Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package pam for openSUSE:Factory checked in at 2026-09-29 17:48:16 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/pam (Old) and /work/SRC/openSUSE:Factory/.pam.new.383539 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "pam" Tue Sep 29 17:48:16 2026 rev:157 rq:1381106 version:1.7.3 Changes: -------- --- /work/SRC/openSUSE:Factory/pam/pam.changes 2026-09-19 22:19:24.989297187 +0200 +++ /work/SRC/openSUSE:Factory/.pam.new.383539/pam.changes 2026-09-29 17:48:56.402108652 +0200 @@ -1,0 +2,33 @@ +Fri Sep 25 16:06:47 UTC 2026 - Valentin Lefebvre <[email protected]> + +- Update to version 1.7.3: + * pam_unix: removed support for creating new DES/bigcrypt hashed passwords. + * Login with existing DES/bigcrypt passwords is still possible. + * pam_unix: changed the default hash algorithm from DES to SHA512. + * pam_unix: always use unix_update helper if SELinux is enabled. + * pam_unix: fixed option parsing that could silently ignore "quiet" and + * "minlen=" depending on configuration line order. + * pam_access: fixed matching of fully qualified usernames. + * pam_env: fixed buffer allocation that could result in insufficient space. + * pam_faillock: fixed tally loss under concurrent auth failures that could + * allow the deny= threshold to be bypassed. + * pam_faillock: added logging when preauth denies access to a locked account. + * pam_group: fixed out-of-bounds read in wildcard matching. + * pam_limits: fixed maxlogins/maxsyslogins limits that could incorrectly + * deny login. + * pam_namespace: fixed resource leaks on configuration parse errors. + * pam_pwhistory: allow earlier passwords when remember count is reduced. + * pam_selinux: fixed memory leaks and corrected swapped arguments in + * log messages. + * pam_sepermit: fixed crash on malformed config lines, hardened lock file + * handling, and fixed leaking file descriptors on exec. + * pam_succeed_if: fixed broken ruser matching and prevented logging unknown + * user names in plaintext. + * pam_time: fixed out-of-bounds read in wildcard matching, fixed day-of-week + * parsing, and ignore rules with malformed time fields. + * pam_umask: validate umask, pri and ulimit values in GECOS. + * pam_userdb: fixed password comparison timing leak. + * Multiple minor bug fixes, build fixes, portability fixes, + * documentation improvements, and translation updates. + +------------------------------------------------------------------- Old: ---- Linux-PAM-1.7.2+git48.tar.xz New: ---- Linux-PAM-1.7.3.tar.xz ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ pam.spec ++++++ --- /var/tmp/diff_new_pack.wTeE17/_old 2026-09-29 17:48:59.152222982 +0200 +++ /var/tmp/diff_new_pack.wTeE17/_new 2026-09-29 17:48:59.159223273 +0200 @@ -70,7 +70,7 @@ # Name: pam%{name_suffix} # -Version: 1.7.2+git48 +Version: 1.7.3 Release: 0 Summary: A Security Tool that Provides Authentication for Applications License: GPL-2.0-or-later OR BSD-3-Clause ++++++ Linux-PAM-1.7.2+git48.tar.xz -> Linux-PAM-1.7.3.tar.xz ++++++ ++++ 18199 lines of diff (skipped) ++++++ _servicedata ++++++ --- /var/tmp/diff_new_pack.wTeE17/_old 2026-09-29 17:49:01.715329538 +0200 +++ /var/tmp/diff_new_pack.wTeE17/_new 2026-09-29 17:49:01.722329829 +0200 @@ -1,7 +1,7 @@ <servicedata> <service name="tar_scm"> <param name="url">https://github.com/linux-pam/linux-pam.git</param> - <param name="changesrevision">dd74fc113a9ba1f94d5469f6f7857a1884b3f550</param></service> + <param name="changesrevision">28fce1fd55b003fec90f34e5bc785e9439b216f2</param></service> </servicedata> (No newline at EOF)
