OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Maxim Sobolev (sobomaxFreeBSD.org)
Date: Fri Jun 07 2002 - 01:08:02 CDT

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    >
    > >
    > > Hi,
    > >
    > > I've just noticed that something wrong with the new tar in the base
    > > system (1.13.25) - when extracting some archives it creates 777 dirs,
    > > while permissions in the archive itself are OK (for example GNU make
    > > make-3.79.1.tar.gz - top level dir gets 777 as well as several
    > > other lowel level dirs). The issue is under investigation.
    >
    > Should be solved now. Stupid GNU folks for some reason decided that
    > when tar is executed as uid 0 then by default umask(2) should not be
    > applied to files and dirs being extracted.

    That said, anybody who runs 5.0-CURRENT with the new tar is advised to
    clean up all ports' WRKDIRs she might have, to avoid being trojaned
    by a local user.

    -Maxim

    To Unsubscribe: send mail to majordomoFreeBSD.org
    with "unsubscribe freebsd-security" in the body of the message