[Bug 1150336] New: AUDIT-1: roccat-tools: review of setgid directory /var/lib/roccat
http://bugzilla.suse.com/show_bug.cgi?id=1150336 Bug ID: 1150336 Summary: AUDIT-1: roccat-tools: review of setgid directory /var/lib/roccat Classification: openSUSE Product: openSUSE Tumbleweed Version: Current Hardware: Other OS: Other Status: NEW Severity: Normal Priority: P5 - None Component: Security Assignee: security-team@suse.de Reporter: matthias.gerstner@suse.com QA Contact: qa-bugs@suse.de CC: jsegitz@suse.com, malte.kraus@suse.com, matthias.gerstner@suse.com, mrueckert@suse.com Found By: --- Blocker: --- +++ This bug was initially created as a clone of Bug #1150189 Like discussed in the proactive security team we want to catch up with packages installing set*id items that haven't been whitelisted yet in the permissions package. Formerly this rpmlint check type didn't cause badness and therefore didn't require packagers to actually have them reviewed. roccat-tools is one of the packages installing a setgid directory that isn't currently whitelisted: /var/lib/roccat drwxrws--- from roccat-tools-5.7.0-1.7.i586.rpm The secure use of this directory needs to be reviewed and if all is good a whitelisting entry in all our permission profiles must be added. -- You are receiving this mail because: You are on the CC list for the bug.
http://bugzilla.suse.com/show_bug.cgi?id=1150336 Matthias Gerstner <matthias.gerstner@suse.com> changed: What |Removed |Added ---------------------------------------------------------------------------- CC| |matthias@mailaender.name -- You are receiving this mail because: You are on the CC list for the bug.
http://bugzilla.suse.com/show_bug.cgi?id=1150336 Matthias Gerstner <matthias.gerstner@suse.com> changed: What |Removed |Added ---------------------------------------------------------------------------- Blocks| |1150189 -- You are receiving this mail because: You are on the CC list for the bug.
http://bugzilla.suse.com/show_bug.cgi?id=1150336 Matthias Gerstner <matthias.gerstner@suse.com> changed: What |Removed |Added ---------------------------------------------------------------------------- Status|NEW |IN_PROGRESS Assignee|security-team@suse.de |matthias.gerstner@suse.com -- You are receiving this mail because: You are on the CC list for the bug.
http://bugzilla.suse.com/show_bug.cgi?id=1150336 http://bugzilla.suse.com/show_bug.cgi?id=1150336#c3 Matthias Gerstner <matthias.gerstner@suse.com> changed: What |Removed |Added ---------------------------------------------------------------------------- Status|IN_PROGRESS |RESOLVED Group|SUSE Security Internal, | |novellonly | Resolution|--- |INVALID --- Comment #3 from Matthias Gerstner <matthias.gerstner@suse.com> --- roccat-tools got deleted from Factory via sr#800517, because it failed to build for a long time (because the whitelisting wasn't in place). This was not the intention of the security team. The whitelisting requires the changes depicted in comment 2, however. When you want to re-add the package to Factory then feel free to adjust the package and re-open this bug. -- You are receiving this mail because: You are on the CC list for the bug.
https://bugzilla.suse.com/show_bug.cgi?id=1150336 https://bugzilla.suse.com/show_bug.cgi?id=1150336#c4 --- Comment #4 from Matthias Mailänder <matthias@mailaender.name> --- This software is unmaintained as the original developer resigned. No new hardware support will be added. https://www.reddit.com/r/linux_gaming/comments/5js1l2/im_stefan_achatz_stopp... -- You are receiving this mail because: You are on the CC list for the bug.
participants (2)
-
bugzilla_noreply@novell.com
-
bugzilla_noreply@suse.com