summaryrefslogtreecommitdiffstats
path: root/patches/source/polkit/dont-set-wheel-group-as-admin.diff
diff options
context:
space:
mode:
author Patrick J Volkerding <volkerdi@slackware.com>2022-03-12 20:57:35 +0000
committer Eric Hameleers <alien@slackware.com>2022-03-13 13:29:55 +0100
commit477bd290fa9a178a3db0fe07169bcad10037cdcd (patch)
tree34006450b3362b0ac74166b3c53244bd31e92734 /patches/source/polkit/dont-set-wheel-group-as-admin.diff
parent9ebdf8edc0f0d06f18a4226b17f9c9cbb7d77cfc (diff)
downloadcurrent-26c031884b16a3e6c6f96f81dc6f59dd06008889.tar.gz
current-26c031884b16a3e6c6f96f81dc6f59dd06008889.tar.xz
Sat Mar 12 20:57:35 UTC 202220220312205735_15.0
patches/packages/polkit-0.120-x86_64-3_slack15.0.txz: Rebuilt. Patched to fix a security issue where an unprivileged user could cause a denial of service due to process file descriptor exhaustion. Thanks to marav. For more information, see: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-4115 (* Security fix *)
Diffstat (limited to 'patches/source/polkit/dont-set-wheel-group-as-admin.diff')
-rw-r--r--patches/source/polkit/dont-set-wheel-group-as-admin.diff10
1 files changed, 10 insertions, 0 deletions
diff --git a/patches/source/polkit/dont-set-wheel-group-as-admin.diff b/patches/source/polkit/dont-set-wheel-group-as-admin.diff
new file mode 100644
index 000000000..6a86ac280
--- /dev/null
+++ b/patches/source/polkit/dont-set-wheel-group-as-admin.diff
@@ -0,0 +1,10 @@
+diff -Nur polkit-0.112.orig/src/polkitbackend/50-default.rules polkit-0.112/src/polkitbackend/50-default.rules
+--- polkit-0.112.orig/src/polkitbackend/50-default.rules 2013-04-29 12:28:57.000000000 -0500
++++ polkit-0.112/src/polkitbackend/50-default.rules 2015-01-01 23:32:40.154400050 -0600
+@@ -8,5 +8,5 @@
+ // about configuring polkit.
+
+ polkit.addAdminRule(function(action, subject) {
+- return ["unix-group:wheel"];
++ return ["unix-user:root"];
+ });