Upstream update available: radcli 1.4.0 → 1.5.1 #3
Labels
No labels
ai-summary
bot
needs-build
needs-triage
priority/high
priority/medium
security-release
update/minor
upstream-update
upstream/github
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set.
Reference
rpms/radcli#3
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Upstream update available:
radcli1.4.0→1.5.1Package
radcliradcliniceos-5.21:1.4.0-1minorpython_rpmleafgithub-upstreamUpstream
githubradcli/radcli1.5.11.5.1github_release_latest2026-05-01T21:44:47ZFalseSignals
TrueFalse-ai-summary, bot, needs-build, needs-triage, priority/high, security-release, update/minor, upstream-update, upstream/githubNiceSOFT AI preliminary stability analysis
1. Краткий вывод
Пакет radcli получил мелкий обновление с улучшениями безопасности и совместимости. Изменения включают ограничение размера пакетов RADIUS, устранение уязвимостей и обновление обработки атрибутов. Статус обновления: update candidate.
2. Риск для НАЙС.ОС
Риск: medium.
Обновление включает:
3. Состояние обновления
4. Рекомендации
5. Статус обновления
6. Итог
Обновление безопасно и совместимо, но требует тестирования на интеграциях, где атрибуты обрабатываются по новой логике. Рекомендуется обновить, но с предварительной проверкой.
Источники, найденные web_search
Upstream release notes / description
outbound attributes, preventing a stack buffer overflow if a caller
supplies more attributes than fit in a valid RADIUS packet.
rc_pack_list() now returns -1 for packets that would exceed 4096 bytes;
previously oversized packets were silently truncated.
tail of the supplied VALUE_PAIR list instead of prepending them to the
head. Callers that pass a non-NULL 'pair' and rely on insertion order
(e.g. newest-first iteration, or rc_avpair_get() returning the most
recently decoded value on duplicate attributes) must be updated.
attributes. RFC 2865/2866/2867/2868/2869/3162/3576/4675/4818/4849/6911
attributes are now built into the library; the 'dictionary' config option
is now needed only for vendor-specific attributes.
are unaffected in all cases):
name is "User-Password". The legacy alias "Password" is retained so existing
string-based lookups continue to work.
2865 name is "NAS-Port". No alias is possible because "NAS-Port-Id" is the
canonical RFC 2869 name for attribute 87. Applications that reference
attribute 5 by string must be updated to use "NAS-Port".
correct RFC 2869 name is "NAS-Port-Id". The legacy alias "NAS-Port-Id-String"
is retained.
relevant IETF RFCs.
NiceOS maintainer checklist
Versionand related fields inSPECS/*.speconly if policy allows it.SOURCES/sources.lock.json, manifests, metadata and SBOM.Bot metadata
niceos_upstream_monitor.py 2.1.3-local-websearch-github-release-pages2026-06-07T00:24:34Z