Overview

Request 101056 revoked

- Fixed umask of /etc/mtab.tmp and get / drop group rights
before/after failed mounting. bnc#735342 / CVE-2011-3145

- Various security fixes (bnc#709771)
CVE-2011-1831 - Race condition when checking mountpoint during mount.
CVE-2011-1832 - Race condition when checking mountpoint during unmount.
CVE-2011-1833 - Race condition when checking source during mount.
CVE-2011-1834 - Improper mtab handling allowing corruption due to resource
limits, signals, etc.
CVE-2011-1835 - Key poisoning in ecryptfs-setup-private due to insecure temp
directory.
CVE-2011-1837 - Predictable lock counter name and associated races.

- Fix build with adding requires on mozilla-nss-devel and python-devel.
- Fix package list.

- Updated to 83
- lots of bugfixes
- improvements

- Package baselibs.conf

- Supplement pam-32bit/pam-64bit in baselibs.conf (bnc#354164).

Request History
Wolfgang Rosenauer's avatar

wrosenauer created request

- Fixed umask of /etc/mtab.tmp and get / drop group rights
before/after failed mounting. bnc#735342 / CVE-2011-3145

- Various security fixes (bnc#709771)
CVE-2011-1831 - Race condition when checking mountpoint during mount.
CVE-2011-1832 - Race condition when checking mountpoint during unmount.
CVE-2011-1833 - Race condition when checking source during mount.
CVE-2011-1834 - Improper mtab handling allowing corruption due to resource
limits, signals, etc.
CVE-2011-1835 - Key poisoning in ecryptfs-setup-private due to insecure temp
directory.
CVE-2011-1837 - Predictable lock counter name and associated races.

- Fix build with adding requires on mozilla-nss-devel and python-devel.
- Fix package list.

- Updated to 83
- lots of bugfixes
- improvements

- Package baselibs.conf

- Supplement pam-32bit/pam-64bit in baselibs.conf (bnc#354164).


Wolfgang Rosenauer's avatar

wrosenauer revoked request

openSUSE Build Service is sponsored by