(Sorry if this ends up getting duplicated, had mail server issues, and there may be deferred copies floating around somewhere.)
Two changes: 1. Report failures from calling fchmodat with AT_SYMLINK_NOFOLLOW, because otherwise GNU tar won't set modes as well as we would like it to. (No effect on generated filesystems, I think, just on the underlying local filesystem.) 2. Mask out write bits for non-user in the real filesystem, so other users can't add stuff to the mode 777 directories in your rootfs. The following changes since commit e273301efa0037a13c3a60b4414140364d9c9873: gstreamer/lame: Better gcc 4.9 fix (2014-05-15 23:27:41 +0100) are available in the git repository at: git://git.yoctoproject.org/poky-contrib sees/pseudo-fchmodat http://git.yoctoproject.org/cgit.cgi/poky-contrib/log/?h=seebs/pseudo-fchmodat Peter Seebach (1): pseudo: handle fchmodat better, mask out unwanted write bits .../pseudo/files/pseudo-fchmodat-permissions.patch | 98 ++++++++++++++++++++ meta/recipes-devtools/pseudo/pseudo_1.5.1.bb | 3 +- 2 files changed, 100 insertions(+), 1 deletions(-) create mode 100644 meta/recipes-devtools/pseudo/files/pseudo-fchmodat-permissions.patch -- _______________________________________________ Openembedded-core mailing list Openembedded-core@lists.openembedded.org http://lists.openembedded.org/mailman/listinfo/openembedded-core