[sudo-workers] sudo 1.8.18b1 released

Todd C. Miller Todd.Miller at courtesan.com
Mon Aug 22 08:28:33 MDT 2016


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

The first beta version of sudo 1.8.18 is now available.  This is
primarily a bug fix release.

Source:
    https://www.sudo.ws/sudo/dist/beta/sudo-1.8.18b1.tar.gz
    ftp://ftp.sudo.ws/pub/sudo/beta/sudo-1.8.18b1.tar.gz

SHA256 checksum:
    4012916fad1364291152efb2efa4e881fea88cd01dd4b983771f288d847467ac
MD5 checksum:
    669008807989d18c429b196dfc7eee85

Binary packages:
    https://www.sudo.ws/sudo/dist/beta/packages/index.html#binary

For a list of download mirror sites, see:
    https://www.sudo.ws/sudo/download_mirrors.html

Sudo web site:
    https://www.sudo.ws/sudo/

Sudo web site mirrors:
    https://www.sudo.ws/sudo/mirrors.html

Major changes between sudo 1.8.18b1 and 1.8.17p1:

 * The sudoers locale is now set before parsing the sudoers file.
   If sudoers_locale is set in sudoers, it is applied before
   evaluating other Defaults entries.  Previously, sudoers_locale
   was used when evaluating sudoers but not during the inital parse.
   Bug #748.

 * A missing or otherwise invalid #includedir is now ignored instead
   of causing a parse error.

 * During "make install", backup files are only used on HP-UX where
   it is not possible to unlink a shared object that is in use.
   This works around a bug in ldconfig on Linux which could create
   links to the backup shared library file instead of the current
   one.

 * Fixed a bug introduced in 1.8.17 where sudoers entries with long
   commands lines could be truncated, preventing a match.  Bug #752.

 * The fqdn, runas_default and sudoers_locale Defaults settings are
   now applied before any other Defaults settings since they can
   change how other Defaults settings are parsed.

 * On systems without the O_NOFOLLOW open(2) flag, when the NOFOLLOW
   flag is set, sudoedit now checks whether the file is a symbolic link
   before opening it as well as after the open.  Bug #753.

 * Sudo will now only resolve a user's group IDs to group names
   when sudoers includes group-based permissions.  Group lookups
   can be expensive on some systems where the group database is
   not local.

 * If the file system holding the sudo log file is full, allow
   the command to run unless the new ignore_logfile_errors Defaults
   option is disabled.  Bug #751.

 * The ignore_audit_errors and ignore_iolog_errors Defaults options
   have been added to control sudo's behavior when it is unable to
   write to the audit and I/O logs.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1

iEYEARECAAYFAle7DA4ACgkQWonfon7kcMR2OACgllncd99+4Avr3qi2aAiFLZ2m
1HYAn1iMGSRuj2Nz/ng94tT13GUtM49f
=cA89
-----END PGP SIGNATURE-----


More information about the sudo-workers mailing list