[pkg-firebird-general] Bug#767497: Bug#767497: firebird2.5-super: world writable file in /run after upgrade to jessie
Holger Levsen
holger at layer-acht.org
Sat Nov 1 21:04:50 UTC 2014
Hi Damyan,
On Samstag, 1. November 2014, Damyan Ivanov wrote:
> So I don't think we have an exploitable problem here, since the file
> is not reachable by users not members of the firebird group. Lowering
> severity accordingly.
>
> Still, I agree the permissions need fixing in case the directory
> permissions change in the future.
[...]
> I'll try patching both place to clear the world access bits.
I agree it's only an important issue as it is. Thanks for fixing it!
cheers,
Holger
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 828 bytes
Desc: This is a digitally signed message part.
URL: <http://lists.alioth.debian.org/pipermail/pkg-firebird-general/attachments/20141101/00fc75aa/attachment.sig>
More information about the pkg-firebird-general
mailing list