[augeas-devel] CVE-2013-6412 PR review

Dominic Cleal dcleal at redhat.com
Tue Jan 14 09:55:54 UTC 2014


Great, thanks David.

Credit for discovering the issue goes to Tomas Hoger of the Red Hat
Security Response Team - thanks!

-- 
Dominic Cleal
Red Hat Engineering

On 14/01/14 00:48, David Lutterkort wrote:
> I finally reviewed and merged that change. Excellent find.
> 
> David
> 
> 
> On Thu, Jan 2, 2014 at 6:18 AM, Dominic Cleal <dcleal at redhat.com
> <mailto:dcleal at redhat.com>> wrote:
> 
>     Hi folks,
> 
>     Is anybody free to review a PR for CVE-2013-6412?  It affects file modes
>     when creating new files from Augeas under restrictive umasks.
> 
>     https://github.com/hercules-team/augeas/pull/58
>     https://bugzilla.redhat.com/show_bug.cgi?id=1034261
> 
>     Thanks,
> 
>     --
>     Dominic Cleal
>     Red Hat Engineering
> 
>     _______________________________________________
>     augeas-devel mailing list
>     augeas-devel at redhat.com <mailto:augeas-devel at redhat.com>
>     https://www.redhat.com/mailman/listinfo/augeas-devel
> 
> 




More information about the augeas-devel mailing list