/[gentoo-x86]/sys-kernel/hardened-sources/ChangeLog
Gentoo

Contents of /sys-kernel/hardened-sources/ChangeLog

Parent Directory Parent Directory | Revision Log Revision Log


Revision 1.16 - (show annotations) (download)
Tue Dec 2 07:11:23 2003 UTC (11 years ago) by iggy
Branch: MAIN
Changes since 1.15: +7 -1 lines
version bump for do_brk vuln

1 # ChangeLog for sys-kernel/hardened-sources
2 # Copyright 2000-2003 Gentoo Technologies, Inc.; Distributed under the GPL v2
3 # $Header: /home/cvsroot/gentoo-x86/sys-kernel/hardened-sources/ChangeLog,v 1.15 2003/12/02 03:33:43 iggy Exp $
4
5 *hardened-sources-2.4.22-r1 (02 Dec 2003)
6
7 02 Dec 2003; Brian Jackson <iggy@gentoo.org>
8 hardened-sources-2.4.22-r1.ebuild:
9 version bump for do_brk vuln
10
11 01 Dec 2003; Brian Jackson <iggy@gentoo.org>
12 hardened-sources-2.4.20-r2.ebuild, hardened-sources-2.4.20-r3.ebuild,
13 hardened-sources-2.4.20-r4.ebuild, hardened-sources-2.4.21.ebuild,
14 hardened-sources-2.4.22.ebuild, files/do_brk_fix.patch:
15 fix do_brk vuln
16
17 03 Nov 2003; Matthew Rickard <frogger@gentoo.org>
18 hardened-sources-2.4.22.ebuild:
19 -Removed the src_install() portion for SELinux flask
20 components. These are no longer handled in the kernel
21 so this code was not necessary.
22
23 29 Oct 2003; Matthew Rickard <frogger@gentoo.org> hardened-sources-2.4.22.ebuild:
24 New 2.4.22 based hardened-sources thanks to
25 Phil West <p.west@computer.org>.
26
27 These sources include:
28 -New SELinux API
29 -Updated CK-base
30 -Updated GRSec
31 -Systrace
32 -SuperFreeS/WAN 1.99.8
33 -Propolice kernel build support
34 -EVMS
35 -Other various security related patches
36
37 *hardened-sources-2.4.21 (14 Sep 2003)
38
39 14 Sep 2003; Matthew Rickard <frogger@gentoo.org> hardened-sources-2.4.21.ebuild:
40 Updated hardened-sources based on the 2.4.21 Linux kernel.
41 This includes updates to most major components such as:
42 -ck-base-0306300059
43 -selinux-2.4-2003071106
44 -grsecurity-2.0-rc1
45 -Updated IPTables patch-o-matic
46 -Updated SuperFreeS/WAN
47 Thanks to Phil West <pwest@computer.org> for his work in getting this
48 updated patch set ready for the 2.4.21 based kernel.
49
50 16 Jun 2003; Matthew Rickard <frogger@gentoo.org> :
51 Initial import of hardened-sources-2.4.20-r4. This revision
52 includes only a few changes, but one of these is an important
53 security fix. It is recommended all users of hardened-sources
54 upgrade to this release.
55 - ioperm bug fix
56 - fixed compilation failure when building without GRSec
57 SAL (Secure Auditing for Linux) is NOT included in this revision
58 due to time constraints, but is planned for inclusion in the near
59 future.
60
61 *hardened-sources-2.4.20-r2 (12 Jun 2003)
62
63 12 Jun 2003; <msterret@gentoo.org> hardened-sources-2.4.20-r2.ebuild,
64 hardened-sources-2.4.20-r3.ebuild:
65 add Header
66
67 08 Jun 2003; Matthew Rickard <frogger@gentoo.org>
68 hardened-sources-2.4.20-r3.ebuild:
69 Removed warnings from ebuild. This kernel should be safe to
70 use at this point.
71
72 *hardened-sources-2.4.20-r3 (08 Jun 2003)
73
74 08 Jun 2003; Matthew Rickard <frogger@gentoo.org>
75 hardened-sources-2.4.20-r3.ebuild:
76 New revision. Includes the following changes over -r2:
77 - ck7-base (O(1), preempt, low latency)
78 - Super FreeS/WAN 1.99.7rc2
79 - PaX for the LSM/SELinux branch
80 - GRSecurity 2.0-pre4 (role based access control)
81 - Systrace 1.3
82 - EXT3 fixes
83 - EVMS 2.0.1
84 - GCC 3.1+ compile optimizations
85 - ProPolice kernel build support
86 - Hashing table security fixes
87
88 *hardened-sources-2.4.20-r1 (09 Apr 2003)
89
90 23 Apr 2003; Matthew Rickard <frogger@gentoo.org> Manifest:
91 Initial import of hardened-sources-r2. This new
92 ebuild includes many new performance and security
93 related patches. As in -r1, it will patch in
94 LSM/SELinux if "selinux" is in USE, otherwise it
95 will patch in GRSecurity. The following patches
96 are included in this revision:
97 - O(1) Scheduler, Low Latency, and Preempt
98 (pulled from the base CK patch)
99 - ptrace exploit patch for the LSM kernel
100 (the GRSec patch already fixes this)
101 - LSM 2.4-2003040709
102 - SELinux 2.4-2003040709
103 - Systrace v1.2
104 - IPTables patch-o-matic base patches - 20030107
105 - CryptoAPI 2.4.20.1 w/ loop-jari patch
106 - Super FreeS/WAN 1.99.6.1
107 - GRSecurity 1.9.9g
108 - MPPE
109 - EXT3 data journal fix
110 - CIPE 1.5.4
111
112 12 Apr 2003; Matthew Rickard <frogger@gentoo.org>
113 hardened-sources-2.4.20-r1.ebuild, manifest:
114 Updated to install flask components correctly for selinux
115
116 12 Apr 2003; Matthew Rickard <frogger@gentoo.org>
117 hardened-sources-2.4.20-r1.ebuild:
118 LSM/SELinux is now patched in when "selinux" is in USE. Otherwise, GRSecurity
119 is patched in instead. Ptrace patches for selinux have also been added. In
120 either case, systrace support will be patched in as well.
121
122 09 Apr 2003; Matthew Rickard <frogger@gentoo.org>
123 hardened-sources-2.4.20-r1.ebuild, hardened-sources-2.4.20.ebuild, manifest:
124 Revision bump for new sources
125
126 09 Apr 2003; Matthew Rickard <frogger@gentoo.org>
127 hardened-sources-2.4.20-r1.ebuild:
128 Now includes LSM1, GRSec-2.0-pre1, and systrace-v1.2
129
130 *hardened-sources-2.4.20 (30 Mar 2003)
131
132 30 Mar 2003; Joshua Brindle <method@gentoo.org>
133 hardened-sources-2.4.20.ebuild:
134 initial import, only has systrace support

  ViewVC Help
Powered by ViewVC 1.1.20