diff options
author | Patrick J Volkerding <volkerdi@slackware.com> | 2022-03-12 20:57:35 +0000 |
---|---|---|
committer | Eric Hameleers <alien@slackware.com> | 2022-03-13 13:29:55 +0100 |
commit | 477bd290fa9a178a3db0fe07169bcad10037cdcd (patch) | |
tree | 34006450b3362b0ac74166b3c53244bd31e92734 /patches/source/polkit/dont-set-wheel-group-as-admin.diff | |
parent | 9ebdf8edc0f0d06f18a4226b17f9c9cbb7d77cfc (diff) | |
download | current-26c031884b16a3e6c6f96f81dc6f59dd06008889.tar.gz current-26c031884b16a3e6c6f96f81dc6f59dd06008889.tar.xz |
Sat Mar 12 20:57:35 UTC 202220220312205735_15.0
patches/packages/polkit-0.120-x86_64-3_slack15.0.txz: Rebuilt.
Patched to fix a security issue where an unprivileged user could cause a
denial of service due to process file descriptor exhaustion.
Thanks to marav.
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-4115
(* Security fix *)
Diffstat (limited to 'patches/source/polkit/dont-set-wheel-group-as-admin.diff')
-rw-r--r-- | patches/source/polkit/dont-set-wheel-group-as-admin.diff | 10 |
1 files changed, 10 insertions, 0 deletions
diff --git a/patches/source/polkit/dont-set-wheel-group-as-admin.diff b/patches/source/polkit/dont-set-wheel-group-as-admin.diff new file mode 100644 index 000000000..6a86ac280 --- /dev/null +++ b/patches/source/polkit/dont-set-wheel-group-as-admin.diff @@ -0,0 +1,10 @@ +diff -Nur polkit-0.112.orig/src/polkitbackend/50-default.rules polkit-0.112/src/polkitbackend/50-default.rules +--- polkit-0.112.orig/src/polkitbackend/50-default.rules 2013-04-29 12:28:57.000000000 -0500 ++++ polkit-0.112/src/polkitbackend/50-default.rules 2015-01-01 23:32:40.154400050 -0600 +@@ -8,5 +8,5 @@ + // about configuring polkit. + + polkit.addAdminRule(function(action, subject) { +- return ["unix-group:wheel"]; ++ return ["unix-user:root"]; + }); |