Fedora Account System
Red Hat Associate
Red Hat Customer
Description of problem: The systemd unit file flatpak-add-fedora-repos.service shipped by flatpak has executable permissions (0755) instead of the required 0644. This is a regression from Fedora 44. Per Fedora Packaging Guidelines for Systemd: "Unit files and drop-ins must be world-readable (i.e. mode 0644)" https://docs.fedoraproject.org/en-US/packaging-guidelines/Systemd/ Version-Release number of selected component: flatpak-1.18.0-2.fc45.aarch64 How reproducible: Always (100%) Steps to Reproduce: 1. Install flatpak-1.18.0-2.fc45 2. Run: stat -c "%a %n" /usr/lib/systemd/system/flatpak-add-fedora-repos.service 3. Run: rpm -ql --dump flatpak | grep "flatpak-add-fedora-repos.service" Actual Results: 755 /usr/lib/systemd/system/flatpak-add-fedora-repos.service Expected Results: 644 /usr/lib/systemd/system/flatpak-add-fedora-repos.service Additional info: - Regression: flatpak-1.18.0-1.fc44 ships this file with correct 0644 permissions. The file contents (SHA256) are identical between F44 and F45 - only the permissions changed. - Note: flatpak-system-helper.service in the same package is correctly 0644. The regression likely occurred during the Fedora 45 Mass Rebuild.
I think it's this line in flatpak.spec: install -D -t %{buildroot}%{_unitdir} %{SOURCE1} See: https://src.fedoraproject.org/rpms/flatpak/blob/rawhide/f/flatpak.spec I think it needs to specify the intended permissions with 'install --mode 644 ...' because the default is 755 or rwxr-xr-x: https://man7.org/linux/man-pages/man1/install.1.html However, it's not clear to me how the permissions in the RPM were not 755 before the Fedora 45 builds.