Index index by Group index by Distribution index by Vendor index by creation date index by Name Mirrors Help Search

pesign-0.112-27.el8_7 RPM for x86_64

From AlmaLinux 8.10 AppStream for x86_64

Name: pesign Distribution: AlmaLinux
Version: 0.112 Vendor: AlmaLinux
Release: 27.el8_7 Build date: Tue Apr 4 15:57:16 2023
Group: Unspecified Build host: x64-builder02.almalinux.org
Size: 1053416 Source RPM: pesign-0.112-27.el8_7.src.rpm
Packager: AlmaLinux Packaging Team <packager@almalinux.org>
Url: https://github.com/vathpela/pesign
Summary: Signing utility for UEFI binaries
This package contains the pesign utility for signing UEFI binaries as
well as other associated tools.

Provides

Requires

License

GPLv2

Changelog

* Wed Jan 18 2023 Robbie Harwood <rharwood@redhat.com> - 0.112-27
  - Deprecate pesign-authorize and drop ACL
  - Resolves: CVE-2022-3560
* Mon Nov 08 2021 Robbie Harwood <rharwood@redhat.com> - 0.112-26
  - Perform the /var/run to /run "migration" stupidity
  - Resolves: rhbz#1801976
* Mon Oct 01 2018 Peter Jones <pjones@redhat.com> - 0.112-25
  - Preserve .py timestamp during install so .pyc/.pyo files have the same
    timestamp on all arches, preventing rpmdiff from complaining.
    Related: rhbz#1625388
* Fri Sep 28 2018 Peter Jones <pjones@redhat.com> - 0.112-24
  - Require nss-tools at runtime so the rpm signing macros will have it
    Resolves: rhbz#1625388
* Wed Aug 01 2018 Charalampos Stratakis <cstratak@redhat.com> - 0.112-23
  - Rebuild for platform-python
* Mon Jan 22 2018 Peter Robinson <pbrobinson@fedoraproject.org> 0.112-22
  - Minor spec cleanups, fix arm conditional
* Fri Oct 06 2017 Troy Dawson <tdawson@redhat.com> - 0.112-21
  - Cleanup spec file conditionals
* Tue Aug 15 2017 Peter Jones <pjones@redhat.com> - 0.112-20
  - Maybe fewer typoes would be better.
* Tue Aug 15 2017 Peter Jones <pjones@redhat.com> - 0.112-19
  - Update to match f26's build so new kernel builds will work.
* Thu Aug 10 2017 Peter Jones <pjones@redhat.com> - 0.112-10
  - Try to fix the db problem nirik is seeing trying to upgrade the builders.
* Thu Aug 03 2017 Fedora Release Engineering <releng@fedoraproject.org> - 0.112-9
  - Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Binutils_Mass_Rebuild
* Thu Jul 27 2017 Fedora Release Engineering <releng@fedoraproject.org> - 0.112-8
  - Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild
* Sat Jul 08 2017 Peter Jones <pjones@redhat.com> - 0.112-7
  - Rebuild for efivar-31-1.fc26
    Related: rhbz#1468841
* Sat Feb 11 2017 Fedora Release Engineering <releng@fedoraproject.org> - 0.112-6
  - Rebuilt for https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild
* Fri Jan 06 2017 Peter Jones <pjones@redhat.com> - 0.112-5
  - Don't Req: or BuildReq: coolkey or opensc; those belong in system deploy
    scripts.
    Related: rhbz#1349073
* Wed Aug 17 2016 Peter Jones <pjones@redhat.com> - 0.112-4
  - Build as -4 to make bodhi happy.
* Fri Aug 12 2016 Adam Williamson <awilliam@redhat.com> - 0.112-3
  - backport fix for command line parsing from upstream master
* Wed Aug 10 2016 Peter Jones <pjones@redhat.com> - 0.112-2
  - Build with newer efivar.
* Wed Apr 20 2016 Peter Jones <pjones@redhat.com> - 0.112-1
  - Update to 0.112
  - Also fix up some spec file woes:
    - dumb things in %setup
    - find-debuginfo.sh not working right for some source files...
* Thu Feb 04 2016 Fedora Release Engineering <releng@fedoraproject.org> - 0.111-8
  - Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild
* Thu Dec 10 2015 Peter Jones <pjones@redhat.com> - 0.111-7
  - Obsolete pesign-rh-test-certs, it was in -1's update.
    Resolves: rhbz#1283475
* Wed Dec 02 2015 Peter Jones <pjones@redhat.com> - 0.111-6
  - *Don't* use --certdir if we're using the socket.
    Related: rhbz#1283475
    Related: rhbz#1284063
    Related: rhbz#1284561
* Tue Dec 01 2015 Peter Jones <pjones@redhat.com> - 0.111-5
  - Actually do a better job of choosing which cert to use when, so people will
    stop seeing any of this problem.  (Thanks for the thought, jforbes.)
    Resolves: rhbz#1283475
    Resolves: rhbz#1284063
    Resolves: rhbz#1284561
* Mon Nov 30 2015 Peter Jones <pjones@redhat.com> - 0.111-5
  - setfacl even harder.
    Related: rhbz#1283475
    Related: rhbz#1284063
    Related: rhbz#1284561
* Fri Nov 20 2015 Peter Jones <pjones@redhat.com> - 0.111-3
  - Better ACL setting code.
    Related: rhbz#1283475
* Thu Nov 19 2015 Peter Jones <pjones@redhat.com> - 0.111-2
  - Allow the mockbuild user to read the nss database if the account exists.
* Wed Oct 28 2015 Peter Jones <pjones@redhat.com> - 0.111-1
  - Rebase to 0.111
  - Split test certs out into a "Recommends" subpackage.
* Thu Jun 18 2015 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 0.110-3
  - Rebuilt for https://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild
* Wed Mar 04 2015 Ville Skyttä <ville.skytta@iki.fi> - 0.110-2
  - Install macros in %{_rpmconfigdir}/macros.d where available (#1074281)
* Fri Oct 24 2014 Peter Jones <pjones@redhat.com> - 0.110-1
  - Update to pesign-0.110
* Sun Aug 17 2014 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 0.108-4
  - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild
* Sat Jun 07 2014 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 0.108-3
  - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Thu May 29 2014 Peter Jones <pjones@redhat.com> - 0.108-2
  - Fix a networking problem nirik observed when reinstalling builders.
* Sat Aug 10 2013 Peter Jones <pjones@redhat.com> - 0.108-1
  - Remove errant result files and raise an error from %pesign
* Tue Aug 06 2013 Peter Jones <pjones@redhat.com> - 0.106-3
  - Add code for signing in RHEL 7
* Mon Aug 05 2013 Peter Jones <pjones@redhat.com> - 0.106-2
  - Fix for new %doc rules.
* Sun Aug 04 2013 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 0.106-2
  - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild
* Tue May 21 2013 Peter Jones <pjones@redhat.com> - 0.106-1
  - Update to 0.106
  - Hopefully fix the segfault dgilmore was seeing.
* Mon May 20 2013 Peter Jones <pjones@redhat.com> - 0.105-1
  - Various bug fixes.
* Wed May 15 2013 Peter Jones <pjones@redhat.com> - 0.104-1
  - Make sure alignment is correct on signature list entries
    Resolves: rhbz#963361
  - Make sure section alignment is correct if we have to extend the file
* Wed Feb 06 2013 Peter Jones <pjones@redhat.com> - 0.103-2
  - Conditionalize systemd bits so they don't show up in RHEL 6 builds
* Tue Feb 05 2013 Peter Jones <pjones@redhat.com> - 0.103-1
  - One more compiler problem.  Let's expect a few more, shall we?
* Tue Feb 05 2013 Peter Jones <pjones@redhat.com> - 0.102-1
  - Don't use --std=gnu11 because we have to work on RHEL 6 builders.
* Mon Feb 04 2013 Peter Jones <pjones@redhat.com> - 0.101-1
  - Update to 0.101 to fix more "pesign -E" issues.
* Fri Nov 30 2012 Peter Jones <pjones@redhat.com> - 0.100-1
  - Fix insertion of signatures from a file.
* Mon Nov 26 2012 Matthew Garrett <mjg59@srcf.ucam.org> - 0.99-9
  - Add a patch needed for new shim builds
* Fri Oct 19 2012 Peter Jones <pjones@redhat.com> - 0.99-8
  - Get the Fedora signing token name right.
* Fri Oct 19 2012 Peter Jones <pjones@redhat.com>
  - Add coolkey and opensc modules to pki database during %install.
* Fri Oct 19 2012 Peter Jones <pjones@redhat.com> - 0.99-7
  - setfacl u:kojibuilder:rw /var/run/pesign/socket
  - Fix command line checking in client
  - Add client stdin pin reading.
* Thu Oct 18 2012 Peter Jones <pjones@redhat.com> - 0.99-6
  - Automatically select daemon as signer when using rpm macros.
* Thu Oct 18 2012 Peter Jones <pjones@redhat.com> - 0.99-5
  - Make it work on the -el6 branch as well.
* Wed Oct 17 2012 Peter Jones <pjones@redhat.com> - 0.99-4
  - Fix some more bugs found by valgrind and coverity.
  - Don't build utils/ ; we're not using them and they're not ready anyway.
* Wed Oct 17 2012 Peter Jones <pjones@redhat.com> - 0.99-3
  - Fix daemon startup bug from 0.99-2
* Wed Oct 17 2012 Peter Jones <pjones@redhat.com> - 0.99-2
  - Fix various bugs from 0.99-1
  - Don't make the database unreadable just yet.
* Mon Oct 15 2012 Peter Jones <pjones@redhat.com> - 0.99-1
  - Update to 0.99
  - Add documentation for client/server mode.
  - Add --pinfd and --pinfile to server mode.
* Fri Oct 12 2012 Peter Jones <pjones@redhat.com> - 0.98-1
  - Update to 0.98
  - Add client/server mode.
* Mon Oct 01 2012 Peter Jones <pjones@redhat.com> - 0.10-5
  - Fix missing section address fixup.
* Wed Aug 15 2012 Peter Jones <pjones@redhat.com> - 0.10-4
  - Make macros.pesign even better (and make it work right for i686 packages)
* Tue Aug 14 2012 Peter Jones <pjones@redhat.com> - 0.10-3
  - Only sign things on x86_64; all else ignore gracefully.
* Tue Aug 14 2012 Peter Jones <pjones@redhat.com> - 0.10-2
  - Make macros.pesign more reliable
* Mon Aug 13 2012 Peter Jones <pjones@redhat.com> - 0.10-1
  - Update to 0.10
  - Include rpm macros to support easy custom signing of signed packages.
* Fri Aug 10 2012 Peter Jones <pjones@redhat.com> - 0.9-1
  - Update to 0.9
  - Bug fix from Gary Ching-Pang Lin
  - Support NSS Token selection for use with smart cards.
* Wed Aug 08 2012 Peter Jones <pjones@redhat.com> - 0.8-1
  - Update to 0.8
  - Don't open the db read-write
  - Fix permissions on keystore (everybody can sign with test keys)
* Wed Aug 08 2012 Peter Jones <pjones@redhat.com> - 0.7-2
  - Include test keys.
* Mon Jul 30 2012 Peter Jones <pjones@redhat.com> - 0.7-1
  - Update to 0.7
  - Better fix for MS compatibility.
* Mon Jul 30 2012 Peter Jones <pjones@redhat.com> - 0.6-1
  - Update to 0.6
  - Bug-for-bug compatibility with signtool.exe .
* Fri Jul 20 2012 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 0.5-2
  - Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild
* Wed Jul 11 2012 Peter Jones <pjones@redhat.com> - 0.5-1
  - Rebase to 0.5
  - Do more rigorous bounds checking when hashing a new binary.
* Tue Jul 10 2012 Peter Jones <pjones@redhat.com> - 0.3-2
  - Rebase to 0.4
* Fri Jun 22 2012 Peter Jones <pjones@redhat.com> - 0.3-2
  - Move man page to a more reasonable place.
* Fri Jun 22 2012 Peter Jones <pjones@redhat.com> - 0.3-1
  - Update to upstream's 0.3 .
* Thu Jun 21 2012 Peter Jones <pjones@redhat.com> - 0.2-4
  - Do not build with smp flags.
* Thu Jun 21 2012 Peter Jones <pjones@redhat.com> - 0.2-3
  - Make it build on i686, though it's unclear it'll ever be necessary.
* Thu Jun 21 2012 Peter Jones <pjones@redhat.com> - 0.2-2
  - Fix compile problem with f18's compiler.
* Thu Jun 21 2012 Peter Jones <pjones@redhat.com> - 0.2-1
  - Fix some rpmlint complaints nirik pointed out
  - Add popt-devel build dep
* Fri Jun 15 2012 Peter Jones <pjones@redhat.com> - 0.1-1
  - First version of SRPM.

Files

/etc/pesign/groups
/etc/pesign/users
/etc/pki/pesign
/etc/pki/pesign-rh-test
/etc/pki/pesign-rh-test/cert8.db
/etc/pki/pesign-rh-test/key3.db
/etc/pki/pesign-rh-test/secmod.db
/etc/pki/pesign/cert8.db
/etc/pki/pesign/key3.db
/etc/pki/pesign/secmod.db
/etc/popt.d/pesign.popt
/run/pesign
/run/pesign/pesign.pid
/run/pesign/socket
/usr/bin/authvar
/usr/bin/efikeygen
/usr/bin/efisiglist
/usr/bin/pesigcheck
/usr/bin/pesign
/usr/bin/pesign-client
/usr/lib/.build-id
/usr/lib/.build-id/0f
/usr/lib/.build-id/0f/de8a7e509b8cad966d3e7e1765fb7212f3bf24
/usr/lib/.build-id/17
/usr/lib/.build-id/17/c171e9f982db3feb71fa3b9d81f9543c6475e3
/usr/lib/.build-id/34
/usr/lib/.build-id/34/cfe5b716dea4300f4f0d33ec384c0f08bfc0e8
/usr/lib/.build-id/7f
/usr/lib/.build-id/7f/a6fae817989212d80710315cb3b8fe3826e70e
/usr/lib/.build-id/b8
/usr/lib/.build-id/b8/f863b7310064791f11e0189a518fca4933ca85
/usr/lib/.build-id/c8
/usr/lib/.build-id/c8/c65aec2c58e5e7f6212f936158754364d3f424
/usr/lib/python3.6/site-packages/mockbuild/plugins/__pycache__/pesign.cpython-36.opt-1.pyc
/usr/lib/python3.6/site-packages/mockbuild/plugins/__pycache__/pesign.cpython-36.pyc
/usr/lib/python3.6/site-packages/mockbuild/plugins/pesign.py
/usr/lib/rpm/macros.d/macros.pesign
/usr/lib/systemd/system/pesign.service
/usr/lib/tmpfiles.d/pesign.conf
/usr/libexec/pesign
/usr/libexec/pesign/pesign-authorize
/usr/share/doc/pesign
/usr/share/doc/pesign/README
/usr/share/doc/pesign/TODO
/usr/share/licenses/pesign
/usr/share/licenses/pesign/COPYING
/usr/share/man/man1/authvar.1.gz
/usr/share/man/man1/efikeygen.1.gz
/usr/share/man/man1/efisiglist.1.gz
/usr/share/man/man1/pesigcheck.1.gz
/usr/share/man/man1/pesign-client.1.gz
/usr/share/man/man1/pesign.1.gz


Generated by rpm2html 1.8.1

Fabrice Bellet, Wed Nov 13 08:07:56 2024