Mattias Ellert
5c1da775a9
Fix issue with read-only ssh buffer during gssapi key exchange
...
(rhbz#1938224)
https://github.com/openssh-gsskex/openssh-gsskex/pull/19
2023-10-16 22:26:16 +02:00
Dmitry Belyavskiy
f561c68bdb
Rebasing OpenSSH from 9.0 to 9.3
2023-06-02 15:38:27 +02:00
Dmitry Belyavskiy
745da74ea2
Fix self-DoS
...
Resolves: CVE-2023-25136
Remove too aggressive coverity fix causing native tests failure
2023-04-13 18:14:19 +02:00
Dmitry Belyavskiy
03150f6281
OpenSSH Rebase to 9.0p1
...
Related: rhbz#2057466
2022-08-15 09:28:25 +02:00
Dmitry Belyavskiy
9fd6981674
Add patches from CentOS/RHEL9.1
...
Related: rhbz#2117264
2022-08-10 19:58:47 +02:00
Dmitry Belyavskiy
8f4d190341
OpenSSH 8.7p1 patches rebase
2021-09-01 16:35:39 +02:00
Dmitry Belyavskiy
4d4feb650d
restore the blocking mode on standard output
...
Resolves rhbz#1942901
2021-05-10 11:30:58 +02:00
Dmitry Belyavskiy
446f300da0
Remove all the coverity warnings
2021-03-26 12:55:57 +01:00
Dmitry Belyavskiy
a2e7f72c3c
Fix coverity issues for openssh ( #1938831 )
2021-03-25 10:53:25 +01:00
Jakub Jelen
25c16c68f5
openssh-8.5p1-1 + 0.10.4-2
2021-03-03 11:08:52 +01:00
Jakub Jelen
51f5c1c99f
openssh-8.2p1-1 + 0.10.3-9
2020-02-17 14:34:41 +01:00
Jakub Jelen
def1debf2e
openssh-8.0p1-1 + 0.10.3-7
...
Resolves rhbz#1701072
2019-04-29 14:12:13 +02:00
Jakub Jelen
bbf61daf97
openssh-7.8p1-1 + 0.10.3-5
...
New upstream release including:
* Dropping entropy patch
* Remove default support for MD5 fingerprints
* Porting all the downstream patches and pam_ssh_agent_auth
to new sshbuf and sshkey API
* pam_ssh_agent_auth is no longer using MD5 fingerprints
2018-08-24 23:16:24 +02:00
Jakub Jelen
3cd4899257
Rebase to latest OpenSSH 7.7p1 ( #1563223 )
2018-04-04 16:50:43 +02:00
Jakub Jelen
6cf9b8e61b
rebase to openssh-7.4p1-1
...
* Drop unaccepted (unapplying) coverity patches
* Drop server support for SSH1 (server)
* Workaround #2641 for systemd
* UseLogin is gone
* Drop upstream commit 28652bca
* Tighten seccomp filter (cache credentials before entering sandbox) (#1395288 )
2017-01-03 14:31:20 +01:00
Jakub Jelen
5878ebb50e
Most of the coverity patch applied upstream, context changes for rebase
2016-08-04 10:59:59 +02:00
Jakub Jelen
84d3989ec8
Coverity -> FIPS patch
2016-06-03 12:54:03 +02:00
Jakub Jelen
31536c7ac6
Move linux_seed() header from coverity to entropy patch
2016-06-03 12:54:03 +02:00
Jakub Jelen
f2868287aa
rebase x11 patch to clean up coverity patch
2016-06-03 10:44:32 +02:00
Jakub Jelen
13073f8d9c
openssh-7.2p1-1 ( #1312870 )
2016-02-29 15:01:33 +01:00
Jakub Jelen
87ab5fc4af
Reabse to latest release of pam_ssh_agent_auth with preserving current functionality
...
* Rebase to latest upstream version
* Clean up older patches for pam_ssh_agent_auth
* Remove prefixes from upstream release so we can build it against current
openssh library
* Remove copied files and headers so we make sure we build against current openssh
2016-01-25 13:32:42 +01:00
Jakub Jelen
535d341e70
rebase to new upstream release 6.9
2015-07-01 15:51:01 +02:00
Jakub Jelen
73d45fa321
Correct handle pam_ssh_agent_auth memory, buffers and variable sizes, which caused segfaults ( #1225106 )
2015-06-02 18:56:57 +02:00
Jakub Jelen
576cdf728b
Fix memory leak from upstream
2015-03-30 11:48:11 +02:00
Jakub Jelen
132f8f8686
6.8p1-1 + 0.9.3-5
2015-03-23 16:05:49 +01:00
Jakub Jelen
580f986839
Update coverity patch after rebase to 6.7
2015-02-03 14:09:51 +01:00