[Pkg-libvirt-maintainers] Bug#637437: update-guestfs-appliance: broken permissions on base.img/hostfiles with a restrictive umask

Paul Wise pabs at debian.org
Thu Aug 11 09:33:35 UTC 2011


Package: libguestfs0
Version: 1.10.6-3
Severity: normal
File: /usr/sbin/update-guestfs-appliance

I use a restrictive umask (0027) and when I manually ran
update-guestfs-appliance, the permissions on these two files did not
allow world-readability:

pabs at chianamo:~/misc/systems/windows$ ll /usr/lib/guestfs/supermin.d/{base.img,hostfiles}
-rw-r----- 1 root root 595K Aug 10 19:34 /usr/lib/guestfs/supermin.d/base.img
-rw-r----- 1 root root 157K Aug 10 19:34 /usr/lib/guestfs/supermin.d/hostfiles

This prevented me from using the virt tools as a normal user.

-- System Information:
Debian Release: wheezy/sid
  APT prefers testing
  APT policy: (700, 'testing'), (600, 'unstable'), (550, 'experimental')
Architecture: amd64 (x86_64)

Kernel: Linux 3.0.0-1-amd64 (SMP w/4 CPU cores)
Locale: LANG=en_AU.utf8, LC_CTYPE=en_AU.utf8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash

Versions of packages libguestfs0 depends on:
ii  binutils  2.21.52.20110606-2             The GNU assembler, linker and bina
ii  bsdmainut 8.2.3                          collection of more utilities from 
ii  btrfs-too 0.19+20100601-3                Checksumming Copy on Write Filesys
ii  cpio      2.11-7                         GNU cpio -- a program to manage ar
ii  cryptsetu 2:1.3.0-3                      configures encrypted block devices
ii  debconf [ 1.5.40                         Debian configuration management sy
ii  diffutils 1:3.0-1                        File comparison utilities
ii  dosfstool 3.0.9-1                        utilities for making and checking 
ii  febootstr 3.7-2                          tool for building supermin applian
ii  file      5.04-5+b1                      Determines file type using "magic"
ii  grub-pc   1.99-9                         GRand Unified Bootloader, version 
ii  iproute   20110629-1                     networking and traffic control too
ii  jfsutils  1.1.15-1                       utilities for managing the JFS fil
ii  libaugeas 0.8.1-2                        Augeas configuration editing libra
ii  libc6     2.13-10                        Embedded GNU C Library: Shared lib
ii  libhivex0 1.2.7-1                        library for reading and writing Wi
ii  libmagic1 5.04-5+b1                      File type determination library us
ii  libpcre3  8.12-3                         Perl 5 Compatible Regular Expressi
ii  libvirt0  0.9.3-4                        library for interfacing with diffe
ii  libxml2   2.7.8.dfsg-4                   GNOME XML library
ii  linux-ima 3.0.0+39                       Linux for 64-bit PCs (dummy packag
ii  lsof      4.81.dfsg.1-1                  List open files
ii  lvm2      2.02.84-3.1                    The Linux Logical Volume Manager
ii  module-in 3.16-1                         tools for managing Linux kernel mo
ii  net-tools 1.60-24.1                      The NET-3 networking toolkit
ii  ntfs-3g [ 1:2011.4.12AR.4-2              read/write NTFS driver for FUSE
ii  parted    2.3-8                          disk partition manipulator
ii  procps    1:3.2.8-11                     /proc file system utilities
ii  qemu-kvm  0.14.1+dfsg-4                  Full virtualization on x86 hardwar
ii  reiserfsp 1:3.6.21-1                     User-level tools for ReiserFS file
ii  scrub     2.4-2                          writes patterns on magnetic media 
ii  strace    4.5.20-2.3                     A system call tracer
ii  udev      172-1                          /dev/ and hotplug management daemo
ii  vim-tiny  2:7.3.154+hg~74503f6ee649-2+b1 Vi IMproved - enhanced vi editor -
ii  xfsprogs  3.1.5                          Utilities for managing the XFS fil
ii  xz-utils  5.0.0-2                        XZ-format compression utilities
ii  zerofree  1.0.1-2                        zero free blocks from ext2/3 file-
ii  zfs-fuse  0.6.9-1+b1                     ZFS on FUSE

-- debconf information:
* libguestfs/update-appliance: false

-- 
bye,
pabs

http://wiki.debian.org/PaulWise

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 198 bytes
Desc: This is a digitally signed message part
URL: <http://lists.alioth.debian.org/pipermail/pkg-libvirt-maintainers/attachments/20110811/43f91c5b/attachment.pgp>


More information about the Pkg-libvirt-maintainers mailing list