diff --git a/SPECS/openssh.spec b/SPECS/openssh.spec index b459a68..7ecc132 100644 --- a/SPECS/openssh.spec +++ b/SPECS/openssh.spec @@ -54,7 +54,7 @@ Summary: An open source implementation of SSH protocol version 2 Name: openssh Version: %{openssh_ver} -Release: %{openssh_rel}%{?dist}.alma.1 +Release: %{openssh_rel}%{?dist}.alma.2 URL: http://www.openssh.com/portable.html #URL1: https://github.com/jbeverly/pam_ssh_agent_auth/ Source0: ftp://ftp.openbsd.org/pub/OpenBSD/OpenSSH/portable/openssh-%{version}.tar.gz @@ -366,7 +366,7 @@ Requires: openssh = %{version}-%{release} %package -n pam_ssh_agent_auth Summary: PAM module for authentication with ssh-agent Version: %{pam_ssh_agent_ver} -Release: %{pam_ssh_agent_rel}.%{openssh_rel}%{?dist}.alma.1 +Release: %{pam_ssh_agent_rel}.%{openssh_rel}%{?dist}.alma.2 License: BSD %description @@ -516,6 +516,8 @@ popd %patch1018 -p1 -b .cve-2023-48795 %patch1019 -p1 -b .cve-2023-51385 +%patch1020 -p1 -b .cve-2024-6387 + autoreconf pushd pam_ssh_agent_auth-pam_ssh_agent_auth-%{pam_ssh_agent_ver} autoreconf @@ -802,7 +804,7 @@ test -f %{sysconfig_anaconda} && \ %endif %changelog -* Mon July 01 2024 Jonathan Wright - 8.7p1-38.alma.1 +* Mon July 01 2024 Jonathan Wright - 8.7p1-38.alma.2 - Fix regreSSHion attack Resolves: CVE-2024-6387