[Secure-testing-team] Bug#820941: shorewall: /etc/init.d/shorewall disappeared

Oleg Shalaev chalaev at gmail.com
Wed Apr 13 19:53:17 UTC 2016


Package: shorewall
Version: 5.0.7.2-1
Severity: important
Tags: security

2016-04-12 (perhaps after upgrade) I discovered that the file /etc/init.d/shorewall disappeared, so shorewall does not autostart at boot. I can start it manually (with "service shorewall start") however.
This is a potential security issue because one may not notice immediately that his/her computer has lost its firewall.

-- System Information:
Debian Release: stretch/sid
  APT prefers testing
  APT policy: (500, 'testing'), (500, 'stable')
Architecture: amd64 (x86_64)

Kernel: Linux 4.4.0-1-amd64 (SMP w/4 CPU cores)
Locale: LANG=ru_RU.UTF-8, LC_CTYPE=ru_RU.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash
Init: systemd (via /run/systemd/system)

Versions of packages shorewall depends on:
ii  bc                     1.06.95-9+b1
ii  debconf [debconf-2.0]  1.5.59
ii  iproute2               4.3.0-1+b1
ii  iptables               1.6.0-2
ii  perl                   5.22.1-9
ii  shorewall-core         5.0.7.2-1

shorewall recommends no packages.

Versions of packages shorewall suggests:
ii  make           4.1-9
pn  shorewall-doc  <none>

-- Configuration Files:
/etc/default/shorewall changed:
startup=1
OPTIONS=""
STARTOPTIONS=""
RELOADOPTIONS=""
RESTARTOPTIONS=""
INITLOG=/dev/null
SAFESTOP=0

/etc/shorewall/conntrack [Errno 13] Permission denied: u'/etc/shorewall/conntrack'
/etc/shorewall/params [Errno 13] Permission denied: u'/etc/shorewall/params'

-- debconf information:
  shorewall/dont_restart:
  shorewall/major_release:
  shorewall/invalid_config:



More information about the Secure-testing-team mailing list