polkit-0.120-5.1 RPM for i586

From OpenSuSE Tumbleweed for i586

Name: polkit Distribution: openSUSE Tumbleweed
Version: 0.120 Vendor: openSUSE
Release: 5.1 Build date: Thu Aug 4 13:33:46 2022
Group: System/Libraries Build host: lamb75
Size: 327852 Source RPM: polkit-0.120-5.1.src.rpm
Summary: PolicyKit Authorization Framework
PolicyKit is a toolkit for defining and handling authorizations.
It is used for allowing unprivileged processes to speak to privileged






* Wed Aug 03 2022 Marcus Meissner <>
  - add split-provides for polkit:/usr/bin/pkexec. (bsc#1202070)
* Mon Jul 18 2022 Marcus Meissner <>
  - split out pkexec into seperate package to make system hardening
    easier (to avoid installing it jsc#PED-132 jsc#PED-148).
* Tue Feb 22 2022 Marcus Meissner <>
  - Fixed denial of service via file descriptor leak (bsc#1195542 CVE-2021-4115)
* Wed Jan 26 2022 Fabian Vogt <>
  - Switch from mozjs to duktape:
    * Add duktape-support.patch
* Tue Jan 25 2022 Marcus Meissner <>
  - Fixed pkexec Local Privilege Escalation aka pwnkit (CVE-2021-4034 bsc#1194568)
* Mon Dec 06 2021 Dirk Müller <>
  - update to 0.120:
    * transition from Intltool to gettext
    * several tarball, meson and pipeline fixups
    * Portuguese translation
    * Romanian translation
    * meson build system added
    * CVE-2021-3560 mitigation
    * properties in text listener
    * typos fixups
    * Update Hungarian translation
  - drop CVE-2021-3560.patch  (upstream)
* Wed Oct 20 2021 Marcus Meissner <>
  - fork libpolkit0 package into libpolkit-agent-1-0 and libpolkit-gobject-1-0
    as mandated. bsc#1191781
* Sun Jul 18 2021 Callum Farmer <>
  - Change to using systemd-sysusers
  - Remove unneeded shadow dependency, no longer required due to
  - Fix 50-default.rules file-parent-ownership-mismatch warning
  - Remove --with-pic, no effect with --disable-static
* Wed Jul 07 2021 Stefan Schubert <
  - Move /etc/polkit-1/rules.d/50-default.rules to
    /usr/share/polkit-1/rules.d/50-default.rules. The first location
    is only for admin changes.
* Wed Jun 09 2021 Dominique Leuenberger <>
  - Fix verifyscript: the path to the binary was wrongly defined as
* Thu May 27 2021 Marcus Meissner <>
  - CVE-2021-3560: fixed a local privilege escalation using polkit_system_bus_name_get_creds_sync()
* Thu Mar 11 2021 Thorsten Kukuk <>
  - Move /etc/dbus-1/system.d to /usr/share/dbus-1/system.d, the
    first location is only for admin changes
  - Move pam configuration to /usr/etc/pam.d
* Mon Jan 04 2021 Matthias Gerstner <>
  move to libexec dir is still not complete:
  - add polkit-adjust-libexec-path.patch: There is another hard coded reference
    of lib/ in the code that this patch addresses.
  - also adjust invocation of %set_permissions and %verify_permissions to new
    libexec dir location.
* Tue Dec 29 2020 Matthias Gerstner <>
  - also set libprivdir during build, otherwhise systemd and D-Bus service files
    contain the wrong path and we'll get runtime errors.
* Mon Dec 28 2020 Matthias Gerstner <>
  - Install private binaries into libexec instead of into lib. For this an
    override of the custom libprivdir variable is necessary, because upstream
    explicitly moved away from libexecdir via upstram commit
* Fri Oct 23 2020 Bjørn Lie <>
  - Update to version 0.118:
    + Updated dependency to mozjs78.
    + Tarball fixes.
  - Replace pkgconfig(mozjs-68) for pkgconfig(mozjs-78)
    BuildRequires following upstreams port.
* Fri Jul 31 2020 Bjørn Lie <>
  - Update to version 0.117:
    + Activated Gitlab CI.
    + Updated dependency to mozjs68.
    + Memory management fixes.
    + Updated translations.
  - Replace pkgconfig(mozjs-60) for pkgconfig(mozjs-68)
    BuildRequires following upstreams port.
* Fri Nov 29 2019 Bjørn Lie <>
  - Fix usage of libexecdir instead of prefix/lib where applicable.
* Tue Oct 08 2019 Marcus Meissner <>
  - polkit-keyinit.patch: add pam_keyinit to the polkit configuration (bsc#1144053)
* Wed May 29 2019 Bjørn Lie <>
  - Update to version 0.116:
    + Leaking zombie child processes.
    + Possible resource leak found by static analyzer.
    + Output messages tuneup.
    + Sanity fixes.
    + pkttyagent tty echo disabled on SIGINT.
    + HACKING: add link to Code of Conduct.
    + polkitbackend: comment typos fix.
    + fix detection of systemd with cgroups v2.
    + CVE-2018-19788 High UIDs overflow fix.
    + CVE-2019-6133 Slowfork vulnerability fix.
    + Allow unset process-uid.
    + Port the JS authority to mozjs-60.
    + Use JS_EncodeStringToUTF8.
    + Updated translations.
  - Replace pkgconfig(mozjs-52) with pkgconfig(mozjs-60)
    BuildRequires following upstreams changes.
  - Drop patches fixed upstream:
    + polkit-fix-possible-resource-leak.patch
    + polkit-fix-leaking-zombie-child-processes.patch
    + polkit-CVE-2018-19788.patch
  - Refresh patches with quilt.
* Fri May 10 2019 Dominique Leuenberger <>
  - Use systemd_ordering instead of systemd_requires: strictly
    speaking, polkit does not require systemd to be present. Just
    that when we install on a system with systemd (e.g outside
    containers) we would want systemd to be present before
    installing polkit. Help also reduce a cycle without special hacks
    in systemd.spec.
* Fri Apr 26 2019
  - bsc#1130588: Require shadow instead of old pwdutils
  - User proper Requires(pre)/Requires(post) for permissions and



