LWN.net Logo

fdupes: file permission overwrite

Package(s):fdupes CVE #(s):
Created:July 31, 2013 Updated:July 31, 2013
Description: From the Red Hat bugzilla:

A SUSE bug report noted a problem with how fdupes is used in the %fdupes RPM macro. When there are two files with identical content that differs in owner/group/permissions, the %fdupes macro overwrites one of the files with a link that effectively gives both files the same owner/group/permissions. If one of the files has tighter permissions than the other, this could result in one of the files having more relaxed permissions than appropriate.

Alerts:
Fedora FEDORA-2013-13202 2013-07-30
Fedora FEDORA-2013-13166 2013-07-30
Fedora FEDORA-2013-13176 2013-07-30

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds