Index index by Group index by Distribution index by Vendor index by creation date index by Name Mirrors Help Search

pesign-0.109-11.el7_9 RPM for x86_64

From Updates for CentOS 7.9.2009 for x86_64 / Packages

Name: pesign Distribution: Unknown
Version: 0.109 Vendor: CentOS
Release: 11.el7_9 Build date: Tue Mar 7 15:49:06 2023
Group: Development/System Build host: x86-01.bsys.centos.org
Size: 366848 Source RPM: pesign-0.109-11.el7_9.src.rpm
Packager: CentOS BuildSystem <http://bugs.centos.org>
Url: https://github.com/vathpela/pesign
Summary: Signing utility for UEFI binaries
This package contains the pesign utility for signing UEFI binaries as
well as other associated tools.

Provides

Requires

License

GPLv2

Changelog

* Wed Jan 18 2023 Robbie Harwood <rharwood@redhat.com> - 0.109-11
  - Backport newer, deprecated pesign-authorize
  - Resolves: CVE-2022-3560
* Mon May 16 2016 Peter Jones <pjones@redhat.com> - - 0.109-10
  - Add support for /etc/pesign/users and /etc/pesign/groups
    Resolves: rhbz#1141263
* Tue Sep 02 2014 Peter Jones <pjones@redhat.com> - 0.109-9
  - Fix man page errors.
    Resolves: rhbz#948850
* Tue Sep 02 2014 Peter Jones <pjones@redhat.com> - 0.109-9
  - Build as PIE+RELRO binaries.
    Resolves: rhbz#1092542
* Wed Aug 27 2014 Peter Jones <pjones@redhat.com> - 0.109-8
  - Include aarch64 in the rpm macro
    Related: rhbz#1100042
* Wed Aug 27 2014 Peter Jones <pjones@redhat.com> - 0.109-7
  - Add aarch64.
    Resolves: rhbz#1100042
* Thu Mar 20 2014 Peter Jones <pjones@redhat.com> - 0.109-6
  - Make sure CFLAGS is inherited properly for -fstack-protector-strong.
    Resolves: rhbz#1070782
* Fri Dec 27 2013 Daniel Mach <dmach@redhat.com> - 0.109-5
  - Mass rebuild 2013-12-27
* Tue Oct 29 2013 Peter Jones <pjones@redhat.com> - 0.109-4
  - Tweak the signing rules just a bit more.
    Related: rhbz1017857
* Fri Oct 25 2013 Peter Jones <pjones@redhat.com> - 0.109-3
  - Update to fix a bug coverity found.
    Related: rhbz1017857
* Fri Oct 25 2013 Peter Jones <pjones@redhat.com> - 0.109-2
  - Fix the pesign macro for RHEL packages.
    Related: rhbz1017857
* Wed Oct 09 2013 Peter Jones <pjones@redhat.com> - 0.109-1
  - Update to 0.109
    Related: rhbz#893260
* Tue Oct 08 2013 Peter Jones <pjones@redhat.com> - 0.106-6
  - Don't create a new certificate database when signing on RHEL.
* Wed Aug 07 2013 Peter Jones <pjones@redhat.com> - 0.106-5
  - Use --force with sattrs blob from mktemp()
  - Error if we get a zero-sized signed file result
* Wed Aug 07 2013 Peter Jones <pjones@redhat.com> - 0.106-4
  - Don't require ascii mode for RHEL CA/signer cert import.
* Tue Aug 06 2013 Peter Jones <pjones@redhat.com> - 0.106-3
  - More work on the RHEL %pesign macro
* Tue Aug 06 2013 Peter Jones <pjones@redhat.com> - 0.106-2
  - Add rhel %pesign macro definitions.
* Tue May 21 2013 Peter Jones <pjones@redhat.com> - 0.106-1
  - Update to 0.106
  - Hopefully fix the segfault dgilmore was seeing.
* Mon May 20 2013 Peter Jones <pjones@redhat.com> - 0.105-1
  - Various bug fixes.
* Wed May 15 2013 Peter Jones <pjones@redhat.com> - 0.104-1
  - Make sure alignment is correct on signature list entries
    Resolves: rhbz#963361
  - Make sure section alignment is correct if we have to extend the file
* Wed Feb 06 2013 Peter Jones <pjones@redhat.com> - 0.103-2
  - Conditionalize systemd bits so they don't show up in RHEL 6 builds
* Tue Feb 05 2013 Peter Jones <pjones@redhat.com> - 0.103-1
  - One more compiler problem.  Let's expect a few more, shall we?
* Tue Feb 05 2013 Peter Jones <pjones@redhat.com> - 0.102-1
  - Don't use --std=gnu11 because we have to work on RHEL 6 builders.
* Mon Feb 04 2013 Peter Jones <pjones@redhat.com> - 0.101-1
  - Update to 0.101 to fix more "pesign -E" issues.
* Fri Nov 30 2012 Peter Jones <pjones@redhat.com> - 0.100-1
  - Fix insertion of signatures from a file.
* Mon Nov 26 2012 Matthew Garrett <mjg59@srcf.ucam.org> - 0.99-9
  - Add a patch needed for new shim builds
* Fri Oct 19 2012 Peter Jones <pjones@redhat.com> - 0.99-8
  - Get the Fedora signing token name right.
* Fri Oct 19 2012 Peter Jones <pjones@redhat.com>
  - Add coolkey and opensc modules to pki database during %install.
* Fri Oct 19 2012 Peter Jones <pjones@redhat.com> - 0.99-7
  - setfacl u:kojibuilder:rw /var/run/pesign/socket
  - Fix command line checking in client
  - Add client stdin pin reading.
* Thu Oct 18 2012 Peter Jones <pjones@redhat.com> - 0.99-6
  - Automatically select daemon as signer when using rpm macros.
* Thu Oct 18 2012 Peter Jones <pjones@redhat.com> - 0.99-5
  - Make it work on the -el6 branch as well.
* Wed Oct 17 2012 Peter Jones <pjones@redhat.com> - 0.99-4
  - Fix some more bugs found by valgrind and coverity.
  - Don't build utils/ ; we're not using them and they're not ready anyway.
* Wed Oct 17 2012 Peter Jones <pjones@redhat.com> - 0.99-3
  - Fix daemon startup bug from 0.99-2
* Wed Oct 17 2012 Peter Jones <pjones@redhat.com> - 0.99-2
  - Fix various bugs from 0.99-1
  - Don't make the database unreadable just yet.
* Mon Oct 15 2012 Peter Jones <pjones@redhat.com> - 0.99-1
  - Update to 0.99
  - Add documentation for client/server mode.
  - Add --pinfd and --pinfile to server mode.
* Fri Oct 12 2012 Peter Jones <pjones@redhat.com> - 0.98-1
  - Update to 0.98
  - Add client/server mode.
* Mon Oct 01 2012 Peter Jones <pjones@redhat.com> - 0.10-5
  - Fix missing section address fixup.
* Wed Aug 15 2012 Peter Jones <pjones@redhat.com> - 0.10-4
  - Make macros.pesign even better (and make it work right for i686 packages)
* Tue Aug 14 2012 Peter Jones <pjones@redhat.com> - 0.10-3
  - Only sign things on x86_64; all else ignore gracefully.
* Tue Aug 14 2012 Peter Jones <pjones@redhat.com> - 0.10-2
  - Make macros.pesign more reliable
* Mon Aug 13 2012 Peter Jones <pjones@redhat.com> - 0.10-1
  - Update to 0.10
  - Include rpm macros to support easy custom signing of signed packages.
* Fri Aug 10 2012 Peter Jones <pjones@redhat.com> - 0.9-1
  - Update to 0.9
  - Bug fix from Gary Ching-Pang Lin
  - Support NSS Token selection for use with smart cards.
* Wed Aug 08 2012 Peter Jones <pjones@redhat.com> - 0.8-1
  - Update to 0.8
  - Don't open the db read-write
  - Fix permissions on keystore (everybody can sign with test keys)
* Wed Aug 08 2012 Peter Jones <pjones@redhat.com> - 0.7-2
  - Include test keys.
* Mon Jul 30 2012 Peter Jones <pjones@redhat.com> - 0.7-1
  - Update to 0.7
  - Better fix for MS compatibility.
* Mon Jul 30 2012 Peter Jones <pjones@redhat.com> - 0.6-1
  - Update to 0.6
  - Bug-for-bug compatibility with signtool.exe .
* Fri Jul 20 2012 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 0.5-2
  - Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild
* Wed Jul 11 2012 Peter Jones <pjones@redhat.com> - 0.5-1
  - Rebase to 0.5
  - Do more rigorous bounds checking when hashing a new binary.
* Tue Jul 10 2012 Peter Jones <pjones@redhat.com> - 0.3-2
  - Rebase to 0.4
* Fri Jun 22 2012 Peter Jones <pjones@redhat.com> - 0.3-2
  - Move man page to a more reasonable place.
* Fri Jun 22 2012 Peter Jones <pjones@redhat.com> - 0.3-1
  - Update to upstream's 0.3 .
* Thu Jun 21 2012 Peter Jones <pjones@redhat.com> - 0.2-4
  - Do not build with smp flags.
* Thu Jun 21 2012 Peter Jones <pjones@redhat.com> - 0.2-3
  - Make it build on i686, though it's unclear it'll ever be necessary.
* Thu Jun 21 2012 Peter Jones <pjones@redhat.com> - 0.2-2
  - Fix compile problem with f18's compiler.
* Thu Jun 21 2012 Peter Jones <pjones@redhat.com> - 0.2-1
  - Fix some rpmlint complaints nirik pointed out
  - Add popt-devel build dep
* Fri Jun 15 2012 Peter Jones <pjones@redhat.com> - 0.1-1
  - First version of SRPM.

Files

/etc/pesign/groups
/etc/pesign/users
/etc/pki/pesign
/etc/pki/pesign/cert8.db
/etc/pki/pesign/key3.db
/etc/pki/pesign/secmod.db
/etc/popt.d/pesign.popt
/etc/rpm/macros.pesign
/usr/bin/efikeygen
/usr/bin/pesign
/usr/bin/pesign-client
/usr/lib/systemd/system/pesign.service
/usr/lib/tmpfiles.d/pesign.conf
/usr/libexec/pesign/pesign-authorize
/usr/share/doc/pesign-0.109
/usr/share/doc/pesign-0.109/COPYING
/usr/share/doc/pesign-0.109/README
/usr/share/doc/pesign-0.109/TODO
/usr/share/man/man1/efikeygen.1.gz
/usr/share/man/man1/pesign-client.1.gz
/usr/share/man/man1/pesign.1.gz
/var/run/pesign
/var/run/pesign/pesign.pid
/var/run/pesign/socket


Generated by rpm2html 1.8.1

Fabrice Bellet, Tue Apr 9 14:37:33 2024