[Touch-packages] [Bug 1814596] Re: DynamicUser can create setuid binaries when assisted by another process

2021-02-24 Thread Dan Streetman
This appears to already be fixed; when running the reproducer it fails to fchmod: Feb 24 13:11:24 lp1814596-b breakout_assisted[16574]: got rootfd from other chroot... Feb 24 13:11:24 lp1814596-b breakout_assisted[16574]: chdir successful, am now in /home/ubuntu/systemd_uidleak Feb 24 13:11:24

[Touch-packages] [Bug 1814596] Re: DynamicUser can create setuid binaries when assisted by another process

2020-07-02 Thread Steve Langasek
** Changed in: systemd (Ubuntu Disco) Status: New => Won't Fix -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to systemd in Ubuntu. https://bugs.launchpad.net/bugs/1814596 Title: DynamicUser can create setuid binaries

[Touch-packages] [Bug 1814596] Re: DynamicUser can create setuid binaries when assisted by another process

2019-10-09 Thread Alex Murray
DynamicUser is only supported in systemd>=235 so this is not needed for xenial, only bionic and disco. ** Also affects: systemd (Ubuntu Bionic) Importance: Undecided Status: New ** Also affects: systemd (Ubuntu Disco) Importance: Undecided Status: New -- You received this

[Touch-packages] [Bug 1814596] Re: DynamicUser can create setuid binaries when assisted by another process

2019-10-09 Thread Balint Reczey
This is fixed in systemd 242 present in Eoan. @seth-arnold Please target to releases to which the fix should be backported according to Security Team's opinion. ** Changed in: systemd (Ubuntu) Status: Confirmed => Fix Released -- You received this bug notification because you are a

[Touch-packages] [Bug 1814596] Re: DynamicUser can create setuid binaries when assisted by another process

2019-08-06 Thread Eduardo dos Santos Barretto
** Changed in: systemd (Ubuntu) Status: New => Confirmed -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to systemd in Ubuntu. https://bugs.launchpad.net/bugs/1814596 Title: DynamicUser can create setuid binaries when

[Touch-packages] [Bug 1814596] Re: DynamicUser can create setuid binaries when assisted by another process

2019-04-25 Thread Seth Arnold
Thanks Jann ** Information type changed from Private Security to Public Security -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to systemd in Ubuntu. https://bugs.launchpad.net/bugs/1814596 Title: DynamicUser can create