Bug#662029: [Secure-testing-team] Bug#662029: systemd: local denial of login or local users can create arbitrary services

2012-03-04 Thread Henri Salo
On Sun, Mar 04, 2012 at 09:49:45AM +0100, Helmut Grohne wrote: > On Sun, Mar 04, 2012 at 10:08:47AM +0200, Henri Salo wrote: > > On Sat, Mar 03, 2012 at 06:39:57PM +0100, Helmut Grohne wrote: > > > Forwarded: https://bugzilla.redhat.com/show_bug.cgi?id=680122 > > Does this security issue have CVE-i

Bug#662029: [Secure-testing-team] Bug#662029: systemd: local denial of login or local users can create arbitrary services

2012-03-04 Thread Helmut Grohne
On Sun, Mar 04, 2012 at 10:08:47AM +0200, Henri Salo wrote: > On Sat, Mar 03, 2012 at 06:39:57PM +0100, Helmut Grohne wrote: > > Forwarded: https://bugzilla.redhat.com/show_bug.cgi?id=680122 > Does this security issue have CVE-identifier assigned? I can request one if > needed. I don't think so.

Bug#662029: [Secure-testing-team] Bug#662029: systemd: local denial of login or local users can create arbitrary services

2012-03-04 Thread Henri Salo
On Sat, Mar 03, 2012 at 06:39:57PM +0100, Helmut Grohne wrote: > Package: systemd > Version: 37-1 > Severity: important > Tags: security > Forwarded: https://bugzilla.redhat.com/show_bug.cgi?id=680122 > > By invoking systemctl status somename.service any user can create an > entry in systemd's ser