[El-errata] ELSA-2020-0575 Important: Oracle Linux 8 systemd security and bug fix update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Tue Feb 25 08:12:51 PST 2020


Oracle Linux Security Advisory ELSA-2020-0575

http://linux.oracle.com/errata/ELSA-2020-0575.html

The following updated rpms for Oracle Linux 8 have been uploaded to the 
Unbreakable Linux Network:

x86_64:
systemd-239-18.0.2.el8_1.4.i686.rpm
systemd-239-18.0.2.el8_1.4.x86_64.rpm
systemd-container-239-18.0.2.el8_1.4.i686.rpm
systemd-container-239-18.0.2.el8_1.4.x86_64.rpm
systemd-devel-239-18.0.2.el8_1.4.i686.rpm
systemd-devel-239-18.0.2.el8_1.4.x86_64.rpm
systemd-journal-remote-239-18.0.2.el8_1.4.x86_64.rpm
systemd-libs-239-18.0.2.el8_1.4.i686.rpm
systemd-libs-239-18.0.2.el8_1.4.x86_64.rpm
systemd-pam-239-18.0.2.el8_1.4.x86_64.rpm
systemd-tests-239-18.0.2.el8_1.4.x86_64.rpm
systemd-udev-239-18.0.2.el8_1.4.x86_64.rpm

aarch64:
systemd-239-18.0.2.el8_1.4.aarch64.rpm
systemd-container-239-18.0.2.el8_1.4.aarch64.rpm
systemd-devel-239-18.0.2.el8_1.4.aarch64.rpm
systemd-journal-remote-239-18.0.2.el8_1.4.aarch64.rpm
systemd-libs-239-18.0.2.el8_1.4.aarch64.rpm
systemd-pam-239-18.0.2.el8_1.4.aarch64.rpm
systemd-tests-239-18.0.2.el8_1.4.aarch64.rpm
systemd-udev-239-18.0.2.el8_1.4.aarch64.rpm


SRPMS:
http://oss.oracle.com/ol8/SRPMS-updates/systemd-239-18.0.2.el8_1.4.src.rpm



Description of changes:

[239-18.0.2.el8_1.4]
- fix to generate systemd-pstore.service file [Orabug: 30230056]
- fix _netdev is missing for iscsi entry in /etc/fstab 
(tony.l.lam at oracle.com) [Orabug: 25897792]
- set "RemoveIPC=no" in logind.conf as default for OL7.2 [Orabug: 22224874]
- allow dm remove ioctl to co-operate with UEK3 (Vaughan Cao) [Orabug: 
18467469]
- add hv dynamic memory support (Jerry Snitselaar) [Orabug: 18621475]
- Backport upstream patches for the new systemd-pstore tool (Eric 
DeVolder) [OraBug: 30230056]

[239-18.4]
- sd-bus: use "queue" message references for managing r/w message queues 
in connection objects (CVE-2020-1712)

[239-18.3]
- core, job: fix breakage of ordering dependencies by systemctl reload 
command (#1781712)
- syslog: fix segfault in syslog_parse_priority() (#1781712)
- journald: fixed assertion failure when system journal rotation fails 
(#9893) (#1781712)
- test: use PBKDF2 instead of Argon2 in cryptsetup... (#1781712)
- test: mask several unnecessary services (#1781712)
- test: bump the second partition's size to 50M (#1781712)
- sd-bus: make rqueue/wqueue sizes of type size_t (#20201712)
- sd-bus: reorder bus ref and bus message ref handling (#20201712)
- sd-bus: make sure dispatch_rqueue() initializes return parameter on 
all types of success (#20201712)
- sd-bus: drop two inappropriate empty lines (#20201712)
- sd-bus: initialize mutex after we allocated the wqueue (#20201712)
- sd-bus: always go through sd_bus_unref() to free messages (#20201712)
- bus-message: introduce two kinds of references to bus messages (#20201712)
- sd-bus: introduce API for re-enqueuing incoming messages (#20201712)
- sd-event: add sd_event_source_disable_unref() helper (#20201712)
- polkit: when authorizing via PK let's re-resolve callback/userdata 
instead of caching it (#20201712)

[239-18.2]
- ask-password: prevent buffer overrow when reading from keyring (#1777037)

[239-18.1]
- journal: rely on _cleanup_free_ to free a temporary string used in 
client_context_read_cgroup (#1767716)

[239-18]
- shared/but-util: drop trusted annotation from 
bus_open_system_watch_bind_with_description() (#1746857)
- sd-bus: adjust indentation of comments (#1746857)
- resolved: do not run loop twice (#1746857)
- resolved: allow access to Set*Link and Revert methods through polkit 
(#1746857)
- resolved: query polkit only after parsing the data (#1746857)

[239-17]
- mount: simplify /proc/self/mountinfo handler (#1696178)
- mount: rescan /proc/self/mountinfo before processing waitid() results 
(#1696178)
- swap: scan /proc/swaps before processing waitid() results (#1696178)
- analyze-security: fix potential division by zero (#1734400)

[239-16]
- sd-bus: deal with cookie overruns (#1694999)
- journal-remote: do not request Content-Length if Transfer-Encoding is 
chunked (#1708849)
- journal: do not remove multiple spaces after identifier in syslog 
message (#1691817)
- cryptsetup: Do not fallback to PLAIN mapping if LUKS data device set 
fails. (#1719153)
- cryptsetup: call crypt_load() for LUKS only once (#1719153)
- cryptsetup: Add LUKS2 token support. (#1719153)
- udev/scsi_id: fix incorrect page length when get device identification 
VPD page (#1713227)
- Change job mode of manager triggered restarts to JOB_REPLACE (#11456
- bash-completion: analyze: support 'security' (#1733395)
- man: note that journal does not validate syslog fields (#1707175)
- rules: skip memory hotplug on ppc64 (#1713159)

[239-15]
- tree-wide: shorten error logging a bit (#1697893)
- nspawn: simplify machine terminate bus call (#1697893)
- nspawn: merge two variable declaration lines (#1697893)
- nspawn: rework how we allocate/kill scopes (#1697893)
- unit: enqueue cgroup empty check event if the last ref on a unit is 
dropped (#1697893)
- Revert "journal: remove journal audit socket" (#1699287)
- journal: don't enable systemd-journald-audit.socket by default (#1699287)
- logs-show: use grey color for de-emphasizing journal log output (#1695601)
- units: add [Install] section to tmp.mount (#1667065)
- nss: do not modify errno when NSS_STATUS_NOTFOUND or 
NSS_STATUS_SUCCESS (#1691691)
- util.h: add new UNPROTECT_ERRNO macro (#1691691)
- nss: unportect errno before writing to NSS' *errnop (#1691691)
- seccomp: reduce logging about failure to add syscall to seccomp (#1658691)
- format-table: when duplicating a cell, also copy the color (#1689832)
- format-table: optionally make specific cells clickable links (#1689832)
- format-table: before outputting a color, check if colors are available 
(#1689832)
- format-table: add option to store/format percent and uint64_t values 
in cells (#1689832)
- format-table: optionally allow reversing the sort order for a column 
(#1689832)
- format-table: add table_update() to update existing entries (#1689832)
- format-table: add an API for getting the cell at a specific row/column 
(#1689832)
- format-table: always underline header line (#1689832)
- format-table: add calls to query the data in a specific cell (#1689832)
- format-table: make sure we never call memcmp() with NULL parameters 
(#1689832)
- format-table: use right field for display (#1689832)
- format-table: add option to uppercase cells on display (#1689832)
- format-table: never try to reuse cells that have color/url/uppercase 
set (#1689832)
- locale-util: add logic to output smiley emojis at various happiness 
levels (#1689832)
- analyze: add new security verb (#1689832)
- tests: add a rudimentary fuzzer for server_process_syslog_message 
(#9979) (#1696224)
- journald: make it clear that dev_kmsg_record modifies the string 
passed to it (#1696224)
- journald: free the allocated memory before returning from 
dev_kmsg_record (#1696224)
- tests: rework the code fuzzing journald (#1696224)
- journald: make server_process_native_message compatible with 
fuzz_journald_processing_function (#1696224)
- tests: add a fuzzer for server_process_native_message (#1696224)
- tests: add a fuzzer for sd-ndisc (#1696224)
- ndisc: fix two infinite loops (#1696224)
- tests: add reproducers for several issues uncovered with 
fuzz-journald-syslog (#1696224)
- tests: add a reproducer for an infinite loop in ndisc_handle_datagram 
(#1696224)
- tests: add a reproducer for another infinite loop in 
ndisc_handle_datagram (#1696224)
- fuzz: rename "fuzz-corpus" directory to just "fuzz" (#1696224)
- test: add testcase for issue 10007 by oss-fuzz (#1696224)
- fuzz: unify the "fuzz-regressions" directory with the main corpus 
(#1696224)
- test-bus-marshal: use cescaping instead of hexmem (#1696224)
- meson: add -Dlog-trace to set LOG_TRACE (#1696224)
- meson: allow building resolved and machined without nss modules (#1696224)
- meson: drop duplicated condition (#1696224)
- meson: use .source_root() in more places (#1696224)
- meson: treat all fuzz cases as unit tests (#1696224)
- fuzz-bus-message: add fuzzer for message parsing (#1696224)
- bus-message: use structured initialization to avoid use of unitialized 
memory (#1696224)
- bus-message: avoid an infinite loop on empty structures (#1696224)
- bus-message: let's always use -EBADMSG when the message is bad (#1696224)
- bus-message: rename function for clarity (#1696224)
- bus-message: use define (#1696224)
- bus: do not print (null) if the message has unknown type (#1696224)
- bus-message: fix calculation of offsets table (#1696224)
- bus-message: remove duplicate assignment (#1696224)
- bus-message: fix calculation of offsets table for arrays (#1696224)
- bus-message: drop asserts in functions which are wrappers for varargs 
version (#1696224)
- bus-message: output debug information about offset troubles (#1696224)
- bus-message: fix skipping of array fields in !gvariant messages (#1696224)
- bus-message: also properly copy struct signature when skipping (#1696224)
- fuzz-bus-message: add two test cases that pass now (#1696224)
- bus-message: return -EBADMSG not -EINVAL on invalid !gvariant messages 
(#1696224)
- bus-message: avoid wrap-around when using length read from message 
(#1696224)
- util: do not use stack frame for parsing arbitrary inputs (#1696224)
- travis: enable ASan and UBSan on RHEL8 (#1683319)
- tests: keep SYS_PTRACE when running under ASan (#1683319)
- tree-wide: various ubsan zero size memory fixes (#1683319)
- util: introduce memcmp_safe() (#1683319)
- test-socket-util: avoid "memleak" reported by valgrind (#1683319)
- sd-journal: escape binary data in match_make_string() (#1683319)
- capability: introduce CAP_TO_MASK_CORRECTED() macro replacing 
CAP_TO_MASK() (#1683319)
- sd-bus: use size_t when dealing with memory offsets (#1683319)
- sd-bus: call cap_last_cap() only once in has_cap() (#1683319)
- mount-point: honour AT_SYMLINK_FOLLOW correctly (#1683319)
- travis: switch from trusty to xenial (#1683319)
- test-socket-util: Add tests for receive_fd_iov() and friends. (#1683319)
- socket-util: Introduce send_one_fd_iov() and receive_one_fd_iov() 
(#1683319)
- core: swap order of "n_storage_fds" and "n_socket_fds" parameters 
(#1683334)
- execute: use our usual syntax for defining bit masks (#1683334)
- core: introduce new Type=exec service type (#1683334)
- man: document the new Type=exec type (#1683334)
- sd-bus: allow connecting to the pseudo-container ".host" (#1683334)
- sd-login: let's also make sd-login understand ".host" (#1683334)
- test: add test for Type=exec (#1683334)
- journal-gateway: explicitly declare local variables (#1705971)
- tools: drop unused variable (#1705971)
- journal-gateway: use localStorage["cursor"] only when it has valid 
value (#1705971)

[239-14]
- rules: implement new memory hotplug policy (#1670728)
- rules: add the rule that adds elevator= kernel command line parameter 
(#1670126)
- bus-socket: Fix line_begins() to accept word matching full string 
(#1692991)
- Refuse dbus message paths longer than BUS_PATH_SIZE_MAX limit. (#1678641)
- Allocate temporary strings to hold dbus paths on the heap (#1678641)
- sd-bus: if we receive an invalid dbus message, ignore and proceeed 
(#1678641)
- Revert "core: one step back again, for nspawn we actually can't wait 
for cgroups running empty since systemd will get exactly zero 
notifications about it" (#1703485)

[239-13]
- rules: add the rule that adds elevator= kernel command line parameter 
(#1670126)

[239-12]
- core: when deserializing state always use read_line(…, LONG_LINE_MAX, 
…) (CVE-2018-15686)
- coredump: remove duplicate MESSAGE= prefix from message (#1664976)
- journald: remove unnecessary {} (#1664976)
- journald: do not store the iovec entry for process commandline on 
stack (#1664976)
- basic/process-util: limit command line lengths to _SC_ARG_MAX (#1664976)
- coredump: fix message when we fail to save a journald coredump (#1664976)
- procfs-util: expose functionality to query total memory (#1664976)
- basic/prioq: add prioq_peek_item() (#1664976)
- journal: limit the number of entries in the cache based on available 
memory (#1664976)
- journald: periodically drop cache for all dead PIDs (#1664976)
- process-util: don't use overly large buffer to store process command 
line (#1664976)
- Revert "sysctl.d: switch net.ipv4.conf.all.rp_filter from 1 to 2" 
(#1653824)
- journal: fix syslog_parse_identifier() (#1664978)
- journald: set a limit on the number of fields (1k) (#1664977)
- journald: when processing a native message, bail more quickly on 
overbig messages (#1664977)
- journald: lower the maximum entry size limit to ½ for non-sealed fds 
(#1664977)
- µhttpd: use a cleanup function to call MHD_destroy_response (#1664977)
- journal-remote: verify entry length from header (#1664977)
- journal-remote: set a limit on the number of fields in a message 
(#1664977)
- journald: correctly attribute log messages also with cgroupsv1 (#1658115)
- rules: add elevator= kernel command line parameter (#1670126)

[239-11]
- unit: don't add Requires for tmp.mount (#1619292)
- remove bootchart dependency (#1660119)

[239-10]
- cryptsetup-generator: introduce basic keydev support (#1656869)
- cryptsetup: don't use %m if there's no error to show (#1656869)
- cryptsetup-generator: don't return error if target directory already 
exists (#1656869)
- cryptsetup-generator: allow whitespace characters in keydev 
specification (#1656869)
- rules: watch metadata changes on DASD devices (#1638676)
- sysctl.d: switch net.ipv4.conf.all.rp_filter from 1 to 2 (#1653824)

[239-9]
- dissect-image: use right comparison function (#1602706)
- login: avoid leak of name returned by uid_to_name() (#1602706)
- firewall-util: add an assert that we're not overwriting a buffer 
(#1602706)
- journal-file: avoid calling ftruncate with invalid fd (#1602706)
- dhcp6: make sure we have enough space for the DHCP6 option header 
(#1643363)
- core: rename queued_message → pending_reload_message (#1647359)
- core: when we can't send the pending reload message, say we ignore it 
in the warning we log (#1647359)
- core: make sure we don't throttle change signal generator when a 
reload is pending (#1647359)
- proc-cmdline: introduce PROC_CMDLINE_RD_STRICT (#1643429)
- debug-generator: introduce rd.* version of all options (#1643429)
- chown-recursive: let's rework the recursive logic to use O_PATH (#1643368)
- chown-recursive: also drop ACLs when recursively chown()ing (#1643368)
- chown-recursive: TAKE_FD() is your friend (#1643368)
- test: add test case for recursive chown()ing (#1643368)
- Revert "sysctl.d: request ECN on both in and outgoing connections" 
(#1619790)
- detect-virt: do not try to read all of /proc/cpuinfo (#1631532)
- sd-bus: unify three code-paths which free struct bus_container (#1635435)
- sd-bus: properly initialize containers (#1635435)

[239-8]
- revert sd-bus: unify three code-paths which free struct bus_container 
(#1635435)

[239-7]
- change default cgroup hierarchy to "legacy" (#1638650)
- we never added mymachines module to passwd: or group: in RHEL8, hence 
don't try to remove it (#1638450)
- bump minimal size of random pool to 1024 bytes (#1619268)
- install RHEL-7 compatible rc.local (#1625209)
- backport support for sector-size crypttab option (#1572563)
- units: don't enable per-service IP firewall by default (#1630219)
- sd-bus: unify three code-paths which free struct bus_container (#1635435)
- bus-message: do not crash on message with a string of zero length 
(#1635439)
- bus-message: stack based buffer overflow in free_and_strdup (#1635428)
- journal: change support URL shown in the catalog entries (#1550548)

[239-6]
- move /etc/yum/protected.d/systemd.conf to /etc/dnf/ (#1626973)

[239-5]
- Fix file conflict between yum and systemd (#1626682)

[239-4]
- drop the patch for delayed loading of config in net_setup_link and set 
NAME in prefixdevname udev rules (#1614681)
- bus: move BUS_DONT_DESTROY calls after asserts (#1610397)

[239-3]
- net_setup_link: delay loading configuration, just before we apply it 
(#1614681)

[239-2]
- 20-grubby.install: populate symvers.gz file (#1609698)
- net_setup_link: allow renaming interfaces that were renamed already
- units: drop DynamicUser=yes from systemd-resolved.service
- journal: remove journal audit socket

[239-1]
- rebase to systemd-239
- Override systemd-user PAM config in install and not prep (patch by 
Filipe Brandenburger <filbranden at google.com>)
- use %autosetup -S git_am to apply patches
- revert upstream default for RemoveIPC (#1523233)
- bump DefaultTasksMax to 80% of kernel default (#1523236)
- avoid /tmp being mounted as tmpfs without the user's will (#1578772)
- bump maximum number of processes in user slice to 80% of pid.max 
(#1523236)
- forwardport downstream-only udev rules from RHEL-7 (#1523227)
- don't ship systemd-networkd
- don't ship systemd-timesyncd
- add back support for WAIT_FOR to udev rules (#1523213)

[238-8]
- do not mount /tmp as tmpfs (#1578772)

[238-7]
- fix compilation (#1578318)

[238-6]
- forwardport downstream-only udev rules from RHEL-7 (#1523227)
- set RemoveIPC=no by default (#1523233)

[238-5]
- also drop qrencode-devel from BuildRequires as it is no longer needed 
(#1566158)

[238-4]
- disable support for qrencode (#1566158)
- bump default journal rate limit to 10000 messages per 30s (#1563729)
- fix unit reloads (#1560549)
- don't create /var/log/journal during package installation (#1523188)

[238-3.1]
- Rebuild with cryptsetup-2

[238-3]
- Revert the patches for GRUB BootLoaderSpec support
- Add patch for /etc/machine-id creation (#1552843)

[238-2]
- Fix transfiletrigger script (#1551793)

[238-1]
- Update to latest version
- This fixes a hard-to-trigger potential vulnerability (CVE-2018-6954)
- New transfiletriggers are installed for udev hwdb and rules, the journal
catalog, sysctl.d, binfmt.d, sysusers.d, tmpfiles.d.

[237-7.git84c8da5]
- Add patch to install kernel images for GRUB BootLoaderSpec support

[237-6.git84c8da5]
- Create /etc/systemd in %post libs if necessary (#1548607)

[237-5.git84c8da5]
- Use : not touch to create file in -libs %post

[237-4.git84c8da5]
- Add coreutils dep for systemd-libs %post
- Add patch to typecast USB IDs to avoid compile failure

[237-3.git84c8da5]
- Update some patches for test skipping that were updated upstream
before merging
- Add /usr/lib/systemd/purge-nobody-user — a script to check if nobody 
is defined
correctly and possibly replace existing mappings

[237-2.gitdff4849]
- Backport a bunch of patches, most notably for the journal and various
memory issues. Some minor build fixes.
- Switch to new ldconfig macros that do nothing in F28+
- /etc/systemd/dont-synthesize-nobody is created in %post if nfsnobody
or nobody users are defined (#1537262)

[237-1.git78bd769]
- Update to first stable snapshot (various minor memory leaks and 
misaccesses,
some documentation bugs, build fixes).

[237-1]
- Update to latest version

[236-4.git3e14c4c]
- Add patch to include <crypt.h> if needed

[236-3.git3e14c4c]
- Rebuilt for switch to libxcrypt

[236-2.git23e14c4]
- Backport a bunch of bugfixes from upstream (#1531502, #1531381, #1526621
various memory corruptions in systemd-networkd)
- /dev/kvm is marked as a static node which fixes permissions on s390x
and ppc64 (#1532382)

[236-1]
- Update to latest version

[235-5.git4a0e928]
- Update to latest git snapshot, do not build for realz
- Switch to libidn2 again (#1449145)

[235-4]
- Rebuild for cryptsetup-2.0.0-0.2.fc28

[235-3]
- Backport a bunch of patches, including LP#172535

[235-2]
- Patches for cryptsetup _netdev

[235-1]
- Update to latest version

[234-8]
- Backport /etc/crypttab _netdev feature from upstream

[234-7]
- Make sure to remove all device units sharing the same sysfs path 
(#1475570)

[234-6]
- Bump xslt recursion limit for libxslt-1.30

[234-5]
- Backport more patches (#1476005, hopefully #1462378)

* Thu Jul 27 2017 Fedora Release Engineering <releng at fedoraproject.org>
- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild

[234-3]
- Fix x-systemd.timeout=0 in /etc/fstab (#1462378)
- Minor patches (memleaks, --help fixes, seccomp on arm64)

[234-2]
- Create kvm group (#1431876)

[234-1]
- Latest release

[233-7.git74d8f1c]
- Update to snapshot
- Build with meson again

[233-6]
- Fix an out-of-bounds write in systemd-resolved (CVE-2017-9445)

[233-5.gitec36d05]
- Update to snapshot version, build with meson

[233-4]
- Backport a bunch of small fixes (memleaks, wrong format strings,
man page clarifications, shell completion)
- Fix systemd-resolved crash on crafted DNS packet (CVE-2017-9217, #1455493)
- Fix systemd-vconsole-setup.service error on systems with no VGA 
console (#1272686)
- Drop soft-static uid for systemd-journal-gateway
- Use ID from /etc/os-release as ntpvendor

[233-3]
- Backport bugfixes from upstream
- Don't return error when machinectl couldn't figure out container IP 
addresses (#1419501)

[233-2]
- Fix installation conflict with polkit

[233-1]
- New upstream release (#1416201, #1405439, #1420753, many others)
- New systemd-tests subpackage with "installed tests"

[232-15]
- Add %ghost %dir entries for .wants dirs of our targets (#1422894)

[232-14]
- Ignore the hwdb parser test

[232-14]
- machinectl fails when virtual machine is running (#1419501)

[232-13]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild

[232-12]
- Backport patch for initrd-switch-root.service getting killed (#1414904)
- Fix sd-journal-gatewayd -D, --trust, and COREDUMP_CONTAINER_CMDLINE
extraction by sd-coredump.

[232-11]
- Backport a number of patches (#1411299, #1413075, #1415745,
- Fix various memleaks and unitialized variable access
- Shell completion enhancements
- Enable TPM logging by default (#1411156)
- Update hwdb (#1270124)

[232-10]
- Backport fix for boot failure in initrd-switch-root (#1414904)

[232-9]
- Add fake dependency on systemd-pam to systemd-devel to ensure systemd-pam
is available as multilib (#1414153)

[232-8]
- Fix buildsystem to check for lz4 correctly (#1404406)

[232-7]
- Various small tweaks to scriplets

[232-6]
- Fix scriptlets to never fail in libs post

[232-5]
- Add patch from Michal Schmidt to avoid process substitution (#1392236)

[232-4]
- Rebuild (#1392236)

[232-3]
- Make /etc/dbus-1/system.d directory non-%ghost

[232-2]
- Fix kernel-install (#1391829)
- Restore previous systemd-user PAM config (#1391836)
- Move journal-upload.conf.5 from systemd main to journal-remote 
subpackage (#1391833)
- Fix permissions on /var/lib/systemd/journal-upload (#1262665)

[232-1]
- Update to latest version (#998615, #1181922, #1374371, #1390704, 
#1384150, #1287161)
- Add %{_isa} to Provides on arch-full packages (#1387912)
- Create systemd-coredump user in %pre (#1309574)
- Replace grubby patch with a short-circuiting install.d "plugin"
- Enable nss-systemd in the passwd, group lines in nsswith.conf
- Add [!UNAVAIL=return] fallback after nss-resolve in hosts line in 
nsswith.conf
- Move systemd-nspawn man pages to the right subpackage (#1391703)

[231-11]
- SPC - Cannot restart host operating from container (#1384523)

[231-10]
- Do not recreate /var/log/journal on upgrades (#1383066)
- Move nss-myhostname provides to systemd-libs (#1383271)

[231-9]
- Fix systemctl set-default (#1374371)
- Prevent systemd-udev-trigger.service from restarting (follow-up for 
#1378974)

[231-8]
- Apply fix for #1378974

[231-7]
- Apply patches properly

[231-6]
- Better fix for (#1380286)

[231-5]
- Denial-of-service bug against pid1 (#1380286)

[231-4]
- Fix preset-all (#1363858)
- Fix issue with daemon-reload messing up graphics (#1367766)
- A few other bugfixes

[231-3]
- Revert preset-all change, it broke stuff (#1363858)

[231-2]
- Call preset-all on initial installation (#1118740)
- Fix botched Recommends for libxkbcommon

[231-1]
- Update to latest version

[230-3]
- Update to latest git snapshot (fixes for systemctl set-default,
polkit lingering policy, reversal of the framebuffer rules,
unaligned access fixes, fix for StartupBlockIOWeight-over-dbus).
Those changes are interspersed with other changes and new features
(mostly in lldp, networkd, and nspawn). Some of those new features
might not work, but I think that existing functionality should not
be broken, so it seems worthwile to update to the snapshot.

[230-2]
- Remove systemd-compat-libs on upgrade

[230-1]
- New version
- Drop compat-libs
- Require libxkbcommon explictly, since the automatic dependency will
not be generated anymore

[229-15]
- Remove duplicated entries in -container %files (#1330395)

[229-14]
- Move installation of udev services to udev subpackage (#1329023)

[229-13]
- Split out systemd-pam subpackage (#1327402)

[229-12]
- move more binaries and services from the main package to subpackages

[229-11]
- move more binaries and services from the main package to subpackages

[229-10]
- move device dependant stuff to the udev subpackage

[229-9]
- Add myhostname to /etc/nsswitch.conf (#1318303)

[229-8]
- fixed kernel-install for copying files for grubby
Resolves: rhbz#1299019

[229-7]
- Moar patches (#1316964, #1317928)
- Move vconsole-setup and tmpfiles-setup-dev bits to systemd-udev
- Protect systemd-udev from deinstallation

[229-6]
- Create /etc/resolv.conf symlink from systemd-resolved (#1313085)

[229-5]
- Split out systemd-container subpackage (#1163412)
- Split out system-udev subpackage
- Add various bugfix patches, incl. a tentative fix for #1308771

[229-4]
- Power64 and s390(x) now have libseccomp support
- aarch64 has gnu-efi

[229-3]
- Fix build failures on ppc64 (#1310800)

[229-2]
- revert: fixed kernel-install for copying files for grubby
Resolves: rhbz#1299019
- this causes the dtb files to not get installed at all and the fdtdir
- line in extlinux.conf to not get updated correctly

[229-1]
- New upstream release

[228-10.gite35a787]
- fixed kernel-install for copying files for grubby
Resolves: rhbz#1299019

[228-9.gite35a787]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild

[228-8.gite35a787]
- Rebuild for binutils on aarch64 fix

[228-7.gite35a787]
- apply the conflict with fedora-release only in Fedora

[228-6.gite35a787]
- Fix rawhide build failures on ppc64 (#1286249)

[228-6.gite35a787]
- Create /etc/systemd/network (#1286397)

[228-5.gite35a787]
- Do not install nss modules by default

[228-4.gite35a787]
- Update to latest upstream git: there is a bunch of fixes
(nss-mymachines overflow bug, networkd fixes, more completions are
properly installed), mixed with some new resolved features.
- Rework file triggers so that they always run before daemons are restarted

[228-3]
- Enable rpm file triggers for daemon-reload

[228-2]
- Fix version number in obsoleted package name (#1283452)

[228-1]
- New upstream release

[227-7]
- Rename journal-gateway subpackage to journal-remote
- Ignore the access mode on /var/log/journal (#1048424)
- Do not assume fstab is present (#1281606)

[227-6]
- Rebuilt for https://fedoraproject.org/wiki/Changes/python3.5

[227-5]
- Rebuild for libmicrohttpd soname bump

[227-4]
- Rebuilt for Python3.5 rebuild

[227-3]
- Fix syntax in kernel-install (#1277264)

[227-2]
- Rebuild for libmicrohttpd soname bump.

[227-1]
- New upstream release

[226-3]
- user systemd-journal-upload should be in systemd-journal group (#1262743)

[226-2]
- Add selinux to system-user PAM config

[226-1]
- New upstream release

[225-1]
- New upstream release

[224-1]
- New upstream release

[223-2]
- update to git snapshot

[223-1]
- New upstream release

[222-2]
- Remove python subpackages (python-systemd in now standalone)

[222-1]
- New upstream release

[221-5.git619b80a]
- update to git snapshot

[221-4.git604f02a]
- Add example file with yama config (#1234951)

[221-3.git604f02a]
- update to git snapshot

[221-2]
- build systemd-boot EFI tools

[221-1]
- New upstream release
- Undoes botched translation check, should be reinstated later?

[220-10]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild

[220-9]
- The gold linker is now fixed on aarch64

[220-8]
- Remove gudev which is now provided as separate package (libgudev)
- Fix for spurious selinux denials (#1224211)
- Udev change events (#1225905)
- Patches for some potential crashes
- ProtectSystem=yes does not touch /home
- Man page fixes, hwdb updates, shell completion updates
- Restored persistent device symlinks for bcache, xen block devices
- Tag all DRM cards as master-of-seat

[220-7]
- fix udev block device watch

[220-6]
- add support for network disk encryption

[220-5]
- Disable gold on aarch64 until it's fixed (tracked in rhbz #1225156)

[220-4]
- systemd-devel should require systemd-libs, not the main package (#1226301)
- Check for botched translations (#1226566)
- Make /etc/udev/hwdb.d part of the rpm (#1226379)

[220-3]
- Add patch to fix udev --daemon not cleaning child processes
(upstream commit 86c3bece38bcf5).

[220-2]
- Add patch to fix udev --daemon crash (upstream commit 040e689654ef08).

[220-1]
- New upstream release
- Drop /etc/mtab hack, as that's apparently fixed in mock now (#1116158)
- Remove ghosting for %{_sysconfdir}/systemd/system/runlevel*.target, 
these targets are not configurable anymore in systemd upstream
- Drop work-around for #1002806, since this is solved upstream now

[219-15]
- fix up the conflicts version for fedora-release

[219-14]
- Remove presets (#1221340)
- Fix (potential) crash and memory leak in timedated, locking failure
in systemd-nspawn, crash in resolved.
- journalctl --list-boots should be faster
- zsh completions are improved
- various ommissions in docs are corrected (#1147651)
- VARIANT and VARIANT_ID fields in os-release are documented
- systemd-fsck-root.service is generated in the initramfs (#1201979, 
#1107818)
- systemd-tmpfiles should behave better on read-only file systems (#1207083)

[219-13]
- Patches for some outstanding annoyances
- Small keyboard hwdb updates

[219-12]
- Tighten requirements between subpackages (#1207381).

[219-11]
- Move all parts systemd-journal-{remote,upload} to
systemd-journal-gatewayd subpackage (#1193143).
- Create /var/lib/systemd/journal-upload directory (#1193145).
- Cut out lots of stupid messages at debug level which were obscuring more
important stuff.
- Apply "tentative" state for devices only when they are added, not removed.
- Ignore invalid swap pri= settings (#1204336)
- Fix SELinux check for timedated operations to enable/disable ntp 
(#1014315)
- Fix comparing of filesystem paths (#1184016)

[219-10]
- Fixes for bugs 1186018, 1195294, 1185604, 1196452.
- Hardware database update.
- Documentation fixes.
- A fix for journalctl performance regression.
- Fix detection of inability to open files in journalctl.
- Detect SuperH architecture properly.
- The first of duplicate lines in tmpfiles wins again.
- Do vconsole setup after loading vconsole driver, not fbcon.
- Fix problem where some units were restarted during systemd reexec.
- Fix race in udevadm settle tripping up NetworkManager.
- Downgrade various log messages.
- Fix issue where journal-remote would process some messages with a delay.
- GPT /srv partition autodiscovery is fixed.
- Reconfigure old Finnish keymaps in post (#1151958)

[219-9]
- Buttons on Lenovo X6* tablets broken (#1198939)

[219-8]
- Reworked device handling (#1195761)
- ACL handling fixes (with a script in %post)
- Various log messages downgraded (#1184712)
- Allow PIE on s390 again (#1197721)

[219-7]
- arm: reenable lto. gcc-5.0.0-0.16 fixed the crash (#1193212)

[219-6]
- Revert patch that breaks Atomic/OSTree (#1195761)

[219-5]
- Undo the resolv.conf workaround, Aim for a proper fix in Rawhide.

[219-4]
- Revive fedora-disable-resolv.conf-symlink.patch to unbreak composes.

[219-3]
- arm: disabling gold did not help; disable lto instead (#1193212)

[219-2]
- Update 90-default.present for dbxtool.

[219-1]
- New upstream release
- This removes the sysctl/bridge hack, a different solution needs to be 
found for this (see #634736)
- This removes the /etc/resolv.conf hack, anaconda needs to fix their 
handling of /etc/resolv.conf as symlink
- This enables "%check"
- disable gold on arm, as that is broken (see #1193212)

[218-6]
- aarch64 now has seccomp support

[218-5]
- Don't overwrite systemd.macros with unrelated Source file.

[218-4]
- Add a touchpad hwdb (#1189319)

[218-4]
- Enable xkbcommon dependency to allow checking of keymaps
- Fix permissions of /var/log/journal (#1048424)
- Enable timedatex in presets (#1187072)
- Disable rpcbind in presets (#1099595)

[218-3]
- RFE: journal: automatically rotate the file if it is unlinked (#1171719)

[218-3]
- Add firewall description files (#1176626)

[218-2]
- systemd-nspawn doesn't work on s390/s390x (#1175394)

[218-1]
- New upstream release
- Enable "nss-mymachines" in /etc/nsswitch.conf

[217-4]
- Change libgudev1 to only require systemd-libs (#727499), there's
no need to require full systemd stack.
- Fixes for bugs #1159448, #1152220, #1158035.
- Bash completions updates to allow propose more units for start/restart,
and completions for set-default,get-default.
- Again allow systemctl enable of instances.
- Hardware database update and fixes.
- Udev crash on invalid options and kernel commandline timeout parsing 
are fixed.
- Add "embedded" chassis type.
- Sync before 'reboot -f'.
- Fix restarting of timer units.

[217-3]
- Fix hanging journal flush (#1159641)

[217-2]
- Fix ordering cycles involving systemd-journal-flush.service and
remote-fs.target (#1159117)

[217-1]
- New upstream release

[216-12]
- Drop PackageKit.service from presets (#1154126)

[216-11]
- Conflict with old versions of initscripts (#1152183)
- Remove obsolete Finnish keymap (#1151958)

[216-10]
- Fix a problem with voluntary daemon exits and some other bugs
(#1150477, #1095962, #1150289)

[216-9]
- Update to latest git, but without the readahead removal patch
(#1114786, #634736)

[216-8]
- revert "don't reset selinux context during CHANGE events"

[216-7]
- add temporary workaround for #1147910
- don't reset selinux context during CHANGE events

[216-6]
- Update timesyncd with patches to avoid hitting NTP pool too often.

[216-5]
- Use common CONFIGURE_OPTS for build2 and build3.
- Configure timesyncd with NTP servers from Fedora/RHEL vendor zone.

[216-4]
- Move config files for sd-j-remote/upload to sd-journal-gateway 
subpackage (#1136580)

[216-3]
- Drop no LTO build option for aarch64/s390 now it's fixed in binutils 
(RHBZ 1091611)

[216-2]
- Re-add patch to disable resolve.conf symlink (#1043119)

[216-1]
- New upstream release

[215-12]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild

[215-11]
- disable LTO also on s390(x)

[215-10]
- fixed PPC64LE

[215-9]
- fix license handling

[215-8]
- Create systemd-journal-remote and systemd-journal-upload users (#1118907)

[215-7]
- Split out systemd-compat-libs subpackage

[215-6]
- Rebuilt for gobject-introspection 1.41.4

[215-5]
- Fix SELinux context of /etc/passwd-, /etc/group-, /etc/.updated (#1121806)
- Add missing BR so gnutls and elfutils are used

[215-4]
- Various man page updates
- Static device node logic is conditionalized on CAP_SYS_MODULES instead 
of CAP_MKNOD
for better behaviour in containers
- Some small networkd link handling fixes
- vconsole-setup runs setfont before loadkeys 
(https://bugs.freedesktop.org/show_bug.cgi?id=80685)
- New systemd-escape tool
- XZ compression settings are tweaked to greatly improve journald 
performance
- "watch" is accepted as chassis type
- Various sysusers fixes, most importantly correct selinux labels
- systemd-timesyncd bug fix 
(https://bugs.freedesktop.org/show_bug.cgi?id=80932)
- Shell completion improvements
- New udev tag ID_SOFTWARE_RADIO can be used to instruct logind to allow 
user access
- XEN and s390 virtualization is properly detected

[215-3]
- Add patch to disable resolve.conf symlink (#1043119)

[215-2]
- Move systemd-journal-remote to systemd-journal-gateway package (#1114688)
- Disable /etc/mtab handling temporarily (#1116158)

[215-1]
- New upstream release
- Enable coredump logic (which abrt would normally override)

[214-5]
- On aarch64 disable LTO as it still has issues on that arch

[214-4]
- Bugfixes (#996133, #1112908)

[214-3]
- Actually create input group (#1054549)

[214-2]
- Do not restart systemd-logind on upgrades (#1110697)
- Add some patches (#1081429, #1054549, #1108568, #928962)

[214-1]
- New upstream release
- Get rid of "floppy" group, since udev uses "disk" now
- Reenable LTO

[213-4]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild

[213-3]
- fix systemd-timesync user creation

[213-2]
- Create temporary files after installation (#1101983)
- Add sysstat-collect.timer, sysstat-summary.timer to preset policy 
(#1101621)

[213-1]
- New upstream release

[212-6]
- Rebuilt for https://fedoraproject.org/wiki/Changes/Python_3.4

[212-5]
- revert change from 212-4, causes boot fail on single CPU boxes (RHBZ 
1095891)

[212-4]
- add netns udev workaround

[212-3]
- enable uuidd.socket by default (#1095353)

[212-2]
- Disable building with -flto for the moment due to gcc 4.9 issues (RHBZ 
1091611)

[212-1]
- New upstream release

[211-2]
- Explicitly define which upstream platforms support libseccomp

[211-1]
- New upstream release

[210-8]
- Fix logind unpriviledged reboot issue and a few other minor fixes
- Limit generator execution time
- Recognize buttonless joystick types

[210-7]
- ppc64le needs link warnings disabled, too

[210-6]
- move ifarch ppc64le to correct place (libseccomp req)

[210-5]
- Bugfixes: #1047568, #1047039, #1071128, #1073402
- Bash completions for more systemd tools
- Bluetooth database update
- Manpage fixes

[210-4]
- Apply work-around for ppc64le too (#1073647).

[210-3]
- Backport a few patches, add completion for systemd-nspawn.

[210-3]
- Apply work-arounds for ppc/ppc64 for bugs 1071278 and 1071284

[210-2]
- Check more services against preset list and enable by default

[210-1]
- new upstream release

[209-2.gitf01de96]
- Enable dnssec-triggerd.service by default (#1060754)

[209-2.gitf01de96]
- git snapshot to sort out ARM build issues

[209-1]
- new upstream release

[208-15]
- Make gpsd lazily activated (#1066421)

[208-14]
- Back out patch which causes user manager to be destroyed when unneeded
and spams logs (#1053315)

[208-13]
- A different fix for #1023820 taken from Mageia
- Backported fix for #997031
- Hardward database updates, man pages improvements, a few small memory
leaks, utf-8 correctness and completion fixes
- Support for key-slot option in crypttab

[208-12]
- Own the %{_prefix}/lib/kernel(/*) and %{_datadir}/zsh(/*) dirs.

[208-11]
- Backport a few fixes, relevant documentation updates, and HWDB changes
(#1051797, #1051768, #1047335, #1047304, #1047186, #1045849, #1043304,
- Flip journalctl to --full by default (#984758)

[208-9]
- Apply two patches for #1026860

[208-8]
- Bump release to stay ahead of f20

[208-7]
- Backport patches (#1023041, #1036845, #1006386?)
- HWDB update
- Some small new features: nspawn --drop-capability=, running PID 1 under
valgrind, "yearly" and "annually" in calendar specifications
- Some small documentation and logging updates

[208-6]
- Bump release to stay ahead of f20

[208-5]
- Use unit name in PrivateTmp= directories (#957439)
- Update manual pages, completion scripts, and hardware database
- Configurable Timeouts/Restarts default values
- Support printing of timestamps on the console
- Fix some corner cases in detecting when writing to the console is safe
- Python API: convert keyword values to string, fix sd_is_booted() wrapper
- Do not tread missing /sbin/fsck.btrfs as an error (#1015467)
- Allow masking of fsck units
- Advertise hibernation to swap files
- Fix SO_REUSEPORT settings
- Prefer converted xkb keymaps to legacy keymaps (#981805, #1026872)
- Make use of newer kmod
- Assorted bugfixes: #1017161, #967521, #988883, #1027478, #821723, #1014303

[208-4]
- Add temporary fix for #1002806

[208-3]
- Backport a bunch of fixes and hwdb updates

[208-2]
- Move old random seed and backlight files into the right place

[208-1]
- New upstream release

[207-5]
- Do not create /var/var/... dirs

[207-4]
- Fix policykit authentication
- Resolves: rhbz#1006680

[207-3]
- fixed login
- Resolves: rhbz#1005233

[207-2]
- add some upstream fixes for 207
- fixed swap activation
- Resolves: rhbz#1008604

[207-1]
- New upstream release

[206-11]
- support "debug" kernel command line parameter
- journald: fix fd leak in journal_file_empty
- journald: fix vacuuming of archived journals
- libudev: enumerate - do not try to match against an empty subsystem
- cgtop: fixup the online help
- libudev: fix memleak when enumerating childs

[206-10]
- Do not require grubby, lorax now takes care of grubby
- cherry-picked a lot of patches from upstream

[206-9]
- Require grubby, Fedora installs require grubby,
- kernel-install took over from new-kernel-pkg
- without the Requires we are unable to compose Fedora
- everyone else says that since kernel-install took over
- it is responsible for ensuring that grubby is in place
- this is really what we want for Fedora

[206-8]
- Revert "Require grubby its needed by kernel-install"

[206-7]
- Require grubby its needed by kernel-install

[206-6]
- kernel-install now understands kernel flavors like PAE

[206-5]
- add sddm.service to preset file (#998978)

[206-4]
- Filter out provides for private python modules.
- Add requires on kmod >= 14 (#990994).

[206-3]
- New systemd-python3 package (#976427).
- Add ownership of a few directories that we create (#894202).

[206-2]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild

[206-1]
- New upstream release
Resolves (#984152)

[205-1]
- New upstream release

[204-10]
- Split systemd-journal-gateway subpackage (#908081).

[204-9]
- Rename nm_dispatcher to NetworkManager-dispatcher in default preset 
(#977433)

[204-8]
- fix, which helps to sucessfully browse journals with
duplicated seqnums

[204-7]
- fix duplicate message ID bug
Resolves: rhbz#974132

[204-6]
- introduce 99-default-disable.preset

[204-5]
- Rename 90-display-manager.preset to 85-display-manager.preset so that 
it actually takes precedence over 90-default.preset's "disable *" line 
(#903690)

[204-4]
- Fix kernel-install (#965897)

[204-3]
- Fix kernel-install (#965897)

[204-2]
- New upstream release
- disable isdn by default (#959793)

[203-2]
- forward port kernel-install-grubby.patch

[203-1]
- New upstream release

[202-3]
- fix ENOENT for getaddrinfo
- Resolves: rhbz#954012 rhbz#956035
- crypt-setup-generator: correctly check return of strdup
- logind-dbus: initialize result variable
- prevent library underlinking

[202-2]
- nspawn create empty /etc/resolv.conf if necessary
- python wrapper: add sd_journal_add_conjunction()
- fix s390 booting
- Resolves: rhbz#953217

[202-1]
- New upstream release

[201-2]
- Automatically discover whether to run autoreconf and add autotools and git
BuildRequires based on the presence of patches to be applied.
- Use find -delete.

[201-1]
- New upstream release

[200-4]
- Update preset file

[200-3]
- Remove NetworkManager-wait-online.service from presets file again, it 
should default to off

[200-2]
- New upstream release

[199-2]
- Add NetworkManager-wait-online.service to the presets file

[199-1]
- New upstream release

[198-7]
- Drop /usr/s?bin/ prefixes.

[198-6]
- run autogen to pickup all changes

[198-5]
- do not mount anything, when not running as pid 1
- add initrd.target for systemd in the initrd

[198-4]
- fix switch-root and local-fs.target problem
- patch kernel-install to use grubby, if available

[198-3]
- add Conflict with dracut < 026 because of the new switch-root isolate

[198-2]
- Create required users

[198-1]
- New release
- Enable journal persistancy by default

[197-3]
- Bump for ARM

[197-2]
- Added qemu-guest-agent.service to presets (Lennart, #885406).
- Add missing pygobject3-base to systemd-analyze deps (Lennart).
- Do not require hwdata, it is all in the hwdb now (Kay).
- Drop dependency on dbus-python.

[197-1]
- New upstream release

[196-4]
- Enable rngd.service by default (#857765).

[196-3]
- Disable hardening on s390(x) because PIE is broken there and produces
text relocations with __thread (#868839).

[196-2]
- added spice-vdagentd.service to presets (Lennart, #876237)
- BR cryptsetup-devel instead of the legacy cryptsetup-luks-devel 
provide name
(requested by Milan Brož).
- verbose make to see the actual build flags

[196-1]
- New upstream release

[195-8]
- https://bugzilla.redhat.com/show_bug.cgi?id=873459
- https://bugzilla.redhat.com/show_bug.cgi?id=878093

[195-7]
- Revert udev killing cgroup patch for F18 Beta.
- https://bugzilla.redhat.com/show_bug.cgi?id=873576

[195-6]
- Fix cyclical dep between systemd and systemd-libs.
- Avoid broken build of test-journal-syslog.
- https://bugzilla.redhat.com/show_bug.cgi?id=873387
- https://bugzilla.redhat.com/show_bug.cgi?id=872638

[195-5]
- require 'sed', limit HOSTNAME= match

[195-4]
- add dmraid-activation.service to the default preset
- add yum protected.d fragment
- https://bugzilla.redhat.com/show_bug.cgi?id=869619
- https://bugzilla.redhat.com/show_bug.cgi?id=869717

[195-3]
- Migrate /etc/sysconfig/ i18n, keyboard, network files/variables to
systemd native files

[195-2]
- Provide syslog because the journal is fine as a syslog implementation

[195-1]
- New upstream release
- https://bugzilla.redhat.com/show_bug.cgi?id=831665
- https://bugzilla.redhat.com/show_bug.cgi?id=847720
- https://bugzilla.redhat.com/show_bug.cgi?id=858693
- https://bugzilla.redhat.com/show_bug.cgi?id=863481
- https://bugzilla.redhat.com/show_bug.cgi?id=864629
- https://bugzilla.redhat.com/show_bug.cgi?id=864672
- https://bugzilla.redhat.com/show_bug.cgi?id=864674
- https://bugzilla.redhat.com/show_bug.cgi?id=865128
- https://bugzilla.redhat.com/show_bug.cgi?id=866346
- https://bugzilla.redhat.com/show_bug.cgi?id=867407
- https://bugzilla.redhat.com/show_bug.cgi?id=868603

[194-2]
- Add scriptlets for migration away from systemd-timedated-ntp.target

[194-1]
- New upstream release
- https://bugzilla.redhat.com/show_bug.cgi?id=859614
- https://bugzilla.redhat.com/show_bug.cgi?id=859655

[193-1]
- New upstream release

[192-1]
- New upstream release

[191-2]
- Fix journal mmap header prototype definition to fix compilation on 32bit

[191-1]
- New upstream release
- Enable all display managers by default, as discussed with Adam Williamson

[190-1]
- New upstream release
- Take possession of /etc/localtime, and remove /etc/sysconfig/clock
- https://bugzilla.redhat.com/show_bug.cgi?id=858780
- https://bugzilla.redhat.com/show_bug.cgi?id=858787
- https://bugzilla.redhat.com/show_bug.cgi?id=858771
- https://bugzilla.redhat.com/show_bug.cgi?id=858754
- https://bugzilla.redhat.com/show_bug.cgi?id=858746
- https://bugzilla.redhat.com/show_bug.cgi?id=858266
- https://bugzilla.redhat.com/show_bug.cgi?id=858224
- https://bugzilla.redhat.com/show_bug.cgi?id=857670
- https://bugzilla.redhat.com/show_bug.cgi?id=856975
- https://bugzilla.redhat.com/show_bug.cgi?id=855863
- https://bugzilla.redhat.com/show_bug.cgi?id=851970
- https://bugzilla.redhat.com/show_bug.cgi?id=851275
- https://bugzilla.redhat.com/show_bug.cgi?id=851131
- https://bugzilla.redhat.com/show_bug.cgi?id=847472
- https://bugzilla.redhat.com/show_bug.cgi?id=847207
- https://bugzilla.redhat.com/show_bug.cgi?id=846483
- https://bugzilla.redhat.com/show_bug.cgi?id=846085
- https://bugzilla.redhat.com/show_bug.cgi?id=845973
- https://bugzilla.redhat.com/show_bug.cgi?id=845194
- https://bugzilla.redhat.com/show_bug.cgi?id=845028
- https://bugzilla.redhat.com/show_bug.cgi?id=844630
- https://bugzilla.redhat.com/show_bug.cgi?id=839736
- https://bugzilla.redhat.com/show_bug.cgi?id=835848
- https://bugzilla.redhat.com/show_bug.cgi?id=831740
- https://bugzilla.redhat.com/show_bug.cgi?id=823485
- https://bugzilla.redhat.com/show_bug.cgi?id=821813
- https://bugzilla.redhat.com/show_bug.cgi?id=807886
- https://bugzilla.redhat.com/show_bug.cgi?id=802198
- https://bugzilla.redhat.com/show_bug.cgi?id=767795
- https://bugzilla.redhat.com/show_bug.cgi?id=767561
- https://bugzilla.redhat.com/show_bug.cgi?id=752774
- https://bugzilla.redhat.com/show_bug.cgi?id=732874
- https://bugzilla.redhat.com/show_bug.cgi?id=858735

[189-4]
- Don't pull in pkg-config as dep
- https://bugzilla.redhat.com/show_bug.cgi?id=852828

[189-3]
- Update preset policy
- Rename preset policy file from 99-default.preset to 90-default.preset 
so that people can order their own stuff after the Fedora default policy 
if they wish

[189-2]
- Update preset policy
- https://bugzilla.redhat.com/show_bug.cgi?id=850814

[189-1]
- New upstream release

[188-4]
- more scriptlet fixes
(move dm migration logic to %posttrans so the service
files it's looking for are available at the time
the logic is run)

[188-3]
- Remount file systems MS_PRIVATE before switching roots
- https://bugzilla.redhat.com/show_bug.cgi?id=847418

[188-2]
- fix scriptlets

[188-1]
- New upstream release
- Enable gdm and avahi by default via the preset file
- Convert /etc/sysconfig/desktop to display-manager.service symlink
- Enable hardened build

[187-3]
- Obsolete: system-setup-keyboard

[187-2]
- Run ldconfig for the new -libs subpackage

[187-1]
- New upstream release

[186-2]
- fixed dracut conflict version

[186-1]
- New upstream release

[185-7.gite7aee75]
- add obsoletes/conflicts so multilib systemd -> systemd-libs updates work

[185-6.gite7aee75]
- Update to current git

* Wed Jun 06 2012 Kay Sievers - 185-5.gita2368a3
- disable plymouth in configure, to drop the .wants/ symlinks

[185-4.gita2368a3]
- Update to current git snapshot
- Add systemd-readahead-analyze
- Drop upstream patch
- Split systemd-libs
- Drop duplicate doc files
- Fixed License headers of subpackages

[185-3]
- Drop plymouth files
- Conflict with old plymouth

* Tue Jun 05 2012 Kay Sievers - 185-2
- selinux udev labeling fix
- conflict with older dracut versions for new udev file names

* Mon Jun 04 2012 Kay Sievers - 185-1
- New upstream release
- udev selinux labeling fixes
- new man pages
- systemctl help <unit name>

[184-1]
- New upstream release

[183-1]
- New upstream release including udev merge.

[44-4]
- Add triggers from Bill Nottingham to correct the damage done by
the obsoleted systemd-units's preun scriptlet (#807457).

[44-3]
- apply patch from upstream so we can build systemd on arm and ppc
- and likely the rest of the secondary arches

[44-2]
- Don't build the gtk parts anymore. They're moving into systemd-ui.
- Remove a dead patch file.

[44-1]
- New upstream release
- Closes #798760, #784921, #783134, #768523, #781735

[43-2]
- don't conflict with fedora-release systemd never actually provided
- /etc/os-release so there is no actual conflict

[43-1]
- New upstream release
- Closes #789758, #790260, #790522

[42-1]
- New upstream release
- Save a bit of entropy during system installation (#789407)
- Don't own /etc/os-release anymore, leave that to fedora-release

[41-2]
- rebuild for fixed binutils

[41-1]
- New upstream release

[40-1]
- New upstream release

[39-3]
- provide /sbin/shutdown

[39-2]
- increment release

[39-1.1]
- install everything in /usr
https://fedoraproject.org/wiki/Features/UsrMove

[39-1]
- New upstream release

[38-6.git9fa2f41]
- Update to a current git snapshot.
- Resolves: #781657

[38-5]
- Build against libgee06. Reenable gtk tools.
- Delete unused patches.
- Add easy building of git snapshots.
- Remove legacy spec file elements.
- Don't mention implicit BuildRequires.
- Configure with --disable-static.
- Merge -units into the main package.
- Move section 3 manpages to -devel.
- Fix unowned directory.
- Run ldconfig in scriptlets.
- Split systemd-analyze to a subpackage.

[38-4]
- fix build on big-endians

[38-3]
- Disable building of gtk tools for now

[38-2]
- Fix a few (build) dependencies

[38-1]
- New upstream release

[37-4]
- Run authconfig if /etc/pam.d/system-auth is not a symlink.
- Resolves: #753160

[37-3]
- Fix remote-fs-pre.target and its ordering.
- Resolves: #749940

[37-2]
- A couple of fixes from upstream:
- Fix a regression in bash-completion reported in Bodhi.
- Fix a crash in isolating.
- Resolves: #717325

[37-1]
- New upstream release
- Resolves: #744726, #718464, #713567, #713707, #736756

[36-5]
- Undo the workaround. Kay says it does not belong in systemd.
- Unresolves: #741655

[36-4]
- Workaround for the crypto-on-lvm-on-crypto disk layout
- Resolves: #741655

[36-3]
- Revert an upstream patch that caused ordering cycles
- Resolves: #741078

[36-2]
- Add /etc/timezone to ghosted files

[36-1]
- New upstream release
- Resolves: #735013, #736360, #737047, #737509, #710487, #713384

[35-1]
- New upstream release
- Update post scripts
- Resolves: #726683, #713384, #698198, #722803, #727315, #729997, 
#733706, #734611

[34-1]
- New upstream release

[33-2]
- fix ABRT on service file reloading
- Resolves: rhbz#732020

[33-1]
- New upstream release

[32-1]
- New upstream release

[31-2]
- Fix access mode of modprobe file, restart logind after upgrade

[31-1]
- New upstream release

[30-1]
- New upstream release

[29-1]
- New upstream release

[28-4]
- Apply patches from current upstream.
- Fixes memory size detection on 32-bit with >4GB RAM (BZ712341)

[28-3]
- Apply patches from current upstream
- https://bugzilla.redhat.com/show_bug.cgi?id=709909
- https://bugzilla.redhat.com/show_bug.cgi?id=710839
- https://bugzilla.redhat.com/show_bug.cgi?id=711015

[28-2]
- Pull in nss-myhostname

[28-1]
- New upstream release

[26-2]
- Bugfix release
- https://bugzilla.redhat.com/show_bug.cgi?id=707507
- https://bugzilla.redhat.com/show_bug.cgi?id=707483
- https://bugzilla.redhat.com/show_bug.cgi?id=705427
- https://bugzilla.redhat.com/show_bug.cgi?id=707577

[26-1]
- New upstream release
- https://bugzilla.redhat.com/show_bug.cgi?id=699394
- https://bugzilla.redhat.com/show_bug.cgi?id=698198
- https://bugzilla.redhat.com/show_bug.cgi?id=698674
- https://bugzilla.redhat.com/show_bug.cgi?id=699114
- https://bugzilla.redhat.com/show_bug.cgi?id=699128

[25-1]
- New upstream release
- https://bugzilla.redhat.com/show_bug.cgi?id=694788
- https://bugzilla.redhat.com/show_bug.cgi?id=694321
- https://bugzilla.redhat.com/show_bug.cgi?id=690253
- https://bugzilla.redhat.com/show_bug.cgi?id=688661
- https://bugzilla.redhat.com/show_bug.cgi?id=682662
- https://bugzilla.redhat.com/show_bug.cgi?id=678555
- https://bugzilla.redhat.com/show_bug.cgi?id=628004

[24-1]
- New upstream release
- https://bugzilla.redhat.com/show_bug.cgi?id=694079
- https://bugzilla.redhat.com/show_bug.cgi?id=693289
- https://bugzilla.redhat.com/show_bug.cgi?id=693274
- https://bugzilla.redhat.com/show_bug.cgi?id=693161

[23-1]
- New upstream release
- Include systemd-sysv-convert

[22-1]
- New upstream release

[21-2]
- The quota services are now pulled in by mount points, hence no need to 
enable them explicitly

[21-1]
- New upstream release

[20-2]
- Apply upstream patch to not send untranslated messages to plymouth

[20-1]
- New upstream release

[19-1]
- New upstream release

[18-1]
- New upstream release

[17-6]
- bump upstart obsoletes (#676815)

[17-5]
- add macros.systemd file for %{_unitdir}

[17-4]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild

[17-3]
- Fix popen() of systemctl, #674916

[17-2]
- add epoch to readahead obsolete

[17-1]
- New upstream release

[16-2]
- Drop console.conf again, since it is not shipped in pamtmp.conf

[16-1]
- New upstream release

[15-1]
- New upstream release

[14-1]
- Upstream update
- Enable hwclock-load by default
- Obsolete readahead
- Enable /var/run and /var/lock on tmpfs

[13-1]
- new upstream release

[12-3]
- Fix clash

[12-2]
- Don't clash with initscripts for now, so that we don't break the builders

[12-1]
- New upstream release

[11-2]
- Rebuild with newer vala, libnotify

[11-1]
- New upstream release

[10-6]
- Rebuilt for gcc bug 634757

[10-5]
- merge -sysvinit into main package

[10-4]
- obsolete upstart-sysvinit too

[10-3]
- Drop upstart requires

[10-2]
- Enable audit
- https://bugzilla.redhat.com/show_bug.cgi?id=633771

[10-1]
- New upstream release
- https://bugzilla.redhat.com/show_bug.cgi?id=630401
- https://bugzilla.redhat.com/show_bug.cgi?id=630225
- https://bugzilla.redhat.com/show_bug.cgi?id=626966
- https://bugzilla.redhat.com/show_bug.cgi?id=623456

[9-3]
- move fedora-specific units to initscripts; require newer version thereof

[9-2]
- Add missing tarball

[9-1]
- New upstream version
- Closes 501720, 614619, 621290, 626443, 626477, 627014, 627785, 628913

[8-3]
- Reexecute after installation, take ownership of /var/run/user
- https://bugzilla.redhat.com/show_bug.cgi?id=627457
- https://bugzilla.redhat.com/show_bug.cgi?id=627634

[8-2]
- Properly create default.target link

[8-1]
- New upstream release

[7-3]
- Fix https://bugzilla.redhat.com/show_bug.cgi?id=623561

[7-2]
- Fix https://bugzilla.redhat.com/show_bug.cgi?id=623430

[7-1]
- New upstream release

[6-2]
- properly hide output on package installation
- pull in coreutils during package installtion

[6-1]
- New upstream release
- Fixes #621200

[5-2]
- Add tarball

[5-1]
- Prepare release 5

[4-4]
- Add 'sysvinit-userspace' provide to -sysvinit package to fix 
upgrade/install (#618537)

[4-3]
- Add libselinux to build dependencies

[4-2]
- Use the right tarball

[4-1]
- New upstream release, and make default

[3-3]
- Used wrong tarball

[3-2]
- Own /cgroup jointly with libcgroup, since we don't dpend on it anymore

[3-1]
- New upstream release

[2-0]
- New upstream release

[1-0]
- First upstream release

[0-0.7.20100629git4176e5]
- New snapshot
- Split off -units package where other packages can depend on without 
pulling in the whole of systemd

[0-0.6.20100622gita3723b]
- Add missing libtool dependency.

[0-0.5.20100622gita3723b]
- Update snapshot

[0-0.4.20100614git393024]
- Pull the latest snapshot that fixes a segfault. Resolves rhbz#603231

[0-0.3.20100610git2f198e]
- More minor fixes as per review

[0-0.2.20100610git2f198e]
- Spec improvements from David Hollis

[0-0.1.20090609git2f198e]
- Address review comments

[0-0.0.git2010-06-02]
- Initial spec (adopted from Kay Sievers)





More information about the El-errata mailing list