Ecosyste.ms: OpenCollective
An open API service for software projects hosted on Open Collective.
Sudo Project
Provide privileged access management for the masses.
Collective -
Host: opensource -
https://opencollective.com/sudo-project
- Website: https://www.sudo.ws
- Code: https://github.com/sudo-project
Problem reported by Matthias Gerstner of SUSE.
github.com/sudo-project/sudo - a29cac8bd6567d403fd15f15f41679bf5cf0ac62 authored almost 4 years ago by Todd C. Miller <[email protected]>github.com/sudo-project/sudo - 4151d8fc808bdb7a3b0a1c7c089d39266cf3016a authored almost 4 years ago by Todd C. Miller <[email protected]>
This effectively backs out changeset f738f5ac5350, which made
it possible to log the command when...
We like to use an empty return for stub functions.
github.com/sudo-project/sudo - 4c00a4e5b766f14369ccb9265f25176ec0b25a53 authored almost 4 years ago by Todd C. Miller <[email protected]>This is a regression introduced in sudo 1.8.9 with the strtonum()
conversion. Bug #950.
github.com/sudo-project/sudo - 4949fd2913c8c72a89dbd49ec80d0a10d205e446 authored almost 4 years ago by Todd C. Miller <[email protected]>
github.com/sudo-project/sudo - f41b2c1f595232b6362ec8a0e4ebc98c801d220a authored almost 4 years ago by Todd C. Miller <[email protected]>
github.com/sudo-project/sudo - 5c66e9532ed56bcc103e663a89b087ee60f9fc5d authored almost 4 years ago by Todd C. Miller <[email protected]>
Also fix some warnings from the new version.
github.com/sudo-project/sudo - da5c6c6c456c364aea3e87271df1cdf380792d08 authored almost 4 years ago by Todd C. Miller <[email protected]>On macOS 10.6 and above, getgroups(2) can return more than NGROUPS_MAX
if _DARWIN_UNLIMITED_GETGR...
Fixes a problem when there are multiple versions of sudo installed
and not all suport the audit p...
This makes it available for event logging in case the name doesn't resolve.
github.com/sudo-project/sudo - 63739dd3261e9ddb12dd30284579f26c849638d2 authored almost 4 years ago by Todd C. Miller <[email protected]>github.com/sudo-project/sudo - bac76512fb66e29a9e7abfab64ee2f8e67fd65e7 authored almost 4 years ago by Todd C. Miller <[email protected]>
github.com/sudo-project/sudo - 008a0e8dc13b296bf86987c39cbbd5c5b141d981 authored almost 4 years ago by Todd C. Miller <[email protected]>
The log message now includes user info and the command attempted.
github.com/sudo-project/sudo - fd39e2d7d683016231caa0e011ad90b5dd366e25 authored almost 4 years ago by Todd C. Miller <[email protected]>github.com/sudo-project/sudo - 567e5167d1f95396ed8fb14e7f77f8c63cf14819 authored almost 4 years ago by Todd C. Miller <[email protected]>
Bug #948
github.com/sudo-project/sudo - a7d670ee3404e514112d39d6db80518bd8f45ecb authored almost 4 years ago by Todd C. Miller <[email protected]>Avoids a timeout during server shutdown while the server waits for
active connections to close.
github.com/sudo-project/sudo - cbb7b4afa6b6c8b46d8f174b6a16cffaa3984d3e authored almost 4 years ago by Todd C. Miller <[email protected]>
Also add warnings if the audit reject or error functions fail.
github.com/sudo-project/sudo - 02ebdfd7f29a0de4414ceaac2d7e803d5294d670 authored almost 4 years ago by Todd C. Miller <[email protected]>Add the error string to "unable to connect to log server" instead of
using an extra error message...
Was: "recv: Unknown error 0", now: "lost connection to log server".
github.com/sudo-project/sudo - a19f2427960f5ad8e102964204e6c623829646cf authored almost 4 years ago by Todd C. Miller <[email protected]>This fixes a localization problem where the error message could
have been reported in the wrong l...
Bug #947
github.com/sudo-project/sudo - e22817e3abfee6fee779ab0b2d312d48323abb56 authored almost 4 years ago by Todd C. Miller <[email protected]>github.com/sudo-project/sudo - 833e273ad97e217b166efe91664ad638a14a085e authored almost 4 years ago by Todd C. Miller <[email protected]>
github.com/sudo-project/sudo - 7ac951bb6252724cc875ab7f9c7aba7e40e054a6 authored almost 4 years ago by Todd C. Miller <[email protected]>
github.com/sudo-project/sudo - 293911eed6fd67c792dce4c91318881240071998 authored almost 4 years ago by Todd C. Miller <[email protected]>
github.com/sudo-project/sudo - 0f6d581abd123c8e23e75651e0d599361e4cca30 authored almost 4 years ago by Todd C. Miller <[email protected]>
github.com/sudo-project/sudo - d0042eda9e8e4c371efa43466fa6bbabdaa4a7b1 authored almost 4 years ago by Todd C. Miller <[email protected]>
Also avoid some new false positives
github.com/sudo-project/sudo - 94c5052ebf39de7c26cc5b88cb53f483cc64dc31 authored almost 4 years ago by Todd C. Miller <[email protected]>Need to work around a bug that produces closed brace errors,
see https://github.com/uncrustify/un...
github.com/sudo-project/sudo - 7bbd7c8e05b92e5d7d2dd8bfac01eac0c80a641c authored almost 4 years ago by Todd C. Miller <[email protected]>
The change to reinitialize the configuration data when sudo_conf_read()
is called again didn't ta...
We may need to use it when logging from the audit reject function.
github.com/sudo-project/sudo - 7d0b19d2a0236ff50f8e8253ba86e1672399ae52 authored almost 4 years ago by Todd C. Miller <[email protected]>github.com/sudo-project/sudo - cb87253d1e9b1bcf65c41e76b4175a06e0656e01 authored almost 4 years ago by Todd C. Miller <[email protected]>
The audit plugin should cope with a NULL command_info but there's no
reason not to pass the info ...
Fixes a NULL dereference in sudoers_audit when an I/O logging
plugin rejects input/output or retu...
github.com/sudo-project/sudo - e4a2765ccedd8806b1e8f172ac9a457cd11d31de authored almost 4 years ago by Todd C. Miller <[email protected]>
Add a check for the function declaration in openssl/ssl.h.
github.com/sudo-project/sudo - a96b9a1373b5e0881a30b2d7a95d576ad52ebf8a authored almost 4 years ago by Todd C. Miller <[email protected]>github.com/sudo-project/sudo - 38dd0f63b63255c5562c5f7a1d595131da1e5a96 authored almost 4 years ago by Todd C. Miller <[email protected]>
github.com/sudo-project/sudo - 061b53e338a2b53f90e4f438b3bf37ffaf9fc5b3 authored almost 4 years ago by Todd C. Miller <[email protected]>
github.com/sudo-project/sudo - 1aa76e9b7a1c188eb3fc6f47d7f9c398ac5e7c78 authored almost 4 years ago by Todd C. Miller <[email protected]>
The I/O log path is not known until the I/O log plugins have
run and other plugins may alter the ...
Use this to display a better error message when using a reserved
work in an alias definition.
The resulting package should work on Macs based on Apple Silicon.
github.com/sudo-project/sudo - d28b4291c4f684c3921b6f0cb112cfc36fad5937 authored almost 4 years ago by Todd C. Miller <[email protected]>Quote support is limited to the beginning of a word.
Also handles characters escaped with a backs...
This makes it possible to regenerate the test output again.
Also adds an update_test_data target ...
Fixes a problem with pam_xauth which checks effective and real uids
to get the real identity of t...
This is consistent with the pre-1.8.24 behavior. Bug #945
github.com/sudo-project/sudo - 6439b4cc0185bf55ea98c347b257d0303de62661 authored almost 4 years ago by Todd C. Miller <[email protected]>The ldap and sssd back-ends no longer require gram.h which fixes a
compilation issue with IBM LDAP.
Otherwise, if debugging is enabled we will get an extra log instance
each time sudo_logsrvd reeiv...
github.com/sudo-project/sudo - 72df19088b57b32a20a92d97fa4b1181439d49b0 authored almost 4 years ago by Todd C. Miller <[email protected]>
log_deserialize_info() can be private to iolog.c again.
github.com/sudo-project/sudo - 56fb16d3e81b4f99307fb1190b3cf87f20f7ec39 authored almost 4 years ago by Todd C. Miller <[email protected]>This lets us log eventlog info along with the alert if it is available.
github.com/sudo-project/sudo - 9779009fae234cccc5d39ea72cdba95b3cf48e3f authored almost 4 years ago by Todd C. Miller <[email protected]>github.com/sudo-project/sudo - 62525dcc948345b2983ff8801ef973fe51de222b authored almost 4 years ago by Todd C. Miller <[email protected]>
The logsrvd client code is now used for more than just I/O logging.
github.com/sudo-project/sudo - 62547746d38a61bfca25c07e637114a2f3b463cb authored almost 4 years ago by Todd C. Miller <[email protected]>This matters when logging via sudo_logsrvd.
It also lets us remove a special case in vlog_warning().
It is no longer I/O log specific and is used by sudoers_audit too.
github.com/sudo-project/sudo - e56c3b342b6eee7e5820e091735e3231d28d9453 authored almost 4 years ago by Todd C. Miller <[email protected]>github.com/sudo-project/sudo - f8a708dae3580ca2d0fbde8ca1d8eb1492258bc0 authored almost 4 years ago by Todd C. Miller <[email protected]>
github.com/sudo-project/sudo - 08d236293ba2d307ef03f9a256f99e1c0a8add58 authored almost 4 years ago by Todd C. Miller <[email protected]>
github.com/sudo-project/sudo - a9cad13b11e1e587daa494118c56f6e1695b09a8 authored almost 4 years ago by Todd C. Miller <[email protected]>
github.com/sudo-project/sudo - 0dd4c5797a8acf9e2e1c91d304dc77e1d795f788 authored almost 4 years ago by Todd C. Miller <[email protected]>
Previously, we logged the error string separately but this is
not consistent with how it is logge...
github.com/sudo-project/sudo - 282a7e80f2dba12e82795c709d1a71f38cdaa78a authored almost 4 years ago by Todd C. Miller <[email protected]>
Add free_info_messages() to free the array.
github.com/sudo-project/sudo - 8f5290b19a4c96aaaf5ebaa4cbd462167ac5b289 authored almost 4 years ago by Todd C. Miller <[email protected]>github.com/sudo-project/sudo - 2112d9beb1730a5c27b8c2e4b3238b8a1e6d36db authored almost 4 years ago by Todd C. Miller <[email protected]>
Also rename client_close() to log_server_close().
This keeps more of the client code details out ...
github.com/sudo-project/sudo - 2d888380a485aa309c27a10034361924a5de5da5 authored almost 4 years ago by Todd C. Miller <[email protected]>
github.com/sudo-project/sudo - f1ded289e1444b318ab1728a051a4bb3d0c4a2da authored almost 4 years ago by Todd C. Miller <[email protected]>
The sudoers audit plugin will use this to communicate with sudo_logsrvd.
github.com/sudo-project/sudo - fe9e65754c3c74d20317778b1e16148d4ee0e527 authored almost 4 years ago by Todd C. Miller <[email protected]>Fixes a crash in the SSL_VERIFY_PEER callback. Also call inet_ntop(3)
with addr pointer, not soc...
This is used to provided the column number along with the line
number in error messages. For ali...
Bug #841
github.com/sudo-project/sudo - 982012dbb1c1ce215d37f435cf5bb16c13eb529b authored almost 4 years ago by Todd C. Miller <[email protected]>We may call tls_init() from multiple places in the future so a
static initialized flag will cause...
github.com/sudo-project/sudo - 10b09e4d89a8db27a6ece9c7175df827a61b4b6a authored almost 4 years ago by Todd C. Miller <[email protected]>
Also replace backwards with backward.
github.com/sudo-project/sudo - e0c2635fb36b179a3c9ff6325df56cf80f56e461 authored almost 4 years ago by Todd C. Miller <[email protected]>We still use Tivoli when talking about the server itself but refer
to it as the "IBM Tivoli Direc...
github.com/sudo-project/sudo - f4c5f34ab7634d44fa285068b278f87ab1b1af06 authored almost 4 years ago by Todd C. Miller <[email protected]>
github.com/sudo-project/sudo - 8dee1b1ecf8f787538730c02b08731d461ca90e7 authored almost 4 years ago by Todd C. Miller <[email protected]>
github.com/sudo-project/sudo - 1910b1924f5faea60441df03e8295796e25ed3e4 authored almost 4 years ago by Todd C. Miller <[email protected]>
This conflicts with the IBM ldap.h at least. Prevent it from being
exposed by defining YYTOKENTYPE.
We need to add this to LDFLAGS so the linker is able to find
the correct libs when building 64-bi...
Displaying SSL reason code directly is not user-friendly.
github.com/sudo-project/sudo - c8c7e1f607fffc3ad45b3e399f7a37e05e5fc64b authored almost 4 years ago by Todd C. Miller <[email protected]>This is important for syslog where the record could be truncated.
github.com/sudo-project/sudo - 8c43eeb293dfe38ee59581125a28440a859dccd0 authored almost 4 years ago by Todd C. Miller <[email protected]>Defaults to sudo-format logs.
github.com/sudo-project/sudo - 28d6771d248dc80137ce17261fc913a19a4c34d7 authored almost 4 years ago by Todd C. Miller <[email protected]>This replaces the old "compact" mode which is only used for syslog.
github.com/sudo-project/sudo - 6bc729aa3673f353826cb08dd86e324538208a44 authored almost 4 years ago by Todd C. Miller <[email protected]>github.com/sudo-project/sudo - 4fc39cfb0ae3b56d26b06ba643957eb3ad80e093 authored almost 4 years ago by Todd C. Miller <[email protected]>
github.com/sudo-project/sudo - 34c165151495880dc7819b20b0720fc8f5b328fd authored almost 4 years ago by Todd C. Miller <[email protected]>
github.com/sudo-project/sudo - fdae4bdbbb0a338c3de189ee7ac2ea014645826e authored almost 4 years ago by Todd C. Miller <[email protected]>
This makes it possible to have a base config that the callers can
modify instead of replacing the...
This is consistent with historical practice.
github.com/sudo-project/sudo - 39b540ff33564506c920cddb9da8d51dcc408839 authored almost 4 years ago by Todd C. Miller <[email protected]>github.com/sudo-project/sudo - 4416bd59771cd78eaaceb4a2c86780e457ad3f7c authored almost 4 years ago by Todd C. Miller <[email protected]>
github.com/sudo-project/sudo - 541252beb1eea5f84927dcec58a8bb8f370ec78b authored almost 4 years ago by Todd C. Miller <[email protected]>
These will be used by the sudoers plugin.
github.com/sudo-project/sudo - bd1ca79cca827a92e904f022e49df121931d4ff5 authored almost 4 years ago by Todd C. Miller <[email protected]>This moves the JSON formatting of struct eventlog out of libsudo_iolog
and into libsudo_eventlog ...
github.com/sudo-project/sudo - 4652698f8e21e83bec17eae42506c5c21274dc1e authored almost 4 years ago by Todd C. Miller <[email protected]>
github.com/sudo-project/sudo - c0e91d75868547f476b50c12b4a2f50916177502 authored almost 4 years ago by Todd C. Miller <[email protected]>
Previously, we just made the strings const and relied on the front-end
not changing them. Now th...
github.com/sudo-project/sudo - 2d45becd4a39ad325f4f4cb27b89fca51bc21288 authored almost 4 years ago by Todd C. Miller <[email protected]>
github.com/sudo-project/sudo - db72498257392f672bc4df40007741c6b44fc5d6 authored almost 4 years ago by Todd C. Miller <[email protected]>