diff options
author | Patrick J Volkerding <volkerdi@slackware.com> | 2020-02-15 02:42:28 +0000 |
---|---|---|
committer | Eric Hameleers <alien@slackware.com> | 2020-02-15 08:59:47 +0100 |
commit | 7cde3ca9e7c5de666cc607e737f984a52f94e021 (patch) | |
tree | 9625b6c02d0dad1e8cc40f9713b2c1d4919d011a /source/n/openssh | |
parent | bea4af160dc640549e07144b9a0dddf09b569861 (diff) | |
download | current-7cde3ca9e7c5de666cc607e737f984a52f94e021.tar.gz |
Sat Feb 15 02:42:28 UTC 202020200215024228
a/kernel-generic-5.4.20-x86_64-1.txz: Upgraded.
a/kernel-huge-5.4.20-x86_64-1.txz: Upgraded.
a/kernel-modules-5.4.20-x86_64-1.txz: Upgraded.
a/shadow-4.8.1-x86_64-3.txz: Rebuilt.
a/util-linux-2.35.1-x86_64-3.txz: Rebuilt.
d/kernel-headers-5.4.20-x86-1.txz: Upgraded.
k/kernel-source-5.4.20-noarch-1.txz: Upgraded.
l/ConsoleKit2-1.2.1-x86_64-2.txz: Rebuilt.
l/dconf-editor-3.34.4-x86_64-1.txz: Upgraded.
l/libxkbcommon-0.10.0-x86_64-1.txz: Added.
l/openal-soft-1.19.1-x86_64-1.txz: Added.
l/qt5-5.13.2-x86_64-1.txz: Added.
Thanks to alienBOB.
n/openssh-8.2p1-x86_64-1.txz: Upgraded.
Potentially incompatible changes:
* ssh(1), sshd(8): the removal of "ssh-rsa" from the accepted
CASignatureAlgorithms list.
* ssh(1), sshd(8): this release removes diffie-hellman-group14-sha1
from the default key exchange proposal for both the client and
server.
* ssh-keygen(1): the command-line options related to the generation
and screening of safe prime numbers used by the
diffie-hellman-group-exchange-* key exchange algorithms have
changed. Most options have been folded under the -O flag.
* sshd(8): the sshd listener process title visible to ps(1) has
changed to include information about the number of connections that
are currently attempting authentication and the limits configured
by MaxStartups.
x/mesa-19.3.4-x86_64-2.txz: Rebuilt.
Reverted "[PATCH] swr: Fix GCC 4.9 checks." which makes X fail to start with
an illegal instruction on some hardware.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
testing/packages/PAM/ConsoleKit2-1.2.1-x86_64-2_pam.txz: Rebuilt.
Rebuilt with --disable-libcgmanager to fix setting limits on PAM.
Thanks to gattocarlo.
testing/packages/PAM/openssh-8.2p1-x86_64-1_pam.txz: Upgraded.
testing/packages/PAM/shadow-4.8.1-x86_64-3_pam.txz: Rebuilt.
Moved some of the /etc/pam.d/ file to the util-linux package where they
more properly belong.
testing/packages/PAM/util-linux-2.35.1-x86_64-3_pam.txz: Rebuilt.
Added some /etc/pam.d/ files previously in the shadow package.
Changed /etc/pam.d/{chfn,chsh} and made chfn/chsh setuid root to fix them.
Added /etc/pam.d/{runuser,runuser-l}.
usb-and-pxe-installers/usbboot.img: Rebuilt.
Diffstat (limited to 'source/n/openssh')
-rw-r--r-- | source/n/openssh/openssh.tcp_wrappers.diff | 31 | ||||
-rw-r--r-- | source/n/openssh/openssh.url | 1 |
2 files changed, 17 insertions, 15 deletions
diff --git a/source/n/openssh/openssh.tcp_wrappers.diff b/source/n/openssh/openssh.tcp_wrappers.diff index 38e3b3b4..60c7c14e 100644 --- a/source/n/openssh/openssh.tcp_wrappers.diff +++ b/source/n/openssh/openssh.tcp_wrappers.diff @@ -1,6 +1,6 @@ ---- ./configure.ac.orig 2019-04-17 17:52:57.000000000 -0500 -+++ ./configure.ac 2019-04-18 15:13:25.404941727 -0500 -@@ -1494,6 +1494,62 @@ +--- ./configure.ac.orig 2020-02-13 18:40:54.000000000 -0600 ++++ ./configure.ac 2020-02-14 19:28:45.566081482 -0600 +@@ -1532,6 +1532,62 @@ AC_MSG_RESULT([no]) fi @@ -63,7 +63,7 @@ # Check whether user wants to use ldns LDNS_MSG="no" AC_ARG_WITH(ldns, -@@ -5245,6 +5301,7 @@ +@@ -5389,6 +5445,7 @@ echo " OSF SIA support: $SIA_MSG" echo " KerberosV support: $KRB5_MSG" echo " SELinux support: $SELINUX_MSG" @@ -71,22 +71,23 @@ echo " MD5 password support: $MD5_MSG" echo " libedit support: $LIBEDIT_MSG" echo " libldns support: $LDNS_MSG" ---- ./sshd.c.orig 2019-04-17 17:52:57.000000000 -0500 -+++ ./sshd.c 2019-04-18 15:13:25.406941726 -0500 -@@ -122,6 +122,12 @@ - #include "auth-options.h" - #include "version.h" +--- ./sshd.c.orig 2020-02-13 18:40:54.000000000 -0600 ++++ ./sshd.c 2020-02-14 19:30:12.694084273 -0600 +@@ -124,6 +124,13 @@ #include "ssherr.h" + #include "sk-api.h" + +#ifdef LIBWRAP +#include <tcpd.h> +#include <syslog.h> +int allow_severity; +int deny_severity; +#endif /* LIBWRAP */ - ++ /* Re-exec fds */ #define REEXEC_DEVCRYPTO_RESERVED_FD (STDERR_FILENO + 1) -@@ -2022,6 +2028,26 @@ + #define REEXEC_STARTUP_PIPE_FD (STDERR_FILENO + 2) +@@ -2107,6 +2114,26 @@ the_active_state = ssh; ssh_packet_set_server(ssh); @@ -113,9 +114,9 @@ check_ip_options(ssh); /* Prepare the channels layer */ ---- ./sshd.8.orig 2019-04-17 17:52:57.000000000 -0500 -+++ ./sshd.8 2019-04-18 15:13:25.407941726 -0500 -@@ -873,6 +873,12 @@ +--- ./sshd.8.orig 2020-02-13 18:40:54.000000000 -0600 ++++ ./sshd.8 2020-02-14 19:28:45.574081482 -0600 +@@ -893,6 +893,12 @@ This file should be writable only by the user, and need not be readable by anyone else. .Pp @@ -128,7 +129,7 @@ .It Pa /etc/hosts.equiv This file is for host-based authentication (see .Xr ssh 1 ) . -@@ -975,6 +981,7 @@ +@@ -995,6 +1001,7 @@ .Xr ssh-keygen 1 , .Xr ssh-keyscan 1 , .Xr chroot 2 , diff --git a/source/n/openssh/openssh.url b/source/n/openssh/openssh.url new file mode 100644 index 00000000..9c8a0cea --- /dev/null +++ b/source/n/openssh/openssh.url @@ -0,0 +1 @@ +https://ftp.openbsd.org/pub/OpenBSD/OpenSSH/portable/ |