severity 404927 normal
reassign 404927 linux-2.6
thanks
Ok, my mistake; Marco says that there is a kernel bug here still, because
the driver is still wrong to use this interface, and the udev changes are
only a workaround.
So this bug is still open, it's just no longer release-critical in
On Fri, Jan 05, 2007 at 03:23:40AM +0100, Marco d'Itri wrote:
On Jan 05, dann frazier [EMAIL PROTECTED] wrote:
Can you point me to (or explain) how the floppy group is currently
defined and how it is differentiated by plugdev?
It's supposed to be used for removable media: floppy disks,
On Jan 05, dann frazier [EMAIL PROTECTED] wrote:
Can you point me to (or explain) how the floppy group is currently
defined and how it is differentiated by plugdev?
It's supposed to be used for removable media: floppy disks, memory cards
or USB and firewire hard disks.
(Except optical
On Jan 04, dann frazier [EMAIL PROTECTED] wrote:
Mark Salyzyn's reply on LKML suggests that this problem maybe more
widespread and possibly difficult audit on the kernel side. Could
we do something like change the default block/removable device to
GROUP=disk, and override fd type devices w/
On Jan 04, dann frazier [EMAIL PROTECTED] wrote:
Right - but what I'm suggesting is that we change the default group
for removable block devices from floppy to disk.
e.g., something like this untested patch:
No way.
Look at the reactions to these bugs: #402622, #402649, #321642
BTW, I
On Thu, Jan 04, 2007 at 05:13:44PM +0100, Marco d'Itri wrote:
On Jan 04, dann frazier [EMAIL PROTECTED] wrote:
Mark Salyzyn's reply on LKML suggests that this problem maybe more
widespread and possibly difficult audit on the kernel side. Could
we do something like change the default
On Thu, Jan 04, 2007 at 05:39:31PM +0100, Marco d'Itri wrote:
On Jan 04, dann frazier [EMAIL PROTECTED] wrote:
Right - but what I'm suggesting is that we change the default group
for removable block devices from floppy to disk.
e.g., something like this untested patch:
No way.
Look at
On Jan 05, dann frazier [EMAIL PROTECTED] wrote:
Can you point me to (or explain) how the floppy group is currently
defined and how it is differentiated by plugdev?
It's supposed to be used for removable media: floppy disks, memory cards
or USB and firewire hard disks.
(Except optical media,
On Fri, Dec 29, 2006 at 11:29:59AM +0100, Marco d'Itri wrote:
reassign 404927 linux-2.6
thanks
On Dec 29, Stefanos Harhalakis [EMAIL PROTECTED] wrote:
Notice the 'aacraid' and 'adaptec' values that identify the hardware
raid controller and the 'removable flag. I believe that this is
On Jan 03, dann frazier [EMAIL PROTECTED] wrote:
Can you elaborate on what you believe the kernel is doing
incorrectly? My first guess would be the setting of the removable
flag, but aacraid claims to be setting this to prevent partition table
caching - do you believe that to be an incorrect
On Wed, Jan 03, 2007 at 11:49:51AM +0100, Marco d'Itri wrote:
Are there other drivers in this situation?
hey Marco,
Mark Salyzyn's reply on LKML suggests that this problem maybe more
widespread and possibly difficult audit on the kernel side. Could
we do something like change the default
Package: udev
Version: 0.103-1
Severity: critical
Tags: security
Justification: root security hole
Hi there,
Just noticed that udev sets the group of the hard disks to 'floppy'
making them r/w to this group (actually, tiger noticed it):
brw-rw 1 root floppy 8, 0 Dec 29 11:25 /dev/sda
reassign 404927 linux-2.6
thanks
On Dec 29, Stefanos Harhalakis [EMAIL PROTECTED] wrote:
Notice the 'aacraid' and 'adaptec' values that identify the hardware
raid controller and the 'removable flag. I believe that this is not
a misconfiguration of me and I don't have access to another
13 matches
Mail list logo