84 Commits

Author SHA1 Message Date
renmingshuai
7f33bb6d0f fixCVE-2023-48795 and CVE-2023-51385
(cherry picked from commit fb5bea51cdad8c74fd057ddc78ddd3f38fbd98a7)
2023-12-25 11:31:47 +08:00
openeuler-ci-bot
9f1a33d659
!218 回合社区补丁,修复内存泄露
From: @renmingshuai 
Reviewed-by: @robertxw 
Signed-off-by: @robertxw
2023-08-16 06:37:59 +00:00
renmingshuai
0c4516eae3 In channel_request_remote_forwarding the parameters 2023-08-15 10:43:30 +08:00
openeuler-ci-bot
e8777379ad
!215 [sync] PR-211: fix CVE-2023-38408
From: @openeuler-sync-bot 
Reviewed-by: @robertxw 
Signed-off-by: @robertxw
2023-07-28 06:29:33 +00:00
renmingshuai
d06655221d fix CVE-2023-38408
(cherry picked from commit bb9ae5684f2460817da393a4114f26a84a09eebe)
2023-07-28 10:54:23 +08:00
openeuler-ci-bot
4ea61ace2a
!205 修复错误拼写和使能dt测试用例
From: @renmingshuai 
Reviewed-by: @zengwefeng 
Signed-off-by: @zengwefeng
2023-06-14 01:52:11 +00:00
renmingshuai
38abdec0fa fix misspeling and enable dt tests 2023-06-13 20:53:12 +08:00
openeuler-ci-bot
922fc6e522
!200 修复发送给服务端的环境变量
From: @renmingshuai 
Reviewed-by: @seuzw 
Signed-off-by: @seuzw
2023-05-29 01:29:08 +00:00
renmingshuai
eeae07d07f fixenvironmentvariable 2023-05-27 14:57:46 +08:00
openeuler-ci-bot
fd9b3e8855
!194 修复 CVE-2023-25136
From: @renmingshuai 
Reviewed-by: @kircher 
Signed-off-by: @kircher
2023-03-09 11:07:50 +00:00
renmingshuai
342e4965fb fix CVE-2023-25136 2023-03-09 09:59:10 +08:00
openeuler-ci-bot
7a640e6080
!192 set default ssh config
From: @renmingshuai 
Reviewed-by: @seuzw 
Signed-off-by: @seuzw
2023-03-02 12:57:38 +00:00
renmingshuai
966734b664 set default ssh_config 2023-02-28 20:50:16 +08:00
openeuler-ci-bot
42df9a7e44
!178 修复DT测试用例失败问题,并使能DT
From: @renmingshuai 
Reviewed-by: @kircher 
Signed-off-by: @kircher
2023-01-06 07:54:36 +00:00
renmingshuai@huawei.com
a133865887 fix tests failure and enable make tests 2023-01-06 12:26:28 +08:00
openeuler-ci-bot
3d1080a22a
!170 回合openssh社区补丁:修复整型下溢问题
From: @renmingshuai 
Reviewed-by: @zengwefeng 
Signed-off-by: @zengwefeng
2023-01-03 12:18:03 +00:00
renmingshuai
8ebbd9ae82 avoid integer overflow of auth attempts 2023-01-03 19:13:09 +08:00
openeuler-ci-bot
61c0d7e91d
!165 add strict-scp-check for CVE-2020-15778
From: @renmingshuai 
Reviewed-by: @kircher 
Signed-off-by: @kircher
2023-01-03 01:49:23 +00:00
openeuler-ci-bot
bf470d0e43
!164 添加loongarch架构
From: @renmingshuai 
Reviewed-by: @kircher 
Signed-off-by: @kircher
2022-12-29 11:50:33 +00:00
renmingshuai
842d99b183 add strict scp check for CVE-2020-15778 2022-12-29 19:41:50 +08:00
renmingshuai
65e875d673 add loongarch64 2022-12-29 18:03:14 +08:00
openeuler-ci-bot
e0278701a0
!161 回合社区补丁
From: @renmingshuai 
Reviewed-by: @kircher 
Signed-off-by: @kircher
2022-12-29 09:03:19 +00:00
openeuler-ci-bot
b684460d74
!159 添加sw架构
From: @renmingshuai 
Reviewed-by: @kircher 
Signed-off-by: @kircher
2022-12-29 07:43:00 +00:00
renmingshuai
c130ed1968 backport some upstream patches 2022-12-29 14:42:32 +08:00
renmingshuai
0298398514 Add sw64 architecture 2022-12-29 11:20:38 +08:00
openeuler-ci-bot
d28090e03e
!157 同步22.03-lts分支解决ssh-keygen的验证签名功能在接收空的namespace字符串时提示内容不正确的问题
From: @renmingshuai 
Reviewed-by: @kircher 
Signed-off-by: @kircher
2022-12-29 03:04:49 +00:00
renmingshuai
f91326ebce fix ssh-keygen -Y check novalidate requires name 2022-12-29 10:29:41 +08:00
openeuler-ci-bot
f1294d9bf6
!148 [sync] PR-116: openssh:include 文件sshd_config.d/*.conf
From: @duyiwei7w 
Reviewed-by: @seuzw 
Signed-off-by: @seuzw
2022-12-08 03:32:40 +00:00
duyiwei
64c29e1625 enable include /etc/ssh/sshd_config.d/*.config 2022-12-07 14:36:00 +08:00
openeuler-ci-bot
23159fa0c9
!145 PubkeyAcceptedKeyTypes has been renamed to PubkeyAcceptedAlgorithms in openssh-8.5p1
From: @renmingshuai 
Reviewed-by: @seuzw 
Signed-off-by: @seuzw
2022-11-28 14:13:07 +00:00
renmingshuai
fa75764522 PubkeyAcceptedKeyTypes has been renamed to PubkeyAcceptedAlgorithms in openssh-8.5p1 2022-11-28 21:19:45 +08:00
openeuler-ci-bot
940029c6b1
!140 [sync] PR-139: backport some upstream patches
From: @openeuler-sync-bot 
Reviewed-by: @seuzw 
Signed-off-by: @seuzw
2022-11-28 09:15:28 +00:00
renmingshuai
9bb9a93b8f add better debugging
Signed-off-by: renmingshuai <renmingshuai@huawei.com>
(cherry picked from commit b7232a848cc21e97ff6632d564c11201a8cbf246)
2022-11-28 15:32:36 +08:00
openeuler-ci-bot
91305572f0
!132 add ssh-keygen bash completion
From: @renmingshuai 
Reviewed-by: @seuzw 
Signed-off-by: @seuzw
2022-11-03 02:54:39 +00:00
renmingshuai
1d03898897 add ssh-keygen bash completion 2022-11-02 17:10:32 +08:00
openeuler-ci-bot
106c975a5d
!130 openssh: add smx support in openssh
From: @kircher 
Reviewed-by: @seuzw 
Signed-off-by: @seuzw
2022-10-18 09:41:36 +00:00
kircher
b1e3288a53 add smx support in openssh 2022-10-18 16:48:39 +08:00
openeuler-ci-bot
f26e3f69d4
!111 openssh的fuzz测试过程中出现空指针引用
From: @rimsky 
Reviewed-by: @kircher 
Signed-off-by: @kircher
2022-06-25 11:39:25 +00:00
Rimsky
21d1fbda5f fix-possible-NULL-deref-when-built-without-FIDO 2022-06-25 17:34:46 +08:00
openeuler-ci-bot
2776c9aaf1
!104 fix spec changelog date
From: @archlee 
Reviewed-by: @seuzw 
Signed-off-by: @seuzw
2022-05-11 01:11:08 +00:00
mylee
8243dc3af0 fix spec changelog date 2022-05-10 13:30:53 +08:00
openeuler-ci-bot
40e14bd92a
!102 修复/etc/ssh/sshd_config中的错误sftp-server路径
From: @seuzw 
Reviewed-by: @zengwefeng 
Signed-off-by: @zengwefeng
2022-05-05 07:24:25 +00:00
seuzw
2d18de6ab9 fix incorrect sftp-server binary path in /etc/ssh/sshd_config 2022-05-05 11:24:28 +08:00
openeuler-ci-bot
fca174e1b3
!97 [sync] PR-96: openssh: add sshd.tmpfile
From: @openeuler-sync-bot 
Reviewed-by: @zengwefeng 
Signed-off-by: @zengwefeng
2022-03-09 02:44:45 +00:00
kircher
cae10a5ce3 add sshd.tmpfiles
(cherry picked from commit 61b7914415ee171513d073172520c422b4132621)
2022-03-09 10:26:42 +08:00
openeuler-ci-bot
72a0540471 !85 将openEuler-22.03-LTS-Next分支openssh的版本升级到8.8p1版本
From: @renmingshuai
Reviewed-by: 
Signed-off-by:
2021-12-09 11:56:53 +00:00
renmingshuai
f2c3d6e19a update to openssh-8.8p1
Reference:https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-4.3p2-askpass-grab-info.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-5.1p1-askpass-progress.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-5.8p2-sigpipe.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-5.9p1-ipv6man.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-6.3p1-ctr-evp-fast.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-6.4p1-fromto-remote.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-6.6.1p1-log-in-chroot.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-6.6.1p1-scp-non-existing-directory.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-6.6.1p1-selinux-contexts.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-6.6p1-allow-ip-opts.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-6.6p1-force_krb.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-6.6p1-GSSAPIEnablek5users.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-6.6p1-keycat.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-6.6p1-keyperm.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-6.6p1-kuserok.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-6.6p1-privsep-selinux.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-6.7p1-coverity.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-6.7p1-sftp-force-permission.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-6.8p1-sshdT-output.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-7.1p2-audit-race-condition.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-7.2p2-k5login_directory.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-7.2p2-s390-closefrom.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-7.2p2-x11.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-7.3p1-x11-max-displays.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-7.4p1-systemd.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-7.5p1-sandbox.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-7.6p1-audit.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-7.6p1-cleanup-selinux.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-7.7p1-fips.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-7.7p1-gssapi-new-unique.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-7.7p1.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-7.8p1-role-mls.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-7.8p1-scp-ipv6.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-7.8p1-UsePAM-warning.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-8.0p1-crypto-policies.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-8.0p1-gssapi-keyex.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-8.0p1-keygen-strip-doseol.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-8.0p1-openssl-evp.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-8.0p1-openssl-kdf.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-8.0p1-pkcs11-uri.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-8.0p1-preserve-pam-errors.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-8.2p1-visibility.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-8.2p1-x11-without-ipv6.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/openssh-8.7p1-scp-kill-switch.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/pam_ssh_agent_auth-0.10.2-compat.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/pam_ssh_agent_auth-0.10.2-dereference.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/pam_ssh_agent_auth-0.10.3-seteuid.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/pam_ssh_agent_auth-0.9.2-visibility.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/pam_ssh_agent_auth-0.9.3-agent_structure.patch
https://src.fedoraproject.org/rpms/openssh/blob/rawhide/f/pam_ssh_agent_auth-0.9.3-build.patch
2021-12-09 17:32:49 +08:00
openeuler-ci-bot
bfec14efe3 !80 fix CVE-2021-41617
From: @kircher
Reviewed-by: @wangxp006
Signed-off-by: @wangxp006
2021-10-29 10:57:26 +00:00
kircher
f21f23324f CVE-2021-41617 2021-10-29 18:11:04 +08:00
openeuler-ci-bot
c7532133d6 !67 Fix spelling errors
From: @weidongkl
Reviewed-by: @zengwefeng
Signed-off-by: @zengwefeng
2021-08-03 06:42:52 +00:00