptfs-mount-fails, check if user is member of ecryptfs group
- %{name} updated to 96
- blowfish and twofish support check did not work with on 3.2.x kernels (#785036)
- Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild
- updated to v. 95
- update pam config in post install phase
- updated to v. 93
- set the group id in mount.ecryptfs_private (CVE-2011-3145)
- security fixes:
- privilege escalation via mountpoint race conditions (CVE-2011-1831, CVE-2011-1832)
- race condition when checking source during mount (CVE-2011-1833)
- mtab corruption via improper handling (CVE-2011-1834)
- key poisoning via insecure temp directory handling (CVE-2011-1835)
- information disclosure via recovery mount in /tmp (CVE-2011-1836)
- arbitrary file overwrite via lock counter race (CVE-2011-1837)
- improve logging messages of ecryptfs pam module
- keep own copy of passphrase, pam clears it too early
- keyring from auth stack does not survive, use pam_data and delayed
keyring initialization
- fix pam module to set ecryptfs gid before mount helper execution
- do not use zombie process, it causes lock ups in ssh
- do not use memcpy for overlaping areas
- fix broken pam module resulting in session with wrong gid
- fix mtab handling everywhere
- check for ecryptfs pam module before home dir migration
- update of mtab does not work if it's a symlink (#706911)
- auto-load ecryptfs module in ecryptfs-setup-private
- updated to v. 87
- fix man pages
- fix selinux context
- updated to v. 86
- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild
- %{name} updated to 85
- fix build on arches where char is unsigned by default
- fix unsigned < 0 test (#664474)
- %{name} updated to 84
- Rebuilt for gcc bug 634757
- add missing gettext require (#630212)
- fix ftbfs for python mass rebuild
- Rebuilt for https://fedoraproject.org/wiki/Features/Python_2.7/MassRebuild
- remove nss dependency from umount.ecryptfs
- make salt working together with passwd_file
- enable PKCS#11 support
- blkid moved from e2fsprogs to util-linux-ng, follow the change (#569996)
- updated to v. 83
- better fix for (#486139)
- updated to 82
- fix getext typos (#532732)
- updated to 81
- rebuilt with new openssl
- updated to 79
- ecryptfs-dot-private is no longer used
- updated to 78
- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild
- updated to 76
- removed executable permission from ecryptfs-dot-private (#500817)
- require cryptsetup-luks for encrypted swap (#500824)
- use blkid instead of vol_id (#500820)
- don't rely on cryptdisks service (#500829)
- add icon for Access-Your-Private-Data.desktop file
- updated to 75
- restrict mount.ecryptfs_private to ecryptfs group members only
- updated to 74
- updated to 73
- move libs from /usr/lib to /lib (#486139)
- fix symlinks created by ecryptfs-setup-private (#486146)
- updated to 71
- remove .la files
- updated to 70
- fix: #479762 - ecryptfsecryptfs-setup-private broken
- added umount option to clear per-user keyring
- fix list of onwed directories
- add missing requires: keyutils
- bump release for rebuild
- updated to 69
- updated to 68
- fix #478464 - /usr/bin/ecryptfs-setup-private errors out
- bump release for rebuild
- updated to 67
- Add support for filename encryption enablement (future kernel feature)
- Replace uint32_t with size_t for x86_64 compatibility (patch by Eric Sandeen)
- Remove duplicate doc files from rpm
- Put attr declaration in the right spot
- Make /sbin/*ecryptfs* files setuid
- Add /sbin path to ecryptfs-setup-private
- TSPI key module update to avoid flooding TrouSerS library with requests
- OpenSSL key module parameter fixes
- Updates to mount-on-login utilities
- Namespace fixes for the key module parameter aliases
- Updates to the man page and the README
- New upstream version
- Many new manpages, new ecryptfs-stat util
- fix license tag
- Add umount.ecryptfs_private symlink
- Add pam_mount session hooks for mount and unmount
- build with TrouSerS key module
- New upstream version
- New upstream version
- Enable passwd_file option in openssl key module
- Fix include upstream
- fix includes
- Fix passthrough mount option prompt
- Clarify man page
- Add HMAC option (for future kernel versions)
- Bump to version 38
- Remove unsupported ciphers; bump to version 37
- Cipher selection detects .gz ko files; bump to version 36
- Cleanups to cipher selection; bump to version 35
- Fix OpenSSL key module; bump to version 34
- Add files to package
- update to version 33
- update to version 32
- fix ia64 libdir
- build initial RHEL-5 version
- build version 30
- Bump to version 30. Several bugfixes. Key modules are overhauled
with a more sane API.
- Rebuild for selinux ppc32 issue.
- Bump to version 18 with an OpenSSL key module fix
- Change kernel Requires to Conflicts
- Remove un-needed devel buildrequires
- Provide built-in fallback passphrase key module. Remove keyutils,
openssl, and pam requirements (library dependencies take care of
this). Include wrapped passphrase executables in file set.
- Change permission of pam_ecryptfs.so from 644 to 755.
- Fix mount option parse segfault. Fix pam_ecryptfs.so semaphore
issue when logging in via ssh.
- Remove verbose syslog() calls; change key module build to allow
OpenSSL module to be disabled from build; add AUTHORS, NEWS, and
THANKS to docs; update Requires with variables instead of hardcoded
name and version.
- Minor update in README, add dist tag to Release, add --disable-rpath
to configure step, and remove keyutils-libs from Requires.
- Correct install directories for 64-bit; add support for xattr and
encrypted_view mount options
- Introduce build support for openCryptoki key module. Fix -dev build
dependencies for devel package
- Initial package creation