Hello community, here is the log from the commit of package sysconfig for openSUSE:11.4 checked in at Mon Dec 19 16:58:59 CET 2011. -------- --- old-versions/11.4/UPDATES/all/sysconfig/sysconfig.changes 2011-09-26 14:39:24.000000000 +0200 +++ 11.4/sysconfig/sysconfig.changes 2011-12-19 12:57:35.000000000 +0100 @@ -1,0 +2,11 @@ +Mon Dec 19 09:41:09 UTC 2011 - mt@suse.com + +- Fixed to quote config / interface variables in ifservices script + and cleaned up content of the ESSID which gets appended to them + by NetworkManager dispatcher hook (bnc#735394, CVE-2011-4182). + Fixed also to return proper exit code 0 in NM dispatcher hooks. +- Changed to call ip addr flush in ifdown, but after ip link set + down as it does not cause ipv6 sysctl tree side effects then + at least with more recent kernels (bnc#580018,bnc#559170). + +------------------------------------------------------------------- calling whatdependson for 11.4-i586 New: ---- 0004-Fixed-order-of-addr-flush-and-link-down-in-ifdown.patch 0005-CVE-2011-4182-fixed-quoting-in-ifservices-script.patch ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ sysconfig.spec ++++++ --- /var/tmp/diff_new_pack.qe80h9/_old 2011-12-19 16:58:30.000000000 +0100 +++ /var/tmp/diff_new_pack.qe80h9/_new 2011-12-19 16:58:30.000000000 +0100 @@ -20,7 +20,7 @@ Name: sysconfig Version: 0.74.5 -Release: 6.<RELEASE9> +Release: 6.<RELEASE11> Summary: The system configuration scheme Url: http://gitorious.org/opensuse/sysconfig Group: System/Base @@ -35,6 +35,8 @@ Patch1: 0001-ifup-wireless-no-encryption-option.bnc648830.patch Patch2: 0002-do-not-stop-bonding-slaves-first.bnc698478.patch Patch3: 0003-Wait-for-link-and-ipv6-duplicate-address-detection.patch +Patch4: 0004-Fixed-order-of-addr-flush-and-link-down-in-ifdown.patch +Patch5: 0005-CVE-2011-4182-fixed-quoting-in-ifservices-script.patch %description This package provides the SuSE system configuration scheme and @@ -57,6 +59,8 @@ %patch1 -p1 %patch2 -p1 %patch3 -p1 +%patch4 -p1 +%patch5 -p1 %build autoreconf --force --install ++++++ 0004-Fixed-order-of-addr-flush-and-link-down-in-ifdown.patch ++++++
From d844f0ceb913a60e2c88b1097c98aa0b4486288f Mon Sep 17 00:00:00 2001 From: Marius Tomaschewski
Date: Fri, 18 Nov 2011 13:47:26 +0100 Subject: [PATCH] Fixed order of addr flush and link down in ifdown
Changed the order of ip addr flush and ip link set down calls
in ifdown as it does not trigger the ipv6 sysctl tree removal
(bnc#580018,bnc#559170).
Signed-off-by: Marius Tomaschewski
From 74f224c74c2c463365b0d39c14117870ce5776d5 Mon Sep 17 00:00:00 2001 From: Marius Tomaschewski
Date: Fri, 16 Dec 2011 16:03:15 +0100 Subject: [PATCH] CVE-2011-4182 - fixed quoting in ifservices script
Fixed to quote config / interface variables in ifservices script
and cleaned up content of the ESSID which gets appended to them
by NetworkManager dispatcher hook (bnc#735394, CVE-2011-4182).
Fixed also to return proper exit code 0 in NM dispatcher hooks.
Signed-off-by: Marius Tomaschewski