| Merge tag '6.5.37' of https://gitee.com/deepin-community/deepin-log-viewer Release deepin-log-viewer 6.5.37 Signed-off-by: gfdgd_xi <3025613752@qq.com> | 1 个月前 |
| chore(CI): add OBS workflows add OBS workflows log: | 3 年前 |
| feat: Add authentication log support Implement authentication log viewing functionality to parse and display logs from /var/log/auth.log and its rotated files. Includes UI integration, filtering, export capabilities, and full feature parity with existing audit log functionality. Log: Add authentication log support. story: https://pms.uniontech.com/story-view-39399.html | 10 个月前 |
| fix: invalid YAML syntax in transifex.yaml Log: | 2 年前 |
| fix(security): replace system() with posix_spawnp() to prevent command injection The OdfConverterUtil::saveAs() function built a shell command string via the ODF_CONVERTER_CMD macro and passed it to system(). File paths containing shell metacharacters (e.g. ", ;, $()) could be exploited to execute arbitrary commands. Replace system() with posix_spawnp() which passes arguments as an array directly to the target executable without shell interpretation, eliminating the injection vector. Use posix_spawn_file_actions_t to redirect stdout and stderr to /dev/null, preserving the original suppression behavior. Additionally, posix_spawn avoids the fork()-in-multithreaded-process hazards since export operations run on QThreadPool worker threads that may hold QMutex locks. Remove the now-unused ODF_CONVERTER_CMD macro and the unreachable _WIN32 code path, as deepin-log-viewer is a Linux-only application. 3rdparty/DocxFactory/src/ConverterPrinter/OdfConverterUtil.cpp Log: fix issue Bug: https://pms.uniontech.com/bug-view-364711.html | 3 个月前 |
| chore: Adapt REUSE license (#86) Description: Adapt REUSE license, and remove unused cppcheckout.txt. Log: Adapt REUSE license Influence: None | 3 年前 |
| Merge tag '6.5.42' of https://gitee.com/deepin-community/deepin-log-viewer Release deepin-log-viewer 6.5.42 Signed-off-by: gfdgd_xi <3025613752@qq.com> | 3 天前 |
| feat: Enable support Qt6 build Enble Qt6 build and compat Qt5. Log: Enable support Qt6 build. | 1 年前 |
| Merge tag '6.5.42' of https://gitee.com/deepin-community/deepin-log-viewer Release deepin-log-viewer 6.5.42 Signed-off-by: gfdgd_xi <3025613752@qq.com> | 3 天前 |
| fix(security): sink home log reads to frontend, enable ProtectHome=tmpfs Add UserLogAccess class in the frontend to read home-directory logs locally instead of via the privileged DBus backend service. 新增前端 UserLogAccess 类,家目录日志改由用户进程本地读取,不再 经后端提权 DBus 服务访问;后端启用 ProtectHome=tmpfs 安全隔离。 Log: 家目录日志读取下沉前端,后端启用ProtectHome=tmpfs PMS: BUG-376053 Influence: 后端不再直接访问/home、/root、/run/user,安全隔离增强;移除whiteListOutPaths,新增exportOpsLog;前端依赖由PolkitQt切换为gio-qt。 | 15 天前 |
| refactor: Update CMake build flags and Debian packaging Refactor CMake files to: - Remove redundant C++ standard version flags. - Correctly apply security hardening linker flags by using CMAKE_EXE_LINKER_FLAGS and string(APPEND). - Adjust the installation path for coredump reporter systemd user services. Update Debian packaging rules: - Migrate from debhelper to debhelper-compat (= 11) in debian/control. - Remove the debian/compat file. | 10 个月前 |
| fix: correct directory ownership when creating cache dirs with sudo When running sudo deepin-log-viewer --reportcoredump, directories created under ~/.cache/deepin/deepin-log-viewer/ are owned by root, causing subsequent normal launches to fail writing to them. Add Utils::fixDirOwnership() to chown newly created directories to the real logged-in user (detected via lstat(homePath)) when getuid() differs from the real user UID. Apply it to all mkpath call sites that create cache directories under the user's home: updateRepeatCoredumpExePaths, UserLogAccess constructor, and UserLogAccess::createExtractSubdir. Harden fixDirOwnership() against symlink attacks: walk the target path from root using openat(O_DIRECTORY | O_NOFOLLOW) at each level, then fchown() the resulting fd. This prevents a non-privileged user from pre-creating a symlink along the path to trick the privileged sudo process into chowning arbitrary targets outside the home directory. Add error handling for createExtractSubdir() returning empty string (mkpath failure) at all three call sites: skip unzip and fall back to returning original file paths directly, preventing silent file loss. Also add qCWarning logging for unchecked mkpath return values across the project. PMS: TASK-395141 | 3 天前 |
| refactor: Update CMake build flags and Debian packaging Refactor CMake files to: - Remove redundant C++ standard version flags. - Correctly apply security hardening linker flags by using CMAKE_EXE_LINKER_FLAGS and string(APPEND). - Adjust the installation path for coredump reporter systemd user services. Update Debian packaging rules: - Migrate from debhelper to debhelper-compat (= 11) in debian/control. - Remove the debian/compat file. | 10 个月前 |
| fix: 适配RPM打包 (#139) 适配RPM打包 Log: 适配RPM打包 | 3 年前 |
| fix(security): sink home log reads to frontend, enable ProtectHome=tmpfs Add UserLogAccess class in the frontend to read home-directory logs locally instead of via the privileged DBus backend service. 新增前端 UserLogAccess 类,家目录日志改由用户进程本地读取,不再 经后端提权 DBus 服务访问;后端启用 ProtectHome=tmpfs 安全隔离。 Log: 家目录日志读取下沉前端,后端启用ProtectHome=tmpfs PMS: BUG-376053 Influence: 后端不再直接访问/home、/root、/run/user,安全隔离增强;移除whiteListOutPaths,新增exportOpsLog;前端依赖由PolkitQt切换为gio-qt。 | 15 天前 |
| Merge tag '6.5.41' of https://gitee.com/deepin-community/deepin-log-viewer Release deepin-log-viewer 6.5.41 Signed-off-by: gfdgd_xi <3025613752@qq.com> | 12 天前 |
| chore: update gitignore and debian postinst script 1. Added Debian build artifacts to gitignore to prevent tracking temporary build files 2. Added #DEBHELPER# placeholder to debian/deepin-log-viewer.postinst script for proper debhelper integration 3. Maintained existing functionality for systemd user timer management Influence: 1. Verify Debian package builds correctly without including temporary files 2. Test that post-installation script still properly manages systemd user timers 3. Ensure git status remains clean after build operations 4. Confirm debhelper can properly process the postinst script during package builds chore: 更新 gitignore 文件和 debian postinst 脚本 1. 将 Debian 构建产物添加到 gitignore,避免跟踪临时构建文件 2. 在 debian/deepin-log-viewer.postinst 脚本中添加 #DEBHELPER# 占位符以 支持 debhelper 集成 3. 保持现有的 systemd 用户定时器管理功能 Influence: 1. 验证 Debian 软件包构建正确,不包含临时文件 2. 测试安装后脚本仍能正确管理系统用户定时器 3. 确保构建操作后 git 状态保持干净 4. 确认 debhelper 在软件包构建期间能正确处理 postinst 脚本 | 6 个月前 |
| fix: 增加最小宽度以让英文状态下最大系统字体下显示正常,修改为cmake,根据项目规范修改项目目录 Description: fix: 增加最小宽度以让英文状态下最大系统字体下显示正常,修改为cmake,根据项目规范修改项目目录 Log: fix: 增加最小宽度以让英文状态下最大系统字体下显示正常,修改为cmake,根据项目规范修改项目目录 link: | 6 年前 |
| chore: add OPT_ENABLE_BUILD_UT option to control unit test building Introduce a new CMake option OPT_ENABLE_BUILD_UT (default ON) to conditionally build unit tests. The tests subdirectory is now gated by this option first, then by the Debug build type check, making it possible to disable unit test builds independently of the build type. | 3 个月前 |
| chore: Adapt REUSE license (#86) Description: Adapt REUSE license, and remove unused cppcheckout.txt. Log: Adapt REUSE license Influence: None | 3 年前 |
| chore: Adapt REUSE license (#86) Description: Adapt REUSE license, and remove unused cppcheckout.txt. Log: Adapt REUSE license Influence: None | 3 年前 |
| chore: Adapt REUSE license (#86) Description: Adapt REUSE license, and remove unused cppcheckout.txt. Log: Adapt REUSE license Influence: None | 3 年前 |