[Bug 1140993] New: iputils/ping: Drop effective capability

http://bugzilla.suse.com/show_bug.cgi?id=1140993 Bug ID: 1140993 Summary: iputils/ping: Drop effective capability Classification: openSUSE Product: openSUSE Tumbleweed Version: Current Hardware: Other OS: Other Status: NEW Severity: Normal Priority: P5 - None Component: Security Assignee: security-team@suse.de Reporter: petr.vorel@suse.com QA Contact: qa-bugs@suse.de Found By: --- Blocker: --- Upstream recommends using only permitted capability, effective capability is not needed [1] (done in [2]). [1] https://github.com/iputils/iputils/commit/368c345ff9a648ea28ece9725522f5363b... [2] https://github.com/iputils/iputils/commit/c81f2309b912a00d943afd887616c00a59... -- You are receiving this mail because: You are on the CC list for the bug.

http://bugzilla.suse.com/show_bug.cgi?id=1140993 http://bugzilla.suse.com/show_bug.cgi?id=1140993#c1 --- Comment #1 from Petr Vorel <petr.vorel@suse.com> --- PR solving this was prepared (fixing more than this bug): https://github.com/openSUSE/permissions/pull/24 -- You are receiving this mail because: You are on the CC list for the bug.

http://bugzilla.suse.com/show_bug.cgi?id=1140993 http://bugzilla.suse.com/show_bug.cgi?id=1140993#c2 Matthias Gerstner <matthias.gerstner@suse.com> changed: What |Removed |Added ---------------------------------------------------------------------------- Status|NEW |IN_PROGRESS CC| |matthias.gerstner@suse.com --- Comment #2 from Matthias Gerstner <matthias.gerstner@suse.com> --- Since upstream says their utility is now capability aware I'm fine with dropping the effective bit. Since is is only tighter security I'm fine with the change and no further review should be required. -- You are receiving this mail because: You are on the CC list for the bug.

http://bugzilla.suse.com/show_bug.cgi?id=1140993 http://bugzilla.suse.com/show_bug.cgi?id=1140993#c3 Matthias Gerstner <matthias.gerstner@suse.com> changed: What |Removed |Added ---------------------------------------------------------------------------- Status|IN_PROGRESS |RESOLVED Resolution|--- |FIXED --- Comment #3 from Matthias Gerstner <matthias.gerstner@suse.com> --- Just like bug 1140991 this change is on its way to Factory via sr#714433. Closing as FIXED. Thanks! -- You are receiving this mail because: You are on the CC list for the bug.

https://bugzilla.suse.com/show_bug.cgi?id=1140993 Petr Vorel <petr.vorel@suse.com> changed: What |Removed |Added ---------------------------------------------------------------------------- See Also| |https://bugzilla.suse.com/s | |how_bug.cgi?id=1194156 -- You are receiving this mail because: You are on the CC list for the bug.
participants (2)
-
bugzilla_noreply@novell.com
-
bugzilla_noreply@suse.com