Debian Package Tracker
Register | Log in
Subscribe

opendoas

minimal replacement for sudo, with persist support

Choose email to subscribe with

general
  • source: opendoas (main)
  • version: 6.8.2-1
  • maintainer: Scupake (DMD)
  • arch: any
  • std-ver: 4.6.1
  • VCS: Git (Browse, QA)
versions [more versions can be listed by madison] [old versions available from snapshot.debian.org]
[pool directory]
  • testing: 6.8.2-1
  • unstable: 6.8.2-1
versioned links
  • 6.8.2-1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
binaries
  • doas (2 bugs: 0, 0, 2, 0)
  • opendoas
action needed
1 security issue in sid high

There is 1 open security issue in sid.

1 important issue:
  • CVE-2023-28339: OpenDoas through 6.8.2, when TIOCSTI is available, allows privilege escalation because of sharing a terminal with the original session. NOTE: TIOCSTI is unavailable in OpenBSD 6.0 and later, and can be made unavailable in the Linux kernel 6.2 and later.
Created: 2023-03-15 Last update: 2023-03-16 04:36
1 security issue in bookworm high

There is 1 open security issue in bookworm.

1 important issue:
  • CVE-2023-28339: OpenDoas through 6.8.2, when TIOCSTI is available, allows privilege escalation because of sharing a terminal with the original session. NOTE: TIOCSTI is unavailable in OpenBSD 6.0 and later, and can be made unavailable in the Linux kernel 6.2 and later.
Created: 2023-03-15 Last update: 2023-03-16 04:36
1 new commit since last upload, is it time to release? normal
vcswatch reports that this package seems to have new commits in its VCS but has not yet updated debian/changelog. You should consider updating the Debian changelog and uploading this new version into the archive.

Here are the relevant commit logs:
commit d4418cdd43d37ca3791966989b5a91fdc856a8ec
Author: Scupake <scupake@riseup.net>
Date:   Sat Mar 18 21:45:17 2023 +0100

    change "as root" to "any user" in the example file
Created: 2023-03-18 Last update: 2023-03-18 22:12
Standards version of the package is outdated. wishlist
The package should be updated to follow the last version of Debian Policy (Standards-Version 4.6.2 instead of 4.6.1).
Created: 2022-12-17 Last update: 2022-12-17 19:17
news
[rss feed]
  • [2022-07-29] opendoas 6.8.2-1 MIGRATED to testing (Debian testing watch)
  • [2022-07-23] Accepted opendoas 6.8.2-1 (source amd64) into unstable, unstable (Debian FTP Masters) (signed by: Ryan Kavanagh)
bugs [bug history graph]
  • all: 3
  • RC: 0
  • I&N: 1
  • M&W: 2
  • F&P: 0
  • patch: 0
links
  • homepage
  • lintian
  • buildd: logs, reproducibility, cross
  • popcon
  • browse source code
  • edit tags
  • other distros
  • security tracker
  • screenshots
  • debian patches
ubuntu Ubuntu logo [Information about Ubuntu for Debian Developers]
  • version: 6.8.2-1

Debian Package Tracker — Copyright 2013-2018 The Distro Tracker Developers
Report problems to the tracker.debian.org pseudo-package in the Debian BTS.
Documentation — Bugs — Git Repository — Contributing