From ${URL} : The following flaw was found in man-db: The daily mandb cleanup job for old catman pages changes the permissions of all non-man files to user man. Originally filed against Ubuntu: https://bugs.launchpad.net/ubuntu/+source/man-db/+bug/1482786 External References: http://www.halfdog.net/Security/2015/MandbSymlinkLocalRootPrivilegeEscalation/ @maintainer(s): after the bump, in case we need to stabilize the package, please let us know if it is ready for the stabilization or not.
the bug in question is about the cron script Ubuntu uses. our script isn't impacted as we don't chown files under the cache dir.