Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 549380 - net-analyzer/nmap does not show filecaps message for existing users
Summary: net-analyzer/nmap does not show filecaps message for existing users
Status: RESOLVED OBSOLETE
Alias: None
Product: Gentoo Linux
Classification: Unclassified
Component: Current packages (show other bugs)
Hardware: All Linux
: Normal normal (vote)
Assignee: Gentoo Netmon project
URL:
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2015-05-13 14:29 UTC by Rick Farina (Zero_Chaos)
Modified: 2015-05-17 09:54 UTC (History)
0 users

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Rick Farina (Zero_Chaos) gentoo-dev 2015-05-13 14:29:26 UTC
Removing the version check for readme.gentoo_print_elog means that only users installing nmap for the first time will see the message and existing users won't.

This is a very poor user experience.

I really don't care that 9999 users miss the message, but users who upgrade into an fcaps capable version should get this message.  Please restore the version check with appropriate versions.
Comment 1 Jeroen Roovers (RETIRED) gentoo-dev 2015-05-14 08:12:50 UTC
I'll consider that when I'm done checking whether you opened a security hole. Right now it looks like any user can do privileged stuff with --privileged set.

We may end up reverting your work instead of fine-tuning when messages are sent out.
Comment 2 Jeroen Roovers (RETIRED) gentoo-dev 2015-05-14 08:45:31 UTC
I have removed the security hole you introduced. If you have any further ideas on security related features on netmon packages, then I expect you to show patches, not commits.
Comment 3 Rick Farina (Zero_Chaos) gentoo-dev 2015-05-14 15:39:38 UTC
(In reply to Jeroen Roovers from comment #2)
> I have removed the security hole you introduced. If you have any further
> ideas on security related features on netmon packages, then I expect you to
> show patches, not commits.

Please note, I intentionally didn't put the work into a keyworded version of nmap due to this concern.  An amount of discretion we don't seem to share.

https://sources.gentoo.org/cgi-bin/viewvc.cgi/gentoo-x86/net-analyzer/nmap/nmap-6.47-r3.ebuild?revision=1.1&view=markup

Perhaps we both could be more careful next time.
Comment 4 Jeroen Roovers (RETIRED) gentoo-dev 2015-05-17 09:54:08 UTC
(In reply to Rick Farina (Zero_Chaos) from comment #3)
> Perhaps we both could be more careful next time.

No, it's just you.