[Rpm-maint] [rpm-software-management/rpm] RPM 4.18.0 alpha released! (Issue #2087)

metinoy notifications at github.com
Tue Jun 7 10:53:35 UTC 2022


### Discussed in https://github.com/rpm-software-management/rpm/discussions/2012

<div type='discussions-op-text'>

<sup>Originally posted by **pmatilai** April 13, 2022</sup>
Year 2021 proved challenging in various ways, but here we go again. By far the biggest challenge in this release was dealing with the symlink CVE pile from last year, which required a big rework of the file handling code, and rewriting --restore to take advantage of the same code. Which is why there's perhaps less new exciting things than in some other recent releases, but there's some good stuff anyway. 

The obligatory highlights summary:
* Big file handling rework to address a class of symlink vulnerabilities during install, restore and erasure
* More intuitive conditional builds macro `%bcond`
* Weak dependencies accept qualifiers like `meta` and `pre` now
* New interactive shell for working with macros (`rpmspec --shell`) and embedded Lua (`rpmlua`)
* New `%conf` spec section for build configuration
* New `rpmuncompress` cli tool simplifies unpacking multiple sources
* Numerous macro improvements and fixes
* Numerous OpenPGP parser correctness and security fixes

As usual, further details and download information available at https://rpm.org/wiki/Releases/4.18.0

On behalf of the rpm-team,
Panu</div>



-- 
Reply to this email directly or view it on GitHub:
https://github.com/rpm-software-management/rpm/issues/2087
You are receiving this because you are subscribed to this thread.

Message ID: <rpm-software-management/rpm/issues/2087 at github.com>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.rpm.org/pipermail/rpm-maint/attachments/20220607/501cdb3f/attachment.html>


More information about the Rpm-maint mailing list