cyrus-sasl-scram-2.1.27-150300.4.3.1 >  A a p9|.CrQ|iξ8ZjެQQ<*RP{AoI,R{U_lj -lvuIC^㫐عI )Q[qV6 XO#ԷٞNֲLʏcJC5YGFaU"'K>Z>w+p3?:>( RC'9D=л"t ]#NN".Y2yn")njb]8k'lIX_c0f:H^a31b4ce9c8bad7f21438dcdab36b0e49457b84a79f504fa1e60a650e95e8d61d9428e32619efe0378347cf2f0e00896bdf208c57SЉa p9|E蜉W\fD<=&/Ԉ$8D5°ڰuaqh1n@AّRqD . (Ԫіgq q%flhY@;*?'䙤RK?@gŊ7A5%C"DO6J&g,.u6벤&mr;,KXi3H(%WK%_'i'䩋Y~]?a":ڗKkAoqWL>pA?d ' K .; Qo      4DXl  L x|(8 9 : F3GHHXIhXlYx\]^bcd2e7f:l<uPv`wx yz<LPVCcyrus-sasl-scram2.1.27150300.4.3.1Plugin for the SCRAM SASL mechanismThis is the Cyrus SASL API implementation. It can be used on the client or server side to provide authentication. See RFC 5802 for more information.as390zp36xSUSE Linux Enterprise 15SUSE LLC BSD-4-Clausehttps://www.suse.com/Productivity/Networking/Otherhttp://asg.web.cmu.edu/sasl/linuxs390xxAaa~a~a320c95a1ff3031d90a28d1c907aa5093c85bd5a5c4ace3e9e0599f7127e54505libscram.so.3.0.0libscram.so.3.0.0rootrootrootrootrootrootrootrootcyrus-sasl-2.1.27-150300.4.3.1.src.rpmcyrus-sasl-scramcyrus-sasl-scram(s390-64)libscram.so.3()(64bit)@@@@@@@    cyrus-sasllibc.so.6()(64bit)libc.so.6(GLIBC_2.2)(64bit)libc.so.6(GLIBC_2.3)(64bit)libc.so.6(GLIBC_2.3.4)(64bit)libc.so.6(GLIBC_2.4)(64bit)libcrypto.so.1.1()(64bit)libcrypto.so.1.1(OPENSSL_1_1_0)(64bit)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)2.1.273.0.4-14.6.0-14.0-15.2-1cyrus-sasl-bdb-scram4.14.3a@_I@_j^;]߶\X)@Y@@Xg@XVhT@Tw@varkoly@suse.comvarkoly@suse.comvarkoly@suse.comscabrero@suse.demichael@stroeder.comvarkoly@suse.comvcizek@suse.commichael@stroeder.comvarkoly@suse.combwiedemann@suse.comvarkoly@suse.comjengelh@inai.de- postfix: sasl authentication with password fails (bsc#1194265) Add config parameter --with-dblib=gdbm - Avoid converting of /etc/sasldb2 by every update. Convert /etc/sasldb2 only if it is a Berkeley DB- CVE-2020-8032: cyrus-sasl: Local privilege escalation to root due to insecure tmp file usage. (bsc#1180669) Use /var/adm/update-scripts/ instead of /tmp. Clean up temporary files.- Remove Berkeley DB dependency (JIRA#SLE-12190) The packages cyrus-sasl and cyrus-sasl-saslauthd are built without Berkely DB support. gdbm will be used instead of BDB. The packages cyrus-sasl-bdb and cyrus-sasl-saslauthd-bdb are built with Berkely DB support. - Update to 2.1.27 * Added support for OpenSSL 1.1 * Added support for lmdb * Lots of build fixes * Treat SCRAM and DIGEST-MD5 as more secure than PLAIN when selecting client mech * DIGEST-MD5 plugin: Fixed memory leaks Fixed a segfault when looking for non-existent reauth cache Prevent client from going from step 3 back to step 2 Allow cmusaslsecretDIGEST-MD5 property to be disabled * GSSAPI plugin: Added support for retrieving negotiated SSF Fixed GSS-SPNEGO to use flags negotiated by GSSAPI for SSF Properly compute maxbufsize AFTER security layers have been set * SCRAM plugin: Added support for SCRAM-SHA-256 * LOGIN plugin: Don’t prompt client for password until requested by server * NTLM plugin: Fixed crash due to uninitialized HMAC context - Replace references to /var/adm/fillup-templates with new %_fillupdir macro (boo#1069468) - bsc#983938 `After=syslog.target` left-overs in several unit files - added patches: fix_libpq-fe_include.diff for fixing including libpq-fe.h - removed patches obsoleted by upstream changes: * shared_link_on_ppc.patch * cyrus-sasl-2.1.27-openssl-1.1.0.patch * 0002-Drop-unused-parameter-from-gssapi_spnego_ssf.patch * 0003-Check-return-error-from-gss_wrap_size_limit.patch * 0004-Add-support-for-retrieving-the-mech_ssf.patch * 0001-Fix-GSS-SPNEGO-mechanism-s-incompatible-behavior.patch * cyrus-sasl-fix-logging-in-gssapi.patch- Added support for retrieving negotiated SSF in gssapi plugin (bsc#1162518) * Add 0002-Drop-unused-parameter-from-gssapi_spnego_ssf.patch * Add 0003-Check-return-error-from-gss_wrap_size_limit.patch * Add 0004-Add-support-for-retrieving-the-mech_ssf.patch - Fixed GSS-SPNEGO to use flags negotiated by GSSAPI for SSF (bsc#1162518) * Add 0001-Fix-GSS-SPNEGO-mechanism-s-incompatible-behavior.patch- added backport-patch cyrus-sasl-bug587.patch which fixes off-by-one error in _sasl_add_string function (see CVE-2019-19906 bsc#1159635)- bnc#1044840 syslog is polluted with messages "GSSAPI client step 1" By server context the connection will be sent to the log function. Client content does not have log level information. I.e. there is no way to stop DEBUG level logs nece I've removed it. * add cyrus-sasl-fix-logging-in-gssapi.patch- OpenSSL 1.1 support (bsc#1055463) * add cyrus-sasl-2.1.27-openssl-1.1.0.patch from Fedora- added cyrus-sasl-issue-402.patch to fix SASL GSSAPI mechanism acceptor wrongly returns zero maxbufsize #402 (see https://github.com/cyrusimap/cyrus-sasl/issues/402)- bnc#1026825 saslauthd: :set_auth_mech : unknown authentication mechanism: kerberos5- really use SASLAUTHD_PARAMS variable (bnc#938657)- bnc#908883 cyrus-sasl-scram refers to wrong RFC- Make sure /usr/sbin/rcsaslauthd existss390zp36 16424674602.1.27-150300.4.3.12.1.27-150300.4.3.1sasl2libscram.solibscram.so.3libscram.so.3.0.0/usr/lib64//usr/lib64/sasl2/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.suse.de/SUSE:Maintenance:22434/SUSE_SLE-15-SP3_Update/78da2bc9d2953e74fff21a0893608866-cyrus-sasl.SUSE_SLE-15-SP3_Updatecpioxz5s390x-suse-linuxdirectoryELF 64-bit MSB shared object, IBM S/390, version 1 (SYSV), dynamically linked, BuildID[sha1]=424e2d8975b02b361064d169e90221eb959618fb, strippedPRRRRRRR#Yղ**g utf-88c7084334dd1f622f1a752766e713ee61d834be8d87470cfad049fccaf7ee9f7?7zXZ !t/K8] crt:bLL Z@{fG AV AF"ſ/|8pM˯ń窬\Eẍ ʽO2?[7OֻS:֦\EI݄z'Z=-9T6j=ڿIt\8dkcb22Q)UXё 0"y%~ , x X\Ury\@i—_X5vnϙAz$ɛ'WL&nz8ML 4%rJm`H>T«L6Var:x`\9*?KܒD@sl}<3oZQl#eyo6} H \:9 saD#|cC7^&%TH*a=qV^/+'u0C T;a/'SQ*1!.dM~_}BiqiLm` ?ze]1&l&;vLh$Y?!E_.}]|pPqÿ 0+IM/ZXAһ1swMO؇%EJsG*E'~j0ȓ\fkeϘ,К.0i;9%.|" N-r9TE Q<PS.u`[ڍG{JA|tzCN2T'J }ٔO!?ݯk̿hH'2LiI0d ZR˨LIĦ-a g[ 5| >HeWvxՃF:m֐]t'=қ\8,+wga v}- Û͍ g~=Jj;$hUJ+ ۂfNAQOy}dn9>ijqHctEiM#؅.S/n:2%_O\؀naZ}$Ӛ#NxC'Rק&%M5V'k ʅyy&OBB4|#-(Vq //QZct唯kIsMzɷTܑUkĶTq(0~WTCNIh@?<=0_>$+:B`J"3*֧U_y͂ZBOr铙b|B~-RN;?E8UW&"!I^d*;z uULu)-ūYdN%(9bfZ`N_CZCN% ]zԑ,.a:P42؇72je70L986"B$7T7hp95E&F*|m 3`^r$ -VKMR*K5r_\fe!8W 9bNs+:4^gCh]~D2þG_tFMS,ʱi̬uŎ\A*kHJվLϒjSʅ )y&fJLZ'1b"a0aE"5HWX] !B{+w68IPa%)ԫj)hlSt*bw/W%3{1~"OPf)blFh["4S$V8;ߋ` Y Vge3T߮TQ[EVt!ZҥL]]{VmtpQ#IqZz:S`6U~P$qzbˤ!"@4eJ_7w0DwmZMٴkDhAP/w [c[ij lA;i,}t<r0> lI2-F2{TM0:&E6~95b^;T d3ɖOUS_|<)rƿf;<'N"OӼ>UvתnSf%X${y7׭͆Oizf/mӄQxfPg)^U>"Ж_A&k= 6и|ǔKb~ǧѷi!8cE|{ͳ}p k. |{KE`lxt-4 n*i{H~} ֭E#^y6bBo@rfiBm#@:LgLf3(6]O읖?Z:?/Zcn/Pw;'=9t"V[9 il!;!XPB2wݾUu2K`Lx0X>ғP_W>f~EJW30R-8~\@?T7QW&'7<ޅwdEbS-H`֙VkK Yw9&L2|q-`zϖt|Ўx%u_tHdw;% d[ r!qv(uM7)UP}Nz xȜtK[wL2@#WɃExvw\!Y}ɽ22er]&p"!Z5 olIKOU(iq-@yŀ?T%3s'[&z.kTRAkDPIiַ֬ L@ݵ56;,%Vҍ#uUuemMv0wmDaK-t!z:Nu!oa;.]ڳ5]l8O l8p8KPvL FW8s)\^>2/Bu]m9hF[ٳ'ቜDf=x DU ,"2T~4TyV0L}$k{6&Rs>K*5*a'dZ$ y7tx:`W*ݖ4Ŧz,6԰"t?hS]M&\!{spd &펍9n;c[c MO}OW bqaA+ԏ:r3^JGL>A"'f<%ܱF#ԾM'Mea 0~ [`Hæ[Kd}0SYɜ}oG/8EDS:Yt9IsT|@z("<+&hdNⳞ?+>/oYujbQIj"OQMLǛۃ)hԌ0wAqtBw>8CzC n&Þ>G`yka]kmlԟ77bhO{Sf3YD* \WS;2vbqxDog5ڛ[68V^ 8xXx]'qK 'LĞbTel6^._8<>7ṯ$RT!u 6&Z%n`;ߞ I>?N`zc',R|ڔ1-D#bbA1| ,R6E(0v3 kzG=ʧ,".,%|i :x )ŴSҀK4(JBM]%Qa$ubDZtǑL_i" irq{[l.]C }v D0*]>qg~6)"7|p.Jᒒd+|Sl䑎 Ek , s.7Z_#hmWDWr]8MTd#-V7YQ dX~aPsfkw-/S\MDt 9!?IO?Ec9:&l#H4F!'Mp-,xq#eWaa_yn{!]n.bJ8 $pFBv)x%{~ި7e2_Ga6@ް4jQg# 3:£iEl[#&qZF L\eɯvjLH:,@͵ܘS16H?M''Y)8C&PX2XHw,*-oC禴Q.v ͜X/ceП*XNh)agB^0(gzCWnYH&I}_u'ĠE ATU-fLy۳ t)+=I@)e@-2$j1;<- ot&2O}X׎3".%3t27灶8(SRe)8?}=~&ʅ9/8 y`giꨍ*:򝛆T u;'R̝Ɖ0W(O:݇o#jkn>a1/!nŃeR;XwlL\-;ἵ,n֜M! e8(@WM/FCeęc Bo}i})Qw_4dSv} ?Nj[B{УE 6|=%Kޡ)63*H&\_p_ZZ988cTMXk`y}0ɧ8fjx(8E?ECp̸־CR<|&X-v=UȌIJrl%.W<0U_ȲY51!@a9 ve`4ItwKS;:%ӷ[ Pi [݋S`p]&s^ޝOww[Be<˩pb! cfEn~tWB!iJ<]Y0=~x>j ֚ VF:Lu/gWtǺ׋gMlwERpCj}ͻ 6}'YNKR3IQJ]F(]XgR@岽L-[t@u 9 /7"c+y 8j18Dc{1=<4C6a).-,hqzœ䟆$ےhP0]%xD^>Ž~4th.Y[@VgƼ5ԷlφU\`Pa ;E0z!Gݲ]%+ wE@MoKn%;SሎU9i;L,yBp{[/0VɿՎ'f9{K+y-S ,l&zcusW&PpM}c%9C|ditg>~ؚ+K/!9 / ME{SfW'xZ0/PZJ{xW ,=#6b7~iVi`|kY;Cv\CX^X+BYB>֔؋µOkjc5uĻ*n3Oݔ  #lavo].novO qO} ȯW_;T_ 3W=yC(U14$lG%#.7j̓wLplh\Dhlb%p)B[ kzx7D[? LE-L7^Rbc̲w< )>k5!Iśiތ'9<ʁhJ Kr7B.*Y5:cngBfRF M [hm7%5Hy|\H.I^K,%W3qصW{~z, Q- u6&/˛n)ɶ}ecцCl2 kXE: /uKP',sz}|ZJXN,c߮|@6BiaHԡÑdC U_Wٱ/GeC9ˉG doFJ(Z@ʇ]kp:}vʣorЛX-ƈKYWl6;;*P?/ˣx5б,HU^ =) <):{ihԯاAk\hD[s;#6}d#8K:x%pʰc DhES>meAi\_J^Λ4O03BMZUl0x$ʷbzv:y"зr)mIKSl7Nԛ=wON!!|ьo/FY?qC nNi#5kiv15\\D)g=9(KJsM *Y8!HՎ"4kP3b`0.<œnm <3DNP;vb kLJR;m@}\i?mrS ?AbU amwۯOSB'|""p:BZ;WdH8삟C\oTjBT I-|33vk` 5 a@|l0w%ɒhj;:M`+Ng>}*_Zp;ԋhKBGh(>8WI:ES#T ,jtlޢ𺔺 ;wcK SL_KH\,ޕk 9rVH]*+cu]@hX'3w }??ϊN~b~pOxƅ^%</{~I+L5,l芌G~,#HL)@R4ʑfŭUUM̘t?yQ40#fuKcb3F8V8-1X̜SS?C6Lš/fUkhnT͎cE瑤Sjٚ`6oHhϡ)оH,y3<l!iO4W) (Ȥq!]t(7DJVLtHOY?kiÏ^f@N?rolh?nxhUپ"9;/eе(rB^oTdM_č&iQ+8l|=0g{r/0 `3?4L]4oSjZ/ω7H ߂7ccwFBѺ1a`RڍyTn>^R<@~Zy{/c+h"5DMHPF]v6j`bQ塴tc ز a(\OUpP\c߻?x?$"V1Ǝ XIm岯"9|DcA?mB-N!ckŌkw"J1:ڴ*L)fCo5м4[W9FMGUEd=+PT4ߕ:y *ڔyvͼ\=_S8sqp .{KJG[UwP]ؔE\Qv>`߮lPbB D ?JOc3f Ѹ!]K=V@+7ˆy4Hlc1OxUGݽћB󰑌Mⅅz>Qm 93Wo:4L*ڊ/>Z>NOq]Bh G?\YF+;\'e # %&L[2xk@/P}ތ\Q/ϡM32] GNQTE>Uy{@~􆳟iqB' s%0MxDE3n(P Sֲx,`Np HstZR P| fXy送FP/:zgiPGT*A(3Cfb@9xy,:(ߨmąP̹%F9.R}X!hߗHPk:+ܐ/DO=&3!&01lJ|IH*Y sٟ#^\kYC7F5H,8.āVrȉ<0ކ?O|\k+d=1|)bi^]ظ;AZũde^بj<Q/cDćglŔ [%밫0}S4ziQBXn,ʴ#(`o% 88GY z- Kt0u$B8'֒yԱQu/2$aYa-YXl17EMGC_rF۱7 hKC3Ɩs/}ZMuxa:aA%R?W9DCB?$^Zh>XW}86%uēKEQ> {k?~aWB%䕨 l= xx9t\3HOO׻+Rv585ǽ|$ `8 P d@ L;򁻈Pna$Y0YoZBXmaUoÏ;ZTD{}a@L3,%=LBq|[eYjK).}-!7p (c ^.TԲLkj'y9iBrMOX=ߘ |W?<:Oi9}+YKS=,<4,iR)51aP}Q,։~`Vʤjk Ss[&Vr8Bp`Ыo𸚊e_Ӓۈ~l;HYaxd~,,4-"%|ɔOu诼٩Իw:.%viܠAZ7P6V(yDZ8RL sӍC$^ J]ʑdu6յ`R( ^B`}zwa3#*JY]J;i[e^}ّȱ[^/ˌ"%M q5NM5Uۼ)uꚓ;0 O˦'|X؁@p)P\f SQM izvh /+ƶqin;Iu J(TlaߕƂgש4+͹ q0