Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 261196 - games-arcade/emilia-pinball-0.3.1 triggers sandbox violations due to `chown` on symlinks
Summary: games-arcade/emilia-pinball-0.3.1 triggers sandbox violations due to `chown` ...
Status: RESOLVED DUPLICATE of bug 254914
Alias: None
Product: Portage Development
Classification: Unclassified
Component: Sandbox (show other bugs)
Hardware: All Linux
: High normal (vote)
Assignee: Sandbox Maintainers
URL:
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2009-03-04 17:28 UTC by Martin Väth
Modified: 2009-03-08 13:08 UTC (History)
0 users

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Martin Väth 2009-03-04 17:28:10 UTC
Not sure whether this is a sandbox or an emilia-pinball bug. (I am using
hardened-sources-2.6.28, so this might also be necessary to reproduce the bug).
When emerging games-arcade/emilia-pinball-0.3.1 without
FEATURES='-sandbox -usersandbox' leads to the access violation:

F: fchownat
S: deny
P: /proc/14673/fd/5/emilia-pinball
A: /proc/14673/fd/5/emilia-pinball
R: /usr/games/bin/pinball
C: chown root:games -R /var/tmp/portage/games-arcade/emilia
pinball-0.3.1/image///usr/games

F: fchownat
S: deny
P: /proc/14713/fd/4/emilia-pinball
A: /proc/14713/fd/4/emilia-pinball
R: /usr/games/bin/pinball
C: chown root:games -R /var/tmp/portage/games-arcade/emilia
pinball-0.3.1/image///usr/games/bin
Comment 1 Mr. Bones. (RETIRED) gentoo-dev 2009-03-04 21:29:39 UTC
seems like a bug in the sandbox if it worked with the previous version.
Comment 2 Tomáš Chvátal (RETIRED) gentoo-dev 2009-03-04 21:36:13 UTC
@wranglers: there is somewhere bug on sandbox-1.3.8 for this one, but i cant find it now...
Comment 3 SpanKY gentoo-dev 2009-03-05 02:01:01 UTC
no, it's a bug in emilia-pinball

it was a bug in sandbox in that it didnt flag this in previous versions

chown dereferences symlinks by default
Comment 4 SpanKY gentoo-dev 2009-03-05 02:07:34 UTC
should be fixed now

http://sources.gentoo.org/eclass/games.eclass?r1=1.133&r2=1.134
Comment 5 SpanKY gentoo-dev 2009-03-08 13:07:55 UTC
ok, scratch that, this seems to be a sandbox bug ... please see the duped bug

i'll revert my previous change to games.eclass
Comment 6 SpanKY gentoo-dev 2009-03-08 13:08:16 UTC

*** This bug has been marked as a duplicate of bug 254914 ***