Oracle alert ELSA-2020-0575 (systemd)
From: | Errata Announcements for Oracle Linux <el-errata@oss.oracle.com> | |
To: | el-errata@oss.oracle.com | |
Subject: | [El-errata] ELSA-2020-0575 Important: Oracle Linux 8 systemd security and bug fix update | |
Date: | Tue, 25 Feb 2020 16:12:51 +0000 (UTC) | |
Message-ID: | <fba68cd7-a10e-a575-636d-6b4ca8ca251d@oracle.com> |
Oracle Linux Security Advisory ELSA-2020-0575 http://linux.oracle.com/errata/ELSA-2020-0575.html The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: x86_64: systemd-239-18.0.2.el8_1.4.i686.rpm systemd-239-18.0.2.el8_1.4.x86_64.rpm systemd-container-239-18.0.2.el8_1.4.i686.rpm systemd-container-239-18.0.2.el8_1.4.x86_64.rpm systemd-devel-239-18.0.2.el8_1.4.i686.rpm systemd-devel-239-18.0.2.el8_1.4.x86_64.rpm systemd-journal-remote-239-18.0.2.el8_1.4.x86_64.rpm systemd-libs-239-18.0.2.el8_1.4.i686.rpm systemd-libs-239-18.0.2.el8_1.4.x86_64.rpm systemd-pam-239-18.0.2.el8_1.4.x86_64.rpm systemd-tests-239-18.0.2.el8_1.4.x86_64.rpm systemd-udev-239-18.0.2.el8_1.4.x86_64.rpm aarch64: systemd-239-18.0.2.el8_1.4.aarch64.rpm systemd-container-239-18.0.2.el8_1.4.aarch64.rpm systemd-devel-239-18.0.2.el8_1.4.aarch64.rpm systemd-journal-remote-239-18.0.2.el8_1.4.aarch64.rpm systemd-libs-239-18.0.2.el8_1.4.aarch64.rpm systemd-pam-239-18.0.2.el8_1.4.aarch64.rpm systemd-tests-239-18.0.2.el8_1.4.aarch64.rpm systemd-udev-239-18.0.2.el8_1.4.aarch64.rpm SRPMS: http://oss.oracle.com/ol8/SRPMS-updates/systemd-239-18.0.... Description of changes: [239-18.0.2.el8_1.4] - fix to generate systemd-pstore.service file [Orabug: 30230056] - fix _netdev is missing for iscsi entry in /etc/fstab (tony.l.lam@oracle.com) [Orabug: 25897792] - set "RemoveIPC=no" in logind.conf as default for OL7.2 [Orabug: 22224874] - allow dm remove ioctl to co-operate with UEK3 (Vaughan Cao) [Orabug: 18467469] - add hv dynamic memory support (Jerry Snitselaar) [Orabug: 18621475] - Backport upstream patches for the new systemd-pstore tool (Eric DeVolder) [OraBug: 30230056] [239-18.4] - sd-bus: use "queue" message references for managing r/w message queues in connection objects (CVE-2020-1712) [239-18.3] - core, job: fix breakage of ordering dependencies by systemctl reload command (#1781712) - syslog: fix segfault in syslog_parse_priority() (#1781712) - journald: fixed assertion failure when system journal rotation fails (#9893) (#1781712) - test: use PBKDF2 instead of Argon2 in cryptsetup... (#1781712) - test: mask several unnecessary services (#1781712) - test: bump the second partition's size to 50M (#1781712) - sd-bus: make rqueue/wqueue sizes of type size_t (#20201712) - sd-bus: reorder bus ref and bus message ref handling (#20201712) - sd-bus: make sure dispatch_rqueue() initializes return parameter on all types of success (#20201712) - sd-bus: drop two inappropriate empty lines (#20201712) - sd-bus: initialize mutex after we allocated the wqueue (#20201712) - sd-bus: always go through sd_bus_unref() to free messages (#20201712) - bus-message: introduce two kinds of references to bus messages (#20201712) - sd-bus: introduce API for re-enqueuing incoming messages (#20201712) - sd-event: add sd_event_source_disable_unref() helper (#20201712) - polkit: when authorizing via PK let's re-resolve callback/userdata instead of caching it (#20201712) [239-18.2] - ask-password: prevent buffer overrow when reading from keyring (#1777037) [239-18.1] - journal: rely on _cleanup_free_ to free a temporary string used in client_context_read_cgroup (#1767716) [239-18] - shared/but-util: drop trusted annotation from bus_open_system_watch_bind_with_description() (#1746857) - sd-bus: adjust indentation of comments (#1746857) - resolved: do not run loop twice (#1746857) - resolved: allow access to Set*Link and Revert methods through polkit (#1746857) - resolved: query polkit only after parsing the data (#1746857) [239-17] - mount: simplify /proc/self/mountinfo handler (#1696178) - mount: rescan /proc/self/mountinfo before processing waitid() results (#1696178) - swap: scan /proc/swaps before processing waitid() results (#1696178) - analyze-security: fix potential division by zero (#1734400) [239-16] - sd-bus: deal with cookie overruns (#1694999) - journal-remote: do not request Content-Length if Transfer-Encoding is chunked (#1708849) - journal: do not remove multiple spaces after identifier in syslog message (#1691817) - cryptsetup: Do not fallback to PLAIN mapping if LUKS data device set fails. (#1719153) - cryptsetup: call crypt_load() for LUKS only once (#1719153) - cryptsetup: Add LUKS2 token support. (#1719153) - udev/scsi_id: fix incorrect page length when get device identification VPD page (#1713227) - Change job mode of manager triggered restarts to JOB_REPLACE (#11456 - bash-completion: analyze: support 'security' (#1733395) - man: note that journal does not validate syslog fields (#1707175) - rules: skip memory hotplug on ppc64 (#1713159) [239-15] - tree-wide: shorten error logging a bit (#1697893) - nspawn: simplify machine terminate bus call (#1697893) - nspawn: merge two variable declaration lines (#1697893) - nspawn: rework how we allocate/kill scopes (#1697893) - unit: enqueue cgroup empty check event if the last ref on a unit is dropped (#1697893) - Revert "journal: remove journal audit socket" (#1699287) - journal: don't enable systemd-journald-audit.socket by default (#1699287) - logs-show: use grey color for de-emphasizing journal log output (#1695601) - units: add [Install] section to tmp.mount (#1667065) - nss: do not modify errno when NSS_STATUS_NOTFOUND or NSS_STATUS_SUCCESS (#1691691) - util.h: add new UNPROTECT_ERRNO macro (#1691691) - nss: unportect errno before writing to NSS' *errnop (#1691691) - seccomp: reduce logging about failure to add syscall to seccomp (#1658691) - format-table: when duplicating a cell, also copy the color (#1689832) - format-table: optionally make specific cells clickable links (#1689832) - format-table: before outputting a color, check if colors are available (#1689832) - format-table: add option to store/format percent and uint64_t values in cells (#1689832) - format-table: optionally allow reversing the sort order for a column (#1689832) - format-table: add table_update() to update existing entries (#1689832) - format-table: add an API for getting the cell at a specific row/column (#1689832) - format-table: always underline header line (#1689832) - format-table: add calls to query the data in a specific cell (#1689832) - format-table: make sure we never call memcmp() with NULL parameters (#1689832) - format-table: use right field for display (#1689832) - format-table: add option to uppercase cells on display (#1689832) - format-table: never try to reuse cells that have color/url/uppercase set (#1689832) - locale-util: add logic to output smiley emojis at various happiness levels (#1689832) - analyze: add new security verb (#1689832) - tests: add a rudimentary fuzzer for server_process_syslog_message (#9979) (#1696224) - journald: make it clear that dev_kmsg_record modifies the string passed to it (#1696224) - journald: free the allocated memory before returning from dev_kmsg_record (#1696224) - tests: rework the code fuzzing journald (#1696224) - journald: make server_process_native_message compatible with fuzz_journald_processing_function (#1696224) - tests: add a fuzzer for server_process_native_message (#1696224) - tests: add a fuzzer for sd-ndisc (#1696224) - ndisc: fix two infinite loops (#1696224) - tests: add reproducers for several issues uncovered with fuzz-journald-syslog (#1696224) - tests: add a reproducer for an infinite loop in ndisc_handle_datagram (#1696224) - tests: add a reproducer for another infinite loop in ndisc_handle_datagram (#1696224) - fuzz: rename "fuzz-corpus" directory to just "fuzz" (#1696224) - test: add testcase for issue 10007 by oss-fuzz (#1696224) - fuzz: unify the "fuzz-regressions" directory with the main corpus (#1696224) - test-bus-marshal: use cescaping instead of hexmem (#1696224) - meson: add -Dlog-trace to set LOG_TRACE (#1696224) - meson: allow building resolved and machined without nss modules (#1696224) - meson: drop duplicated condition (#1696224) - meson: use .source_root() in more places (#1696224) - meson: treat all fuzz cases as unit tests (#1696224) - fuzz-bus-message: add fuzzer for message parsing (#1696224) - bus-message: use structured initialization to avoid use of unitialized memory (#1696224) - bus-message: avoid an infinite loop on empty structures (#1696224) - bus-message: let's always use -EBADMSG when the message is bad (#1696224) - bus-message: rename function for clarity (#1696224) - bus-message: use define (#1696224) - bus: do not print (null) if the message has unknown type (#1696224) - bus-message: fix calculation of offsets table (#1696224) - bus-message: remove duplicate assignment (#1696224) - bus-message: fix calculation of offsets table for arrays (#1696224) - bus-message: drop asserts in functions which are wrappers for varargs version (#1696224) - bus-message: output debug information about offset troubles (#1696224) - bus-message: fix skipping of array fields in !gvariant messages (#1696224) - bus-message: also properly copy struct signature when skipping (#1696224) - fuzz-bus-message: add two test cases that pass now (#1696224) - bus-message: return -EBADMSG not -EINVAL on invalid !gvariant messages (#1696224) - bus-message: avoid wrap-around when using length read from message (#1696224) - util: do not use stack frame for parsing arbitrary inputs (#1696224) - travis: enable ASan and UBSan on RHEL8 (#1683319) - tests: keep SYS_PTRACE when running under ASan (#1683319) - tree-wide: various ubsan zero size memory fixes (#1683319) - util: introduce memcmp_safe() (#1683319) - test-socket-util: avoid "memleak" reported by valgrind (#1683319) - sd-journal: escape binary data in match_make_string() (#1683319) - capability: introduce CAP_TO_MASK_CORRECTED() macro replacing CAP_TO_MASK() (#1683319) - sd-bus: use size_t when dealing with memory offsets (#1683319) - sd-bus: call cap_last_cap() only once in has_cap() (#1683319) - mount-point: honour AT_SYMLINK_FOLLOW correctly (#1683319) - travis: switch from trusty to xenial (#1683319) - test-socket-util: Add tests for receive_fd_iov() and friends. (#1683319) - socket-util: Introduce send_one_fd_iov() and receive_one_fd_iov() (#1683319) - core: swap order of "n_storage_fds" and "n_socket_fds" parameters (#1683334) - execute: use our usual syntax for defining bit masks (#1683334) - core: introduce new Type=exec service type (#1683334) - man: document the new Type=exec type (#1683334) - sd-bus: allow connecting to the pseudo-container ".host" (#1683334) - sd-login: let's also make sd-login understand ".host" (#1683334) - test: add test for Type=exec (#1683334) - journal-gateway: explicitly declare local variables (#1705971) - tools: drop unused variable (#1705971) - journal-gateway: use localStorage["cursor"] only when it has valid value (#1705971) [239-14] - rules: implement new memory hotplug policy (#1670728) - rules: add the rule that adds elevator= kernel command line parameter (#1670126) - bus-socket: Fix line_begins() to accept word matching full string (#1692991) - Refuse dbus message paths longer than BUS_PATH_SIZE_MAX limit. (#1678641) - Allocate temporary strings to hold dbus paths on the heap (#1678641) - sd-bus: if we receive an invalid dbus message, ignore and proceeed (#1678641) - Revert "core: one step back again, for nspawn we actually can't wait for cgroups running empty since systemd will get exactly zero notifications about it" (#1703485) [239-13] - rules: add the rule that adds elevator= kernel command line parameter (#1670126) [239-12] - core: when deserializing state always use read_line(…, LONG_LINE_MAX, …) (CVE-2018-15686) - coredump: remove duplicate MESSAGE= prefix from message (#1664976) - journald: remove unnecessary {} (#1664976) - journald: do not store the iovec entry for process commandline on stack (#1664976) - basic/process-util: limit command line lengths to _SC_ARG_MAX (#1664976) - coredump: fix message when we fail to save a journald coredump (#1664976) - procfs-util: expose functionality to query total memory (#1664976) - basic/prioq: add prioq_peek_item() (#1664976) - journal: limit the number of entries in the cache based on available memory (#1664976) - journald: periodically drop cache for all dead PIDs (#1664976) - process-util: don't use overly large buffer to store process command line (#1664976) - Revert "sysctl.d: switch net.ipv4.conf.all.rp_filter from 1 to 2" (#1653824) - journal: fix syslog_parse_identifier() (#1664978) - journald: set a limit on the number of fields (1k) (#1664977) - journald: when processing a native message, bail more quickly on overbig messages (#1664977) - journald: lower the maximum entry size limit to ½ for non-sealed fds (#1664977) - µhttpd: use a cleanup function to call MHD_destroy_response (#1664977) - journal-remote: verify entry length from header (#1664977) - journal-remote: set a limit on the number of fields in a message (#1664977) - journald: correctly attribute log messages also with cgroupsv1 (#1658115) - rules: add elevator= kernel command line parameter (#1670126) [239-11] - unit: don't add Requires for tmp.mount (#1619292) - remove bootchart dependency (#1660119) [239-10] - cryptsetup-generator: introduce basic keydev support (#1656869) - cryptsetup: don't use %m if there's no error to show (#1656869) - cryptsetup-generator: don't return error if target directory already exists (#1656869) - cryptsetup-generator: allow whitespace characters in keydev specification (#1656869) - rules: watch metadata changes on DASD devices (#1638676) - sysctl.d: switch net.ipv4.conf.all.rp_filter from 1 to 2 (#1653824) [239-9] - dissect-image: use right comparison function (#1602706) - login: avoid leak of name returned by uid_to_name() (#1602706) - firewall-util: add an assert that we're not overwriting a buffer (#1602706) - journal-file: avoid calling ftruncate with invalid fd (#1602706) - dhcp6: make sure we have enough space for the DHCP6 option header (#1643363) - core: rename queued_message → pending_reload_message (#1647359) - core: when we can't send the pending reload message, say we ignore it in the warning we log (#1647359) - core: make sure we don't throttle change signal generator when a reload is pending (#1647359) - proc-cmdline: introduce PROC_CMDLINE_RD_STRICT (#1643429) - debug-generator: introduce rd.* version of all options (#1643429) - chown-recursive: let's rework the recursive logic to use O_PATH (#1643368) - chown-recursive: also drop ACLs when recursively chown()ing (#1643368) - chown-recursive: TAKE_FD() is your friend (#1643368) - test: add test case for recursive chown()ing (#1643368) - Revert "sysctl.d: request ECN on both in and outgoing connections" (#1619790) - detect-virt: do not try to read all of /proc/cpuinfo (#1631532) - sd-bus: unify three code-paths which free struct bus_container (#1635435) - sd-bus: properly initialize containers (#1635435) [239-8] - revert sd-bus: unify three code-paths which free struct bus_container (#1635435) [239-7] - change default cgroup hierarchy to "legacy" (#1638650) - we never added mymachines module to passwd: or group: in RHEL8, hence don't try to remove it (#1638450) - bump minimal size of random pool to 1024 bytes (#1619268) - install RHEL-7 compatible rc.local (#1625209) - backport support for sector-size crypttab option (#1572563) - units: don't enable per-service IP firewall by default (#1630219) - sd-bus: unify three code-paths which free struct bus_container (#1635435) - bus-message: do not crash on message with a string of zero length (#1635439) - bus-message: stack based buffer overflow in free_and_strdup (#1635428) - journal: change support URL shown in the catalog entries (#1550548) [239-6] - move /etc/yum/protected.d/systemd.conf to /etc/dnf/ (#1626973) [239-5] - Fix file conflict between yum and systemd (#1626682) [239-4] - drop the patch for delayed loading of config in net_setup_link and set NAME in prefixdevname udev rules (#1614681) - bus: move BUS_DONT_DESTROY calls after asserts (#1610397) [239-3] - net_setup_link: delay loading configuration, just before we apply it (#1614681) [239-2] - 20-grubby.install: populate symvers.gz file (#1609698) - net_setup_link: allow renaming interfaces that were renamed already - units: drop DynamicUser=yes from systemd-resolved.service - journal: remove journal audit socket [239-1] - rebase to systemd-239 - Override systemd-user PAM config in install and not prep (patch by Filipe Brandenburger <filbranden@google.com>) - use %autosetup -S git_am to apply patches - revert upstream default for RemoveIPC (#1523233) - bump DefaultTasksMax to 80% of kernel default (#1523236) - avoid /tmp being mounted as tmpfs without the user's will (#1578772) - bump maximum number of processes in user slice to 80% of pid.max (#1523236) - forwardport downstream-only udev rules from RHEL-7 (#1523227) - don't ship systemd-networkd - don't ship systemd-timesyncd - add back support for WAIT_FOR to udev rules (#1523213) [238-8] - do not mount /tmp as tmpfs (#1578772) [238-7] - fix compilation (#1578318) [238-6] - forwardport downstream-only udev rules from RHEL-7 (#1523227) - set RemoveIPC=no by default (#1523233) [238-5] - also drop qrencode-devel from BuildRequires as it is no longer needed (#1566158) [238-4] - disable support for qrencode (#1566158) - bump default journal rate limit to 10000 messages per 30s (#1563729) - fix unit reloads (#1560549) - don't create /var/log/journal during package installation (#1523188) [238-3.1] - Rebuild with cryptsetup-2 [238-3] - Revert the patches for GRUB BootLoaderSpec support - Add patch for /etc/machine-id creation (#1552843) [238-2] - Fix transfiletrigger script (#1551793) [238-1] - Update to latest version - This fixes a hard-to-trigger potential vulnerability (CVE-2018-6954) - New transfiletriggers are installed for udev hwdb and rules, the journal catalog, sysctl.d, binfmt.d, sysusers.d, tmpfiles.d. [237-7.git84c8da5] - Add patch to install kernel images for GRUB BootLoaderSpec support [237-6.git84c8da5] - Create /etc/systemd in %post libs if necessary (#1548607) [237-5.git84c8da5] - Use : not touch to create file in -libs %post [237-4.git84c8da5] - Add coreutils dep for systemd-libs %post - Add patch to typecast USB IDs to avoid compile failure [237-3.git84c8da5] - Update some patches for test skipping that were updated upstream before merging - Add /usr/lib/systemd/purge-nobody-user — a script to check if nobody is defined correctly and possibly replace existing mappings [237-2.gitdff4849] - Backport a bunch of patches, most notably for the journal and various memory issues. Some minor build fixes. - Switch to new ldconfig macros that do nothing in F28+ - /etc/systemd/dont-synthesize-nobody is created in %post if nfsnobody or nobody users are defined (#1537262) [237-1.git78bd769] - Update to first stable snapshot (various minor memory leaks and misaccesses, some documentation bugs, build fixes). [237-1] - Update to latest version [236-4.git3e14c4c] - Add patch to include <crypt.h> if needed [236-3.git3e14c4c] - Rebuilt for switch to libxcrypt [236-2.git23e14c4] - Backport a bunch of bugfixes from upstream (#1531502, #1531381, #1526621 various memory corruptions in systemd-networkd) - /dev/kvm is marked as a static node which fixes permissions on s390x and ppc64 (#1532382) [236-1] - Update to latest version [235-5.git4a0e928] - Update to latest git snapshot, do not build for realz - Switch to libidn2 again (#1449145) [235-4] - Rebuild for cryptsetup-2.0.0-0.2.fc28 [235-3] - Backport a bunch of patches, including LP#172535 [235-2] - Patches for cryptsetup _netdev [235-1] - Update to latest version [234-8] - Backport /etc/crypttab _netdev feature from upstream [234-7] - Make sure to remove all device units sharing the same sysfs path (#1475570) [234-6] - Bump xslt recursion limit for libxslt-1.30 [234-5] - Backport more patches (#1476005, hopefully #1462378) * Thu Jul 27 2017 Fedora Release Engineering <releng@fedoraproject.org> - Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild [234-3] - Fix x-systemd.timeout=0 in /etc/fstab (#1462378) - Minor patches (memleaks, --help fixes, seccomp on arm64) [234-2] - Create kvm group (#1431876) [234-1] - Latest release [233-7.git74d8f1c] - Update to snapshot - Build with meson again [233-6] - Fix an out-of-bounds write in systemd-resolved (CVE-2017-9445) [233-5.gitec36d05] - Update to snapshot version, build with meson [233-4] - Backport a bunch of small fixes (memleaks, wrong format strings, man page clarifications, shell completion) - Fix systemd-resolved crash on crafted DNS packet (CVE-2017-9217, #1455493) - Fix systemd-vconsole-setup.service error on systems with no VGA console (#1272686) - Drop soft-static uid for systemd-journal-gateway - Use ID from /etc/os-release as ntpvendor [233-3] - Backport bugfixes from upstream - Don't return error when machinectl couldn't figure out container IP addresses (#1419501) [233-2] - Fix installation conflict with polkit [233-1] - New upstream release (#1416201, #1405439, #1420753, many others) - New systemd-tests subpackage with "installed tests" [232-15] - Add %ghost %dir entries for .wants dirs of our targets (#1422894) [232-14] - Ignore the hwdb parser test [232-14] - machinectl fails when virtual machine is running (#1419501) [232-13] - Rebuilt for https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild [232-12] - Backport patch for initrd-switch-root.service getting killed (#1414904) - Fix sd-journal-gatewayd -D, --trust, and COREDUMP_CONTAINER_CMDLINE extraction by sd-coredump. [232-11] - Backport a number of patches (#1411299, #1413075, #1415745, - Fix various memleaks and unitialized variable access - Shell completion enhancements - Enable TPM logging by default (#1411156) - Update hwdb (#1270124) [232-10] - Backport fix for boot failure in initrd-switch-root (#1414904) [232-9] - Add fake dependency on systemd-pam to systemd-devel to ensure systemd-pam is available as multilib (#1414153) [232-8] - Fix buildsystem to check for lz4 correctly (#1404406) [232-7] - Various small tweaks to scriplets [232-6] - Fix scriptlets to never fail in libs post [232-5] - Add patch from Michal Schmidt to avoid process substitution (#1392236) [232-4] - Rebuild (#1392236) [232-3] - Make /etc/dbus-1/system.d directory non-%ghost [232-2] - Fix kernel-install (#1391829) - Restore previous systemd-user PAM config (#1391836) - Move journal-upload.conf.5 from systemd main to journal-remote subpackage (#1391833) - Fix permissions on /var/lib/systemd/journal-upload (#1262665) [232-1] - Update to latest version (#998615, #1181922, #1374371, #1390704, #1384150, #1287161) - Add %{_isa} to Provides on arch-full packages (#1387912) - Create systemd-coredump user in %pre (#1309574) - Replace grubby patch with a short-circuiting install.d "plugin" - Enable nss-systemd in the passwd, group lines in nsswith.conf - Add [!UNAVAIL=return] fallback after nss-resolve in hosts line in nsswith.conf - Move systemd-nspawn man pages to the right subpackage (#1391703) [231-11] - SPC - Cannot restart host operating from container (#1384523) [231-10] - Do not recreate /var/log/journal on upgrades (#1383066) - Move nss-myhostname provides to systemd-libs (#1383271) [231-9] - Fix systemctl set-default (#1374371) - Prevent systemd-udev-trigger.service from restarting (follow-up for #1378974) [231-8] - Apply fix for #1378974 [231-7] - Apply patches properly [231-6] - Better fix for (#1380286) [231-5] - Denial-of-service bug against pid1 (#1380286) [231-4] - Fix preset-all (#1363858) - Fix issue with daemon-reload messing up graphics (#1367766) - A few other bugfixes [231-3] - Revert preset-all change, it broke stuff (#1363858) [231-2] - Call preset-all on initial installation (#1118740) - Fix botched Recommends for libxkbcommon [231-1] - Update to latest version [230-3] - Update to latest git snapshot (fixes for systemctl set-default, polkit lingering policy, reversal of the framebuffer rules, unaligned access fixes, fix for StartupBlockIOWeight-over-dbus). Those changes are interspersed with other changes and new features (mostly in lldp, networkd, and nspawn). Some of those new features might not work, but I think that existing functionality should not be broken, so it seems worthwile to update to the snapshot. [230-2] - Remove systemd-compat-libs on upgrade [230-1] - New version - Drop compat-libs - Require libxkbcommon explictly, since the automatic dependency will not be generated anymore [229-15] - Remove duplicated entries in -container %files (#1330395) [229-14] - Move installation of udev services to udev subpackage (#1329023) [229-13] - Split out systemd-pam subpackage (#1327402) [229-12] - move more binaries and services from the main package to subpackages [229-11] - move more binaries and services from the main package to subpackages [229-10] - move device dependant stuff to the udev subpackage [229-9] - Add myhostname to /etc/nsswitch.conf (#1318303) [229-8] - fixed kernel-install for copying files for grubby Resolves: rhbz#1299019 [229-7] - Moar patches (#1316964, #1317928) - Move vconsole-setup and tmpfiles-setup-dev bits to systemd-udev - Protect systemd-udev from deinstallation [229-6] - Create /etc/resolv.conf symlink from systemd-resolved (#1313085) [229-5] - Split out systemd-container subpackage (#1163412) - Split out system-udev subpackage - Add various bugfix patches, incl. a tentative fix for #1308771 [229-4] - Power64 and s390(x) now have libseccomp support - aarch64 has gnu-efi [229-3] - Fix build failures on ppc64 (#1310800) [229-2] - revert: fixed kernel-install for copying files for grubby Resolves: rhbz#1299019 - this causes the dtb files to not get installed at all and the fdtdir - line in extlinux.conf to not get updated correctly [229-1] - New upstream release [228-10.gite35a787] - fixed kernel-install for copying files for grubby Resolves: rhbz#1299019 [228-9.gite35a787] - Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild [228-8.gite35a787] - Rebuild for binutils on aarch64 fix [228-7.gite35a787] - apply the conflict with fedora-release only in Fedora [228-6.gite35a787] - Fix rawhide build failures on ppc64 (#1286249) [228-6.gite35a787] - Create /etc/systemd/network (#1286397) [228-5.gite35a787] - Do not install nss modules by default [228-4.gite35a787] - Update to latest upstream git: there is a bunch of fixes (nss-mymachines overflow bug, networkd fixes, more completions are properly installed), mixed with some new resolved features. - Rework file triggers so that they always run before daemons are restarted [228-3] - Enable rpm file triggers for daemon-reload [228-2] - Fix version number in obsoleted package name (#1283452) [228-1] - New upstream release [227-7] - Rename journal-gateway subpackage to journal-remote - Ignore the access mode on /var/log/journal (#1048424) - Do not assume fstab is present (#1281606) [227-6] - Rebuilt for https://fedoraproject.org/wiki/Changes/python3.5 [227-5] - Rebuild for libmicrohttpd soname bump [227-4] - Rebuilt for Python3.5 rebuild [227-3] - Fix syntax in kernel-install (#1277264) [227-2] - Rebuild for libmicrohttpd soname bump. [227-1] - New upstream release [226-3] - user systemd-journal-upload should be in systemd-journal group (#1262743) [226-2] - Add selinux to system-user PAM config [226-1] - New upstream release [225-1] - New upstream release [224-1] - New upstream release [223-2] - update to git snapshot [223-1] - New upstream release [222-2] - Remove python subpackages (python-systemd in now standalone) [222-1] - New upstream release [221-5.git619b80a] - update to git snapshot [221-4.git604f02a] - Add example file with yama config (#1234951) [221-3.git604f02a] - update to git snapshot [221-2] - build systemd-boot EFI tools [221-1] - New upstream release - Undoes botched translation check, should be reinstated later? [220-10] - Rebuilt for https://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild [220-9] - The gold linker is now fixed on aarch64 [220-8] - Remove gudev which is now provided as separate package (libgudev) - Fix for spurious selinux denials (#1224211) - Udev change events (#1225905) - Patches for some potential crashes - ProtectSystem=yes does not touch /home - Man page fixes, hwdb updates, shell completion updates - Restored persistent device symlinks for bcache, xen block devices - Tag all DRM cards as master-of-seat [220-7] - fix udev block device watch [220-6] - add support for network disk encryption [220-5] - Disable gold on aarch64 until it's fixed (tracked in rhbz #1225156) [220-4] - systemd-devel should require systemd-libs, not the main package (#1226301) - Check for botched translations (#1226566) - Make /etc/udev/hwdb.d part of the rpm (#1226379) [220-3] - Add patch to fix udev --daemon not cleaning child processes (upstream commit 86c3bece38bcf5). [220-2] - Add patch to fix udev --daemon crash (upstream commit 040e689654ef08). [220-1] - New upstream release - Drop /etc/mtab hack, as that's apparently fixed in mock now (#1116158) - Remove ghosting for %{_sysconfdir}/systemd/system/runlevel*.target, these targets are not configurable anymore in systemd upstream - Drop work-around for #1002806, since this is solved upstream now [219-15] - fix up the conflicts version for fedora-release [219-14] - Remove presets (#1221340) - Fix (potential) crash and memory leak in timedated, locking failure in systemd-nspawn, crash in resolved. - journalctl --list-boots should be faster - zsh completions are improved - various ommissions in docs are corrected (#1147651) - VARIANT and VARIANT_ID fields in os-release are documented - systemd-fsck-root.service is generated in the initramfs (#1201979, #1107818) - systemd-tmpfiles should behave better on read-only file systems (#1207083) [219-13] - Patches for some outstanding annoyances - Small keyboard hwdb updates [219-12] - Tighten requirements between subpackages (#1207381). [219-11] - Move all parts systemd-journal-{remote,upload} to systemd-journal-gatewayd subpackage (#1193143). - Create /var/lib/systemd/journal-upload directory (#1193145). - Cut out lots of stupid messages at debug level which were obscuring more important stuff. - Apply "tentative" state for devices only when they are added, not removed. - Ignore invalid swap pri= settings (#1204336) - Fix SELinux check for timedated operations to enable/disable ntp (#1014315) - Fix comparing of filesystem paths (#1184016) [219-10] - Fixes for bugs 1186018, 1195294, 1185604, 1196452. - Hardware database update. - Documentation fixes. - A fix for journalctl performance regression. - Fix detection of inability to open files in journalctl. - Detect SuperH architecture properly. - The first of duplicate lines in tmpfiles wins again. - Do vconsole setup after loading vconsole driver, not fbcon. - Fix problem where some units were restarted during systemd reexec. - Fix race in udevadm settle tripping up NetworkManager. - Downgrade various log messages. - Fix issue where journal-remote would process some messages with a delay. - GPT /srv partition autodiscovery is fixed. - Reconfigure old Finnish keymaps in post (#1151958) [219-9] - Buttons on Lenovo X6* tablets broken (#1198939) [219-8] - Reworked device handling (#1195761) - ACL handling fixes (with a script in %post) - Various log messages downgraded (#1184712) - Allow PIE on s390 again (#1197721) [219-7] - arm: reenable lto. gcc-5.0.0-0.16 fixed the crash (#1193212) [219-6] - Revert patch that breaks Atomic/OSTree (#1195761) [219-5] - Undo the resolv.conf workaround, Aim for a proper fix in Rawhide. [219-4] - Revive fedora-disable-resolv.conf-symlink.patch to unbreak composes. [219-3] - arm: disabling gold did not help; disable lto instead (#1193212) [219-2] - Update 90-default.present for dbxtool. [219-1] - New upstream release - This removes the sysctl/bridge hack, a different solution needs to be found for this (see #634736) - This removes the /etc/resolv.conf hack, anaconda needs to fix their handling of /etc/resolv.conf as symlink - This enables "%check" - disable gold on arm, as that is broken (see #1193212) [218-6] - aarch64 now has seccomp support [218-5] - Don't overwrite systemd.macros with unrelated Source file. [218-4] - Add a touchpad hwdb (#1189319) [218-4] - Enable xkbcommon dependency to allow checking of keymaps - Fix permissions of /var/log/journal (#1048424) - Enable timedatex in presets (#1187072) - Disable rpcbind in presets (#1099595) [218-3] - RFE: journal: automatically rotate the file if it is unlinked (#1171719) [218-3] - Add firewall description files (#1176626) [218-2] - systemd-nspawn doesn't work on s390/s390x (#1175394) [218-1] - New upstream release - Enable "nss-mymachines" in /etc/nsswitch.conf [217-4] - Change libgudev1 to only require systemd-libs (#727499), there's no need to require full systemd stack. - Fixes for bugs #1159448, #1152220, #1158035. - Bash completions updates to allow propose more units for start/restart, and completions for set-default,get-default. - Again allow systemctl enable of instances. - Hardware database update and fixes. - Udev crash on invalid options and kernel commandline timeout parsing are fixed. - Add "embedded" chassis type. - Sync before 'reboot -f'. - Fix restarting of timer units. [217-3] - Fix hanging journal flush (#1159641) [217-2] - Fix ordering cycles involving systemd-journal-flush.service and remote-fs.target (#1159117) [217-1] - New upstream release [216-12] - Drop PackageKit.service from presets (#1154126) [216-11] - Conflict with old versions of initscripts (#1152183) - Remove obsolete Finnish keymap (#1151958) [216-10] - Fix a problem with voluntary daemon exits and some other bugs (#1150477, #1095962, #1150289) [216-9] - Update to latest git, but without the readahead removal patch (#1114786, #634736) [216-8] - revert "don't reset selinux context during CHANGE events" [216-7] - add temporary workaround for #1147910 - don't reset selinux context during CHANGE events [216-6] - Update timesyncd with patches to avoid hitting NTP pool too often. [216-5] - Use common CONFIGURE_OPTS for build2 and build3. - Configure timesyncd with NTP servers from Fedora/RHEL vendor zone. [216-4] - Move config files for sd-j-remote/upload to sd-journal-gateway subpackage (#1136580) [216-3] - Drop no LTO build option for aarch64/s390 now it's fixed in binutils (RHBZ 1091611) [216-2] - Re-add patch to disable resolve.conf symlink (#1043119) [216-1] - New upstream release [215-12] - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild [215-11] - disable LTO also on s390(x) [215-10] - fixed PPC64LE [215-9] - fix license handling [215-8] - Create systemd-journal-remote and systemd-journal-upload users (#1118907) [215-7] - Split out systemd-compat-libs subpackage [215-6] - Rebuilt for gobject-introspection 1.41.4 [215-5] - Fix SELinux context of /etc/passwd-, /etc/group-, /etc/.updated (#1121806) - Add missing BR so gnutls and elfutils are used [215-4] - Various man page updates - Static device node logic is conditionalized on CAP_SYS_MODULES instead of CAP_MKNOD for better behaviour in containers - Some small networkd link handling fixes - vconsole-setup runs setfont before loadkeys (https://bugs.freedesktop.org/show_bug.cgi?id=80685) - New systemd-escape tool - XZ compression settings are tweaked to greatly improve journald performance - "watch" is accepted as chassis type - Various sysusers fixes, most importantly correct selinux labels - systemd-timesyncd bug fix (https://bugs.freedesktop.org/show_bug.cgi?id=80932) - Shell completion improvements - New udev tag ID_SOFTWARE_RADIO can be used to instruct logind to allow user access - XEN and s390 virtualization is properly detected [215-3] - Add patch to disable resolve.conf symlink (#1043119) [215-2] - Move systemd-journal-remote to systemd-journal-gateway package (#1114688) - Disable /etc/mtab handling temporarily (#1116158) [215-1] - New upstream release - Enable coredump logic (which abrt would normally override) [214-5] - On aarch64 disable LTO as it still has issues on that arch [214-4] - Bugfixes (#996133, #1112908) [214-3] - Actually create input group (#1054549) [214-2] - Do not restart systemd-logind on upgrades (#1110697) - Add some patches (#1081429, #1054549, #1108568, #928962) [214-1] - New upstream release - Get rid of "floppy" group, since udev uses "disk" now - Reenable LTO [213-4] - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild [213-3] - fix systemd-timesync user creation [213-2] - Create temporary files after installation (#1101983) - Add sysstat-collect.timer, sysstat-summary.timer to preset policy (#1101621) [213-1] - New upstream release [212-6] - Rebuilt for https://fedoraproject.org/wiki/Changes/Python_3.4 [212-5] - revert change from 212-4, causes boot fail on single CPU boxes (RHBZ 1095891) [212-4] - add netns udev workaround [212-3] - enable uuidd.socket by default (#1095353) [212-2] - Disable building with -flto for the moment due to gcc 4.9 issues (RHBZ 1091611) [212-1] - New upstream release [211-2] - Explicitly define which upstream platforms support libseccomp [211-1] - New upstream release [210-8] - Fix logind unpriviledged reboot issue and a few other minor fixes - Limit generator execution time - Recognize buttonless joystick types [210-7] - ppc64le needs link warnings disabled, too [210-6] - move ifarch ppc64le to correct place (libseccomp req) [210-5] - Bugfixes: #1047568, #1047039, #1071128, #1073402 - Bash completions for more systemd tools - Bluetooth database update - Manpage fixes [210-4] - Apply work-around for ppc64le too (#1073647). [210-3] - Backport a few patches, add completion for systemd-nspawn. [210-3] - Apply work-arounds for ppc/ppc64 for bugs 1071278 and 1071284 [210-2] - Check more services against preset list and enable by default [210-1] - new upstream release [209-2.gitf01de96] - Enable dnssec-triggerd.service by default (#1060754) [209-2.gitf01de96] - git snapshot to sort out ARM build issues [209-1] - new upstream release [208-15] - Make gpsd lazily activated (#1066421) [208-14] - Back out patch which causes user manager to be destroyed when unneeded and spams logs (#1053315) [208-13] - A different fix for #1023820 taken from Mageia - Backported fix for #997031 - Hardward database updates, man pages improvements, a few small memory leaks, utf-8 correctness and completion fixes - Support for key-slot option in crypttab [208-12] - Own the %{_prefix}/lib/kernel(/*) and %{_datadir}/zsh(/*) dirs. [208-11] - Backport a few fixes, relevant documentation updates, and HWDB changes (#1051797, #1051768, #1047335, #1047304, #1047186, #1045849, #1043304, - Flip journalctl to --full by default (#984758) [208-9] - Apply two patches for #1026860 [208-8] - Bump release to stay ahead of f20 [208-7] - Backport patches (#1023041, #1036845, #1006386?) - HWDB update - Some small new features: nspawn --drop-capability=, running PID 1 under valgrind, "yearly" and "annually" in calendar specifications - Some small documentation and logging updates [208-6] - Bump release to stay ahead of f20 [208-5] - Use unit name in PrivateTmp= directories (#957439) - Update manual pages, completion scripts, and hardware database - Configurable Timeouts/Restarts default values - Support printing of timestamps on the console - Fix some corner cases in detecting when writing to the console is safe - Python API: convert keyword values to string, fix sd_is_booted() wrapper - Do not tread missing /sbin/fsck.btrfs as an error (#1015467) - Allow masking of fsck units - Advertise hibernation to swap files - Fix SO_REUSEPORT settings - Prefer converted xkb keymaps to legacy keymaps (#981805, #1026872) - Make use of newer kmod - Assorted bugfixes: #1017161, #967521, #988883, #1027478, #821723, #1014303 [208-4] - Add temporary fix for #1002806 [208-3] - Backport a bunch of fixes and hwdb updates [208-2] - Move old random seed and backlight files into the right place [208-1] - New upstream release [207-5] - Do not create /var/var/... dirs [207-4] - Fix policykit authentication - Resolves: rhbz#1006680 [207-3] - fixed login - Resolves: rhbz#1005233 [207-2] - add some upstream fixes for 207 - fixed swap activation - Resolves: rhbz#1008604 [207-1] - New upstream release [206-11] - support "debug" kernel command line parameter - journald: fix fd leak in journal_file_empty - journald: fix vacuuming of archived journals - libudev: enumerate - do not try to match against an empty subsystem - cgtop: fixup the online help - libudev: fix memleak when enumerating childs [206-10] - Do not require grubby, lorax now takes care of grubby - cherry-picked a lot of patches from upstream [206-9] - Require grubby, Fedora installs require grubby, - kernel-install took over from new-kernel-pkg - without the Requires we are unable to compose Fedora - everyone else says that since kernel-install took over - it is responsible for ensuring that grubby is in place - this is really what we want for Fedora [206-8] - Revert "Require grubby its needed by kernel-install" [206-7] - Require grubby its needed by kernel-install [206-6] - kernel-install now understands kernel flavors like PAE [206-5] - add sddm.service to preset file (#998978) [206-4] - Filter out provides for private python modules. - Add requires on kmod >= 14 (#990994). [206-3] - New systemd-python3 package (#976427). - Add ownership of a few directories that we create (#894202). [206-2] - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild [206-1] - New upstream release Resolves (#984152) [205-1] - New upstream release [204-10] - Split systemd-journal-gateway subpackage (#908081). [204-9] - Rename nm_dispatcher to NetworkManager-dispatcher in default preset (#977433) [204-8] - fix, which helps to sucessfully browse journals with duplicated seqnums [204-7] - fix duplicate message ID bug Resolves: rhbz#974132 [204-6] - introduce 99-default-disable.preset [204-5] - Rename 90-display-manager.preset to 85-display-manager.preset so that it actually takes precedence over 90-default.preset's "disable *" line (#903690) [204-4] - Fix kernel-install (#965897) [204-3] - Fix kernel-install (#965897) [204-2] - New upstream release - disable isdn by default (#959793) [203-2] - forward port kernel-install-grubby.patch [203-1] - New upstream release [202-3] - fix ENOENT for getaddrinfo - Resolves: rhbz#954012 rhbz#956035 - crypt-setup-generator: correctly check return of strdup - logind-dbus: initialize result variable - prevent library underlinking [202-2] - nspawn create empty /etc/resolv.conf if necessary - python wrapper: add sd_journal_add_conjunction() - fix s390 booting - Resolves: rhbz#953217 [202-1] - New upstream release [201-2] - Automatically discover whether to run autoreconf and add autotools and git BuildRequires based on the presence of patches to be applied. - Use find -delete. [201-1] - New upstream release [200-4] - Update preset file [200-3] - Remove NetworkManager-wait-online.service from presets file again, it should default to off [200-2] - New upstream release [199-2] - Add NetworkManager-wait-online.service to the presets file [199-1] - New upstream release [198-7] - Drop /usr/s?bin/ prefixes. [198-6] - run autogen to pickup all changes [198-5] - do not mount anything, when not running as pid 1 - add initrd.target for systemd in the initrd [198-4] - fix switch-root and local-fs.target problem - patch kernel-install to use grubby, if available [198-3] - add Conflict with dracut < 026 because of the new switch-root isolate [198-2] - Create required users [198-1] - New release - Enable journal persistancy by default [197-3] - Bump for ARM [197-2] - Added qemu-guest-agent.service to presets (Lennart, #885406). - Add missing pygobject3-base to systemd-analyze deps (Lennart). - Do not require hwdata, it is all in the hwdb now (Kay). - Drop dependency on dbus-python. [197-1] - New upstream release [196-4] - Enable rngd.service by default (#857765). [196-3] - Disable hardening on s390(x) because PIE is broken there and produces text relocations with __thread (#868839). [196-2] - added spice-vdagentd.service to presets (Lennart, #876237) - BR cryptsetup-devel instead of the legacy cryptsetup-luks-devel provide name (requested by Milan Brož). - verbose make to see the actual build flags [196-1] - New upstream release [195-8] - https://bugzilla.redhat.com/show_bug.cgi?id=873459 - https://bugzilla.redhat.com/show_bug.cgi?id=878093 [195-7] - Revert udev killing cgroup patch for F18 Beta. - https://bugzilla.redhat.com/show_bug.cgi?id=873576 [195-6] - Fix cyclical dep between systemd and systemd-libs. - Avoid broken build of test-journal-syslog. - https://bugzilla.redhat.com/show_bug.cgi?id=873387 - https://bugzilla.redhat.com/show_bug.cgi?id=872638 [195-5] - require 'sed', limit HOSTNAME= match [195-4] - add dmraid-activation.service to the default preset - add yum protected.d fragment - https://bugzilla.redhat.com/show_bug.cgi?id=869619 - https://bugzilla.redhat.com/show_bug.cgi?id=869717 [195-3] - Migrate /etc/sysconfig/ i18n, keyboard, network files/variables to systemd native files [195-2] - Provide syslog because the journal is fine as a syslog implementation [195-1] - New upstream release - https://bugzilla.redhat.com/show_bug.cgi?id=831665 - https://bugzilla.redhat.com/show_bug.cgi?id=847720 - https://bugzilla.redhat.com/show_bug.cgi?id=858693 - https://bugzilla.redhat.com/show_bug.cgi?id=863481 - https://bugzilla.redhat.com/show_bug.cgi?id=864629 - https://bugzilla.redhat.com/show_bug.cgi?id=864672 - https://bugzilla.redhat.com/show_bug.cgi?id=864674 - https://bugzilla.redhat.com/show_bug.cgi?id=865128 - https://bugzilla.redhat.com/show_bug.cgi?id=866346 - https://bugzilla.redhat.com/show_bug.cgi?id=867407 - https://bugzilla.redhat.com/show_bug.cgi?id=868603 [194-2] - Add scriptlets for migration away from systemd-timedated-ntp.target [194-1] - New upstream release - https://bugzilla.redhat.com/show_bug.cgi?id=859614 - https://bugzilla.redhat.com/show_bug.cgi?id=859655 [193-1] - New upstream release [192-1] - New upstream release [191-2] - Fix journal mmap header prototype definition to fix compilation on 32bit [191-1] - New upstream release - Enable all display managers by default, as discussed with Adam Williamson [190-1] - New upstream release - Take possession of /etc/localtime, and remove /etc/sysconfig/clock - https://bugzilla.redhat.com/show_bug.cgi?id=858780 - https://bugzilla.redhat.com/show_bug.cgi?id=858787 - https://bugzilla.redhat.com/show_bug.cgi?id=858771 - https://bugzilla.redhat.com/show_bug.cgi?id=858754 - https://bugzilla.redhat.com/show_bug.cgi?id=858746 - https://bugzilla.redhat.com/show_bug.cgi?id=858266 - https://bugzilla.redhat.com/show_bug.cgi?id=858224 - https://bugzilla.redhat.com/show_bug.cgi?id=857670 - https://bugzilla.redhat.com/show_bug.cgi?id=856975 - https://bugzilla.redhat.com/show_bug.cgi?id=855863 - https://bugzilla.redhat.com/show_bug.cgi?id=851970 - https://bugzilla.redhat.com/show_bug.cgi?id=851275 - https://bugzilla.redhat.com/show_bug.cgi?id=851131 - https://bugzilla.redhat.com/show_bug.cgi?id=847472 - https://bugzilla.redhat.com/show_bug.cgi?id=847207 - https://bugzilla.redhat.com/show_bug.cgi?id=846483 - https://bugzilla.redhat.com/show_bug.cgi?id=846085 - https://bugzilla.redhat.com/show_bug.cgi?id=845973 - https://bugzilla.redhat.com/show_bug.cgi?id=845194 - https://bugzilla.redhat.com/show_bug.cgi?id=845028 - https://bugzilla.redhat.com/show_bug.cgi?id=844630 - https://bugzilla.redhat.com/show_bug.cgi?id=839736 - https://bugzilla.redhat.com/show_bug.cgi?id=835848 - https://bugzilla.redhat.com/show_bug.cgi?id=831740 - https://bugzilla.redhat.com/show_bug.cgi?id=823485 - https://bugzilla.redhat.com/show_bug.cgi?id=821813 - https://bugzilla.redhat.com/show_bug.cgi?id=807886 - https://bugzilla.redhat.com/show_bug.cgi?id=802198 - https://bugzilla.redhat.com/show_bug.cgi?id=767795 - https://bugzilla.redhat.com/show_bug.cgi?id=767561 - https://bugzilla.redhat.com/show_bug.cgi?id=752774 - https://bugzilla.redhat.com/show_bug.cgi?id=732874 - https://bugzilla.redhat.com/show_bug.cgi?id=858735 [189-4] - Don't pull in pkg-config as dep - https://bugzilla.redhat.com/show_bug.cgi?id=852828 [189-3] - Update preset policy - Rename preset policy file from 99-default.preset to 90-default.preset so that people can order their own stuff after the Fedora default policy if they wish [189-2] - Update preset policy - https://bugzilla.redhat.com/show_bug.cgi?id=850814 [189-1] - New upstream release [188-4] - more scriptlet fixes (move dm migration logic to %posttrans so the service files it's looking for are available at the time the logic is run) [188-3] - Remount file systems MS_PRIVATE before switching roots - https://bugzilla.redhat.com/show_bug.cgi?id=847418 [188-2] - fix scriptlets [188-1] - New upstream release - Enable gdm and avahi by default via the preset file - Convert /etc/sysconfig/desktop to display-manager.service symlink - Enable hardened build [187-3] - Obsolete: system-setup-keyboard [187-2] - Run ldconfig for the new -libs subpackage [187-1] - New upstream release [186-2] - fixed dracut conflict version [186-1] - New upstream release [185-7.gite7aee75] - add obsoletes/conflicts so multilib systemd -> systemd-libs updates work [185-6.gite7aee75] - Update to current git * Wed Jun 06 2012 Kay Sievers - 185-5.gita2368a3 - disable plymouth in configure, to drop the .wants/ symlinks [185-4.gita2368a3] - Update to current git snapshot - Add systemd-readahead-analyze - Drop upstream patch - Split systemd-libs - Drop duplicate doc files - Fixed License headers of subpackages [185-3] - Drop plymouth files - Conflict with old plymouth * Tue Jun 05 2012 Kay Sievers - 185-2 - selinux udev labeling fix - conflict with older dracut versions for new udev file names * Mon Jun 04 2012 Kay Sievers - 185-1 - New upstream release - udev selinux labeling fixes - new man pages - systemctl help <unit name> [184-1] - New upstream release [183-1] - New upstream release including udev merge. [44-4] - Add triggers from Bill Nottingham to correct the damage done by the obsoleted systemd-units's preun scriptlet (#807457). [44-3] - apply patch from upstream so we can build systemd on arm and ppc - and likely the rest of the secondary arches [44-2] - Don't build the gtk parts anymore. They're moving into systemd-ui. - Remove a dead patch file. [44-1] - New upstream release - Closes #798760, #784921, #783134, #768523, #781735 [43-2] - don't conflict with fedora-release systemd never actually provided - /etc/os-release so there is no actual conflict [43-1] - New upstream release - Closes #789758, #790260, #790522 [42-1] - New upstream release - Save a bit of entropy during system installation (#789407) - Don't own /etc/os-release anymore, leave that to fedora-release [41-2] - rebuild for fixed binutils [41-1] - New upstream release [40-1] - New upstream release [39-3] - provide /sbin/shutdown [39-2] - increment release [39-1.1] - install everything in /usr https://fedoraproject.org/wiki/Features/UsrMove [39-1] - New upstream release [38-6.git9fa2f41] - Update to a current git snapshot. - Resolves: #781657 [38-5] - Build against libgee06. Reenable gtk tools. - Delete unused patches. - Add easy building of git snapshots. - Remove legacy spec file elements. - Don't mention implicit BuildRequires. - Configure with --disable-static. - Merge -units into the main package. - Move section 3 manpages to -devel. - Fix unowned directory. - Run ldconfig in scriptlets. - Split systemd-analyze to a subpackage. [38-4] - fix build on big-endians [38-3] - Disable building of gtk tools for now [38-2] - Fix a few (build) dependencies [38-1] - New upstream release [37-4] - Run authconfig if /etc/pam.d/system-auth is not a symlink. - Resolves: #753160 [37-3] - Fix remote-fs-pre.target and its ordering. - Resolves: #749940 [37-2] - A couple of fixes from upstream: - Fix a regression in bash-completion reported in Bodhi. - Fix a crash in isolating. - Resolves: #717325 [37-1] - New upstream release - Resolves: #744726, #718464, #713567, #713707, #736756 [36-5] - Undo the workaround. Kay says it does not belong in systemd. - Unresolves: #741655 [36-4] - Workaround for the crypto-on-lvm-on-crypto disk layout - Resolves: #741655 [36-3] - Revert an upstream patch that caused ordering cycles - Resolves: #741078 [36-2] - Add /etc/timezone to ghosted files [36-1] - New upstream release - Resolves: #735013, #736360, #737047, #737509, #710487, #713384 [35-1] - New upstream release - Update post scripts - Resolves: #726683, #713384, #698198, #722803, #727315, #729997, #733706, #734611 [34-1] - New upstream release [33-2] - fix ABRT on service file reloading - Resolves: rhbz#732020 [33-1] - New upstream release [32-1] - New upstream release [31-2] - Fix access mode of modprobe file, restart logind after upgrade [31-1] - New upstream release [30-1] - New upstream release [29-1] - New upstream release [28-4] - Apply patches from current upstream. - Fixes memory size detection on 32-bit with >4GB RAM (BZ712341) [28-3] - Apply patches from current upstream - https://bugzilla.redhat.com/show_bug.cgi?id=709909 - https://bugzilla.redhat.com/show_bug.cgi?id=710839 - https://bugzilla.redhat.com/show_bug.cgi?id=711015 [28-2] - Pull in nss-myhostname [28-1] - New upstream release [26-2] - Bugfix release - https://bugzilla.redhat.com/show_bug.cgi?id=707507 - https://bugzilla.redhat.com/show_bug.cgi?id=707483 - https://bugzilla.redhat.com/show_bug.cgi?id=705427 - https://bugzilla.redhat.com/show_bug.cgi?id=707577 [26-1] - New upstream release - https://bugzilla.redhat.com/show_bug.cgi?id=699394 - https://bugzilla.redhat.com/show_bug.cgi?id=698198 - https://bugzilla.redhat.com/show_bug.cgi?id=698674 - https://bugzilla.redhat.com/show_bug.cgi?id=699114 - https://bugzilla.redhat.com/show_bug.cgi?id=699128 [25-1] - New upstream release - https://bugzilla.redhat.com/show_bug.cgi?id=694788 - https://bugzilla.redhat.com/show_bug.cgi?id=694321 - https://bugzilla.redhat.com/show_bug.cgi?id=690253 - https://bugzilla.redhat.com/show_bug.cgi?id=688661 - https://bugzilla.redhat.com/show_bug.cgi?id=682662 - https://bugzilla.redhat.com/show_bug.cgi?id=678555 - https://bugzilla.redhat.com/show_bug.cgi?id=628004 [24-1] - New upstream release - https://bugzilla.redhat.com/show_bug.cgi?id=694079 - https://bugzilla.redhat.com/show_bug.cgi?id=693289 - https://bugzilla.redhat.com/show_bug.cgi?id=693274 - https://bugzilla.redhat.com/show_bug.cgi?id=693161 [23-1] - New upstream release - Include systemd-sysv-convert [22-1] - New upstream release [21-2] - The quota services are now pulled in by mount points, hence no need to enable them explicitly [21-1] - New upstream release [20-2] - Apply upstream patch to not send untranslated messages to plymouth [20-1] - New upstream release [19-1] - New upstream release [18-1] - New upstream release [17-6] - bump upstart obsoletes (#676815) [17-5] - add macros.systemd file for %{_unitdir} [17-4] - Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild [17-3] - Fix popen() of systemctl, #674916 [17-2] - add epoch to readahead obsolete [17-1] - New upstream release [16-2] - Drop console.conf again, since it is not shipped in pamtmp.conf [16-1] - New upstream release [15-1] - New upstream release [14-1] - Upstream update - Enable hwclock-load by default - Obsolete readahead - Enable /var/run and /var/lock on tmpfs [13-1] - new upstream release [12-3] - Fix clash [12-2] - Don't clash with initscripts for now, so that we don't break the builders [12-1] - New upstream release [11-2] - Rebuild with newer vala, libnotify [11-1] - New upstream release [10-6] - Rebuilt for gcc bug 634757 [10-5] - merge -sysvinit into main package [10-4] - obsolete upstart-sysvinit too [10-3] - Drop upstart requires [10-2] - Enable audit - https://bugzilla.redhat.com/show_bug.cgi?id=633771 [10-1] - New upstream release - https://bugzilla.redhat.com/show_bug.cgi?id=630401 - https://bugzilla.redhat.com/show_bug.cgi?id=630225 - https://bugzilla.redhat.com/show_bug.cgi?id=626966 - https://bugzilla.redhat.com/show_bug.cgi?id=623456 [9-3] - move fedora-specific units to initscripts; require newer version thereof [9-2] - Add missing tarball [9-1] - New upstream version - Closes 501720, 614619, 621290, 626443, 626477, 627014, 627785, 628913 [8-3] - Reexecute after installation, take ownership of /var/run/user - https://bugzilla.redhat.com/show_bug.cgi?id=627457 - https://bugzilla.redhat.com/show_bug.cgi?id=627634 [8-2] - Properly create default.target link [8-1] - New upstream release [7-3] - Fix https://bugzilla.redhat.com/show_bug.cgi?id=623561 [7-2] - Fix https://bugzilla.redhat.com/show_bug.cgi?id=623430 [7-1] - New upstream release [6-2] - properly hide output on package installation - pull in coreutils during package installtion [6-1] - New upstream release - Fixes #621200 [5-2] - Add tarball [5-1] - Prepare release 5 [4-4] - Add 'sysvinit-userspace' provide to -sysvinit package to fix upgrade/install (#618537) [4-3] - Add libselinux to build dependencies [4-2] - Use the right tarball [4-1] - New upstream release, and make default [3-3] - Used wrong tarball [3-2] - Own /cgroup jointly with libcgroup, since we don't dpend on it anymore [3-1] - New upstream release [2-0] - New upstream release [1-0] - First upstream release [0-0.7.20100629git4176e5] - New snapshot - Split off -units package where other packages can depend on without pulling in the whole of systemd [0-0.6.20100622gita3723b] - Add missing libtool dependency. [0-0.5.20100622gita3723b] - Update snapshot [0-0.4.20100614git393024] - Pull the latest snapshot that fixes a segfault. Resolves rhbz#603231 [0-0.3.20100610git2f198e] - More minor fixes as per review [0-0.2.20100610git2f198e] - Spec improvements from David Hollis [0-0.1.20090609git2f198e] - Address review comments [0-0.0.git2010-06-02] - Initial spec (adopted from Kay Sievers) _______________________________________________ El-errata mailing list El-errata@oss.oracle.com https://oss.oracle.com/mailman/listinfo/el-errata