Bug 54542 - Serios security bug #48786 still present in current rawhide.
Serios security bug #48786 still present in current rawhide.
Status: CLOSED RAWHIDE
Product: Red Hat Raw Hide
Classification: Retired
Component: util-linux (Show other bugs)
1.0
i386 Linux
high Severity medium
: ---
: ---
Assigned To: Elliot Lee
Ben Levenson
: Security
Depends On:
Blocks:
  Show dependency treegraph
 
Reported: 2001-10-11 12:05 EDT by Alexander Kanevskiy
Modified: 2007-03-26 23:49 EDT (History)
0 users

See Also:
Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of:
Environment:
Last Closed: 2001-10-11 16:13:53 EDT
Type: ---
Regression: ---
Mount Type: ---
Documentation: ---
CRM:
Verified Versions:
Category: ---
oVirt Team: ---
RHEL 7.3 requirements from Atomic Host:


Attachments (Terms of Use)

  None (edit)
Description Alexander Kanevskiy 2001-10-11 12:05:14 EDT
Description of Problem:

security problem described in bug #48786 still presents in current 
rawhide:

[root@sos kad]# ls -l /etc/shadow
-rw-------    1 root     root         1199 PP:Q 11 18:48 /etc/shadow
[root@sos kad]# vipw
You are using shadow passwords on this system.
Would you like to edit /etc/shadow now [y/n]? y
[root@sos kad]# ls -l /etc/shadow
-rw-r--r--    1 root     root         1199 Oct 11 18:53 /etc/shadow
[root@sos kad]# rpm -q util-linux
util-linux-2.11f-10
[root@sos kad]#
Comment 1 Gilles J. Seguin 2001-10-11 15:29:04 EDT
not able to reproduce
Comment 2 Alexander Kanevskiy 2001-10-11 16:13:49 EDT
type:

vipw
:wq
y
:wq
ls -l /etc/shadow
Comment 3 Bill Nottingham 2001-10-11 22:46:55 EDT
Note 'Patch9:' line in spec file.
Note no corresponding %patch9 line.

egg -> face.

Fixed in -12.

Note You need to log in before you can comment on or make changes to this bug.