/[path-sandbox]/trunk/ChangeLog.0
Gentoo

Diff of /trunk/ChangeLog.0

Parent Directory Parent Directory | Revision Log Revision Log | View Patch Patch

Revision 47 Revision 105
1# ChangeLog for Path Sandbox 1# ChangeLog for Path Sandbox
2# Copyright 1999-2004 Gentoo Foundation; Distributed under the GPL v2 2# Copyright 1999-2005 Gentoo Foundation; Distributed under the GPL v2
3# $Header$ 3# $Header$
4
5 08 June 2005; Martin Schlemmer <azarah@gentoo.org> sandbox.c:
6 Add /dev/console to write list, bug #38588.
7
8* sandbox-1.2.8 (2005/05/13)
9
10 13 May 2005; Martin Schlemmer <azarah@gentoo.org> libsandbox.c, sandbox.c,
11 sandbox.h, sandbox_futils.c:
12 General cleanups.
13
14 13 May 2005; Martin Schlemmer <azarah@gentoo.org> libsandbox.c, sandbox.c,
15 sandbox.h:
16 Various LD_PRELOAD cleanups. Do not unset LD_PRELOAD for parent.
17
18 13 May 2005; Martin Schlemmer <azarah@gentoo.org> libsandbox.c, sandbox.c,
19 sandbox.h, sandbox_futils.c:
20 Modify get_sandbox_pids_file(), get_sandbox_log() and get_sandbox_debug_log()
21 to use TMPDIR if present in environment.
22
23 13 May 2005; Martin Schlemmer <azarah@gentoo.org> sandbox.c:
24 Remove sandbox_log_file from main() as its no longer used.
25
26 13 May 2005; Martin Schlemmer <azarah@gentoo.org> sandbox.c, sandbox.h,
27 sandbox_futils.c:
28 Add get_sandbox_debug_log(), and use it (add behaviour similar to SANDBOX_LOG
29 if already exported when sandbox started). Fix get_sandbox_log() and new
30 get_sandbox_debug_log() to not use already exported environment variables if
31 they have '/' in them. Use snprintf()'s instead of strncpy()'s. More
32 SB_PATH_MAX fixes.
33
34* sandbox-1.2.7 (2005/05/12)
35
36 12 May 2005; Martin Schlemmer <azarah@gentoo.org> sandbox.c, sandbox.h,
37 sandbox_futils.c:
38 More path limit fixes. Declare SB_BUF_LEN global and use it where needed.
39
40 12 May 2005; Martin Schlemmer <azarah@gentoo.org> sandbox_futils.c:
41 Fix paths limited to 255 chars. Fix get_sandbox_dir() returning a string
42 with '(null)' in it if we did not call sandbox with absolute path.
43
44 12 May 2005; Martin Schlemmer <azarah@gentoo.org> sandbox.c:
45 Set SANDBOX_ON *before* doing the child's env stuff, else its not set
46 for the child.
47
48 12 May 2005; Martin Schlemmer <azarah@gentoo.org> sandbox.c:
49 Remove global preload_adaptable as it is no longer used.
50
51 12 May 2005; Martin Schlemmer <azarah@gentoo.org> sandbox.c:
52 Rewrite environment stuff to only be set when execve'ing the child process
53 to try and avoid issues like bug #91541 that causes sandbox to crash if
54 we set LD_PRELOAD sandbox side already.
55
56 11 May 2005; Martin Schlemmer <azarah@gentoo.org> sandbox.c:
57 Move print_sandbox_log() up to make things neater.
58
59 11 May 2005; Martin Schlemmer <azarah@gentoo.org> sandbox.c:
60 Remove load_preload_libs(), as its not used anymore.
61
62 11 May 2005; Martin Schlemmer <azarah@gentoo.org> sandbox.c, sandbox.h:
63 Remove NO_FORK stuff, as its not used, and 'strace -f' works just fine.
64
65 11 May 2005; Martin Schlemmer <azarah@gentoo.org> sandbox.c, sandbox.h:
66 Remove USE_SYSTEM_SHELL stuff, as it is not secure, and not in use.
67
68 11 May 2005; Martin Schlemmer <azarah@gentoo.org> sandbox.c, sandbox.h:
69 Remove ld.so.preload crap - we are not going to use it again.
70
71 10 May 2005; Martin Schlemmer <azarah@gentoo.org> sandbox_futils.c:
72 Fix typo in code that checks if we got valid group information, causing a
73 segmentation fault, bug #91637.
74
75* sandbox-1.2.6 (2005/05/10)
76
77 10 May 2005; Martin Schlemmer <azarah@gentoo.org> sandbox.c:
78 Do not use LD_PRELOAD if it contains libtsocks.so, as it breaks sandbox
79 for some odd reason, bug #91541.
80
81 09 May 2005; Martin Schlemmer <azarah@gentoo.org> sandbox.c:
82 Fix typo (sizeof -> strlen).
83
84 08 May 2005; Brian Harring <ferringb@gentoo.org> libsandbox.c:
85 rewrote the sbcontext caching code so it accounts for env changes since lib
86 initialization.
87
88 05 May 2005; Martin Schlemmer <azarah@gentoo.org> configure.in, libctest.c:
89 We create libctest.c via configure, so no need to keep it around. Do some
90 cleanup related to libctest.c and libctest during configure.
91
92 04 May 2005; Martin Schlemmer <azarah@gentoo.org> libsandbox.c:
93 Add rename support of symlinks pointing to protected files/directories.
94
95* sandbox-1.2.5 (2005/05/04)
96
97 04 May 2005; Martin Schlemmer <azarah@gentoo.org> libsandbox.c, sandbox.c,
98 sandbox.bashrc:
99 Do not reset already set LD_PRELOAD when starting sandbox. If LD_PRELOAD is
100 already set, init of the env vars fails for some reason, so do this later on,
101 and do not warn (bug #91431).
102
103 03 May 2005; Martin Schlemmer <azarah@gentoo.org> sandbox.c, sandbox.h,
104 sandbox.bashrc:
105 Fixup sandbox and sandbox.bashrc to call bash with the proper .bashrc.
106
107* sandbox-1.2.4 (2005/05/03)
108
109 03 May 2005; Martin Schlemmer <azarah@gentoo.org> libsandbox.c:
110 Do not init the env entries with each call, as it creates too many calls to
111 lstat, etc. Should speedup things a bit, bug #91040.
112
113 03 May 2005; Martin Schlemmer <azarah@gentoo.org> sandbox.c:
114 Add /dev/pty to default write list. Noticed by Morfic.
115
116 02 May 2005; Mike Frysinger <vapier@gentoo.org> configure.in, localdecls.h,
117 sandbox.h:
118 uClibc doesn't support dlvsym() so add a configure check to make sure it doesn't
119 exist. Also update localdecls.h so BROKEN_RTLD_NEXT isn't defined in uClibc.
120
121* sandbox-1.2.3 (2005/04/29)
122
123 29 Apr 2005; Martin Schlemmer <azarah@gentoo.org> configure.in:
124 Do not check for (*&#$(* CXX or F77.
125
126 29 Apr 2005; Martin Schlemmer <azarah@gentoo.org> libsandbox.c:
127 Do not append '/' to pathname in filter_path() if it already ends with it.
128
129 28 Apr 2005; Mike Frysinger <vapier@gentoo.org> Makefile.am, configure.in:
130 With az's help, clean up autotools to work with cross-compiling.
131
132* sandbox-1.2.2 (2005/04/28)
4 133
5 28 Apr 2005; Martin Schlemmer <azarah@gentoo.org> libsandbox.c: 134 28 Apr 2005; Martin Schlemmer <azarah@gentoo.org> libsandbox.c:
6 Only check for /dev/{null,zero} for unlink hack, else ricers using /dev/shm 135 Only check for /dev/{null,zero} for unlink hack, else ricers using /dev/shm
7 have issues; bug #90592. 136 have issues; bug #90592.
8 137
9* sandbox-1.2.1 138* sandbox-1.2.1 (2005/04/23)
10 139
11 23 Apr 2005; Martin Schlemmer <azarah@gentoo.org> Makefile.am, canonicalize.c, 140 23 Apr 2005; Martin Schlemmer <azarah@gentoo.org> Makefile.am, canonicalize.c,
12 getcwd.c, libsandbox.c, localdecls.h, sandbox.h, sandbox_futils.c: 141 getcwd.c, libsandbox.c, localdecls.h, sandbox.h, sandbox_futils.c:
13 Make sure all functions used in libsandbox.c is declared static. Define 142 Make sure all functions used in libsandbox.c is declared static. Define
14 SB_STATIC in localdecls.h for this. Include sandbox_futils.c rather than 143 SB_STATIC in localdecls.h for this. Include sandbox_futils.c rather than
15 linking with its object. Hopefully this will fix bug #90153. 144 linking with its object. Hopefully this will fix bug #90153.
16 145
17* sandbox-1.2 146* sandbox-1.2 (2005/04/23)
18 147
19 22 Mar 2005; Martin Schlemmer <azarah@gentoo.org> libsandbox.c: 148 22 Mar 2005; Martin Schlemmer <azarah@gentoo.org> libsandbox.c:
20 Allow lchown a symlink in write-allowed path pointing to write-denied 149 Allow lchown a symlink in write-allowed path pointing to write-denied
21 target. 150 target.
22 151

Legend:
Removed from v.47  
changed lines
  Added in v.105

  ViewVC Help
Powered by ViewVC 1.1.20