ELSA-2015-1409

ELSA-2015-1409 - sudo security, bug fix, and enhancement update

Type:SECURITY
Severity:MODERATE
Release Date:2015-07-28

Description


[1.8.6p3-19]
- RHEL-6.7 erratum
- modified the authlogicfix patch to fix #1144448
- fixed a bug in the ldapusermatchfix patch
Resolves: rhbz#1144448
Resolves: rhbz#1142122

[1.8.6p3-18]
- RHEL-6.7 erratum
- fixed the mantypos-ldap.patch
Resolves: rhbz#1138267

[1.8.6p3-17]
- RHEL-6.7 erratum
- added patch for CVE-2014-9680
- added BuildRequires for tzdata
Resolves: rhbz#1200253

[1.8.6p3-16]
- RHEL-6.7 erratum
- added zlib-devel build required to enable zlib compression support
- fixed two typos in the sudoers.ldap man page
- fixed a hang when duplicate nss entries are specified in nsswitch.conf
- SSSD: implemented sorting of the result entries according to the
sudoOrder attribute
- LDAP: fixed logic handling the computation of the 'user matched' flag
- fixed restoring of the SIGPIPE signal in the tgetpass function
- fixed listpw, verifypw + authenticate option logic in LDAP/SSSD
Resolves: rhbz#1106433
Resolves: rhbz#1138267
Resolves: rhbz#1147498
Resolves: rhbz#1138581
Resolves: rhbz#1142122
Resolves: rhbz#1094548
Resolves: rhbz#1144448


Related CVEs


CVE-2014-9680

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 6 (i386) sudo-1.8.6p3-19.el6.src.rpm8630d7bf5231476146eb1f189d430067ELSA-2021-9169
sudo-1.8.6p3-19.el6.i686.rpm6a61929363ac560a5b0cec2911ea3e85ELSA-2021-9169
sudo-devel-1.8.6p3-19.el6.i686.rpm475577dc4628aca31730fefe498c3708ELSA-2021-9169
Oracle Linux 6 (x86_64) sudo-1.8.6p3-19.el6.src.rpm8630d7bf5231476146eb1f189d430067ELSA-2021-9169
sudo-1.8.6p3-19.el6.x86_64.rpma56ddc3d3ce17669aa65e2b7e6d8690cELSA-2021-9169
sudo-devel-1.8.6p3-19.el6.i686.rpm475577dc4628aca31730fefe498c3708ELSA-2021-9169
sudo-devel-1.8.6p3-19.el6.x86_64.rpmaf36542e7ed605c43063a67a0676fcebELSA-2021-9169



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete