summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authortron <tron@pkgsrc.org>2015-02-14 09:31:17 +0000
committertron <tron@pkgsrc.org>2015-02-14 09:31:17 +0000
commit5bed3dd3512998c4393991b951ca9e1da52fc60c (patch)
tree833cdbc755ed4d9ffe96fe4dccf3904786a23987
parent0fc43b6a0c460a4465a28e2baf9da3a191c80993 (diff)
downloadpkgsrc-5bed3dd3512998c4393991b951ca9e1da52fc60c.tar.gz
Pullup ticket #4612 - requested by spz
security/sudo: security update Revisions pulled up: - security/sudo/Makefile 1.145 - security/sudo/distinfo 1.82 --- Module Name: pkgsrc Committed By: spz Date: Wed Feb 11 09:11:59 UTC 2015 Modified Files: pkgsrc/security/sudo: Makefile distinfo Log Message: update of sudo to the next upstream patch version (1.7.10p8 to 1.7.10p9) Upstream Changelog: + The TZ environment variable is now checked for safety instead of simply being copied to the environment of the command. This fixes a potential security issue. + Sudo now only builds Position Independent Executables (PIE) by default on Linux systems and verifies that a trivial test program builds and runs. + On Solaris 11.1 and higher, sudo binaries will now have the ASLR tag enabled if supported by the linker.
-rw-r--r--security/sudo/Makefile4
-rw-r--r--security/sudo/distinfo8
2 files changed, 6 insertions, 6 deletions
diff --git a/security/sudo/Makefile b/security/sudo/Makefile
index a2f8d16043e..797962e5863 100644
--- a/security/sudo/Makefile
+++ b/security/sudo/Makefile
@@ -1,7 +1,7 @@
-# $NetBSD: Makefile,v 1.144 2014/10/09 14:06:56 wiz Exp $
+# $NetBSD: Makefile,v 1.144.2.1 2015/02/14 09:31:17 tron Exp $
#
-DISTNAME= sudo-1.7.10p8
+DISTNAME= sudo-1.7.10p9
#PKGREVISION= 0
CATEGORIES= security
MASTER_SITES= http://www.sudo.ws/dist/ \
diff --git a/security/sudo/distinfo b/security/sudo/distinfo
index 83e6fceb17e..caf7e8782df 100644
--- a/security/sudo/distinfo
+++ b/security/sudo/distinfo
@@ -1,8 +1,8 @@
-$NetBSD: distinfo,v 1.81 2014/03/08 11:51:56 kim Exp $
+$NetBSD: distinfo,v 1.81.8.1 2015/02/14 09:31:17 tron Exp $
-SHA1 (sudo-1.7.10p8.tar.gz) = deb83d8ba8f15f70c134c3f3a74e750925aa9f59
-RMD160 (sudo-1.7.10p8.tar.gz) = de3594843c006f7d5d3b21c79dd4115b4823b19d
-Size (sudo-1.7.10p8.tar.gz) = 1220987 bytes
+SHA1 (sudo-1.7.10p9.tar.gz) = fc2cad927063f5d6249387e96c6bf0082c13e37e
+RMD160 (sudo-1.7.10p9.tar.gz) = 5ca8479deae0a360934d130d97bc8daf77845366
+Size (sudo-1.7.10p9.tar.gz) = 1224867 bytes
SHA1 (patch-aa) = 0c9c173a26ea72dd06a7d3947a0b3ba6dc00cf40
SHA1 (patch-af) = 3462525bd0863ec5f957173a10839aed2b7cbb69
SHA1 (patch-ag) = 86f9838045f2bed7eb8e4271553c510be31b7d6b