Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 95251 - Make portage warn when installing all world writable files.
Summary: Make portage warn when installing all world writable files.
Status: RESOLVED FIXED
Alias: None
Product: Portage Development
Classification: Unclassified
Component: Enhancement/Feature Requests (show other bugs)
Hardware: All All
: High normal
Assignee: Portage team
URL:
Whiteboard:
Keywords: InVCS
Depends on:
Blocks:
 
Reported: 2005-06-06 11:57 UTC by solar (RETIRED)
Modified: 2005-07-14 06:58 UTC (History)
1 user (show)

See Also:
Package list:
Runtime testing required: ---


Attachments
ebuild-warn-world-write.patch (ebuild-warn-world-write.patch,951 bytes, patch)
2005-06-06 11:57 UTC, solar (RETIRED)
Details | Diff

Note You need to log in before you can comment on or make changes to this bug.
Description solar (RETIRED) gentoo-dev 2005-06-06 11:57:15 UTC
Today the security team will be releasing a GLSA for bug 93558 which is 
about a faulty package that installs python files as mode 777 which
means it was most likely packaged on a windows host.

We had a short talk on #-security and decided it would be best to catch
these types of bugs early on.
Comment 1 solar (RETIRED) gentoo-dev 2005-06-06 11:57:51 UTC
Created attachment 60734 [details, diff]
ebuild-warn-world-write.patch

Patch also removes the UNSAFE bits from the suid apps.
Comment 2 Jason Stubbs (RETIRED) gentoo-dev 2005-07-14 05:48:14 UTC
Fixed on or before 2.0.51.22-r1 
Comment 3 Jason Stubbs (RETIRED) gentoo-dev 2005-07-14 06:58:52 UTC
Looking through the batch of bugs, I'm not sure that some of these are 
actually fixed in stable. Others, the requirements have possibly changed after 
the initial fix was committed. 
 
If you think this bug has been closed incorrectly, please reopen or ask that 
it be reopened.