Overview

Request 101814 accepted

Fix /proc//mem handling (bnc#742279, CVE-2012-0056).

As this is a serious local privilege escalation, I would like to see a timely inclusion. For update risks, ask a (SUSE) kernel developer.

Request History
Tobias Burnus's avatar

burnus created request

Fix /proc//mem handling (bnc#742279, CVE-2012-0056).

As this is a serious local privilege escalation, I would like to see a timely inclusion. For update risks, ask a (SUSE) kernel developer.


Saul Goodman's avatar

licensedigger added a reviewer

{"delegate": "license change"}


Factory Auto's avatar

factory-auto declined request

Output of check script:
Source URLs are not valid. Try "osc service localrun download_files"


Stephan Kulow's avatar

coolo added a reviewer

looks like script bug


Tobias Burnus's avatar

burnus added a reviewer

REOPEN: Works for me, kind of: "osc -v service localrun download_files" calls "/usr/lib/obs/service/download_files --outdir /tmp/tmpdhwzET", which downloads linux-3.2.tar.bz2. As soon as it is done, it deletes the file and downloads it again such that "osc" is stuck. As that is the only Source with URL in the .spec, I conclude that the .spec is OK in this regard.


Factory Auto's avatar

factory-auto added a reviewer

Please review sources


Sascha Peilicke's avatar

saschpe approved review

Thanks


Stephan Kulow's avatar

coolo accepted request

checkin


Saul Goodman's avatar

licensedigger accepted review

{"delegate": "license change"}


Factory Auto's avatar

factory-auto accepted review

Builds for repo standard


Stephan Kulow's avatar

coolo accepted review


Ciaran Farrell's avatar

babelworx accepted review

reviewed, okay
ok


Sascha Peilicke's avatar

saschpe accepted review

Thanks

openSUSE Build Service is sponsored by