SPECS: adapter.awk - notice suid programs marked with glob in file...

glen glen at pld-linux.org
Tue Dec 27 02:09:23 CET 2005


Author: glen                         Date: Tue Dec 27 01:09:23 2005 GMT
Module: SPECS                         Tag: HEAD
---- Log message:
- notice suid programs marked with glob in filelist

---- Files affected:
SPECS:
   adapter.awk (1.255 -> 1.256) 

---- Diffs:

================================================================
Index: SPECS/adapter.awk
diff -u SPECS/adapter.awk:1.255 SPECS/adapter.awk:1.256
--- SPECS/adapter.awk:1.255	Tue Dec 27 01:25:21 2005
+++ SPECS/adapter.awk	Tue Dec 27 02:09:17 2005
@@ -1088,6 +1088,11 @@
 		$0 = $0 " # FIXME nobody user/group can't own files! -adapter.awk"
 	}
 
+	# suid programs with globs are evil
+	if (/%attr\(4...,.*\*/ && !/FIXME/) {
+		$0 = $0 " # FIXME no globs for suid files"
+	}
+
 	# replace back
 	gsub("%{_sysconfdir}/cron\.d", "/etc/cron.d")
 	gsub("%{_sysconfdir}/crontab\.d", "/etc/crontab.d")
================================================================

---- CVS-web:
    http://cvs.pld-linux.org/SPECS/adapter.awk?r1=1.255&r2=1.256&f=u



More information about the pld-cvs-commit mailing list