[Pkg-utopia-commits] r2767 - in /packages/experimental/network-manager-applet/debian: changelog patches/01-dbus_access_nm_applet.patch

biebl at users.alioth.debian.org biebl at users.alioth.debian.org
Thu Feb 5 23:29:19 UTC 2009


Author: biebl
Date: Thu Feb  5 23:29:19 2009
New Revision: 2767

URL: http://svn.debian.org/wsvn/pkg-utopia/?sc=1&rev=2767
Log:
* debian/patches/01-dbus_access_nm_applet.patch
  - Remove bare send_interface directives to avoid non-deterministic allow
    messages with no interface. (Closes: #510728)
  - Do not allow unpriviledged processes to ask for a users' connections.
  - Allow introspection by default.

Modified:
    packages/experimental/network-manager-applet/debian/changelog
    packages/experimental/network-manager-applet/debian/patches/01-dbus_access_nm_applet.patch

Modified: packages/experimental/network-manager-applet/debian/changelog
URL: http://svn.debian.org/wsvn/pkg-utopia/packages/experimental/network-manager-applet/debian/changelog?rev=2767&op=diff
==============================================================================
--- packages/experimental/network-manager-applet/debian/changelog (original)
+++ packages/experimental/network-manager-applet/debian/changelog Thu Feb  5 23:29:19 2009
@@ -1,3 +1,13 @@
+network-manager-applet (0.7.0-2) UNRELEASED; urgency=low
+
+  * debian/patches/01-dbus_access_nm_applet.patch
+    - Remove bare send_interface directives to avoid non-deterministic allow
+      messages with no interface. (Closes: #510728)
+    - Do not allow unpriviledged processes to ask for a users' connections.
+    - Allow introspection by default.
+
+ -- Michael Biebl <biebl at debian.org>  Fri, 06 Feb 2009 00:26:45 +0100
+
 network-manager-applet (0.7.0-1) experimental; urgency=low
 
   * New upstream release.

Modified: packages/experimental/network-manager-applet/debian/patches/01-dbus_access_nm_applet.patch
URL: http://svn.debian.org/wsvn/pkg-utopia/packages/experimental/network-manager-applet/debian/patches/01-dbus_access_nm_applet.patch?rev=2767&op=diff
==============================================================================
--- packages/experimental/network-manager-applet/debian/patches/01-dbus_access_nm_applet.patch (original)
+++ packages/experimental/network-manager-applet/debian/patches/01-dbus_access_nm_applet.patch Thu Feb  5 23:29:19 2009
@@ -1,20 +1,45 @@
-Index: network-manager-applet/nm-applet.conf
+Index: network-manager-applet-0.7.0/nm-applet.conf
 ===================================================================
---- network-manager-applet.orig/nm-applet.conf	2008-06-08 23:36:33.000000000 +0200
-+++ network-manager-applet/nm-applet.conf	2008-06-11 12:44:22.000000000 +0200
-@@ -20,6 +20,15 @@
+--- network-manager-applet-0.7.0.orig/nm-applet.conf	2007-12-12 11:17:44.000000000 +0100
++++ network-manager-applet-0.7.0/nm-applet.conf	2009-02-06 00:23:03.000000000 +0100
+@@ -6,27 +6,30 @@
+ 		<allow own="org.freedesktop.NetworkManagerUserSettings"/>
+ 
+ 		<allow send_destination="org.freedesktop.NetworkManagerUserSettings"/>
+-		<allow send_interface="org.freedesktop.NetworkManagerSettings"/>
+-
+-		<!-- Only root can get secrets -->
+-		<allow send_interface="org.freedesktop.NetworkManagerSettings.Secrets"/>
+ 	</policy>
+ 	<policy at_console="true">
+ 		<allow own="org.freedesktop.NetworkManagerUserSettings"/>
+ 
+ 		<allow send_destination="org.freedesktop.NetworkManagerUserSettings"/>
+-		<allow send_interface="org.freedesktop.NetworkManagerSettings"/>
+ 
  		<!-- Only root can get secrets -->
- 		<deny send_interface="org.freedesktop.NetworkManagerSettings.Secrets"/>
+-		<deny send_interface="org.freedesktop.NetworkManagerSettings.Secrets"/>
++		<deny send_destination="org.freedesktop.NetworkManagerUserSettings"
++		      send_interface="org.freedesktop.NetworkManagerSettings.Secrets"/>
  	</policy>
+-	<policy context="default">
+-		<deny own="org.freedesktop.NetworkManagerUserSettings"/>
 +	<policy group="netdev">
 +		<allow own="org.freedesktop.NetworkManagerUserSettings"/>
+ 
+ 		<allow send_destination="org.freedesktop.NetworkManagerUserSettings"/>
+-		<allow send_interface="org.freedesktop.NetworkManagerSettings"/>
 +
-+		<allow send_destination="org.freedesktop.NetworkManagerUserSettings"/>
-+		<allow send_interface="org.freedesktop.NetworkManagerSettings"/>
+ 		<!-- Only root can get secrets -->
+-		<deny send_interface="org.freedesktop.NetworkManagerSettings.Secrets"/>
++		<allow send_destination="org.freedesktop.NetworkManagerUserSettings"
++		       send_interface="org.freedesktop.NetworkManagerSettings.Secrets"/>
++	</policy>
++	<policy context="default">
++		<deny send_destination="org.freedesktop.NetworkManagerUserSettings"/>
 +
-+		<!-- Only root can get secrets -->
-+		<deny send_interface="org.freedesktop.NetworkManagerSettings.Secrets"/>
-+	</policy>
- 	<policy context="default">
- 		<deny own="org.freedesktop.NetworkManagerUserSettings"/>
++		<allow send_destination="org.freedesktop.NetworkManagerUserSettings"
++		       send_interface="org.freedesktop.DBus.Introspectable"/>
+ 	</policy>
  
+ 	<limit name="max_replies_per_connection">512</limit>




More information about the Pkg-utopia-commits mailing list