[Mono-bugs] [Bug 77340][Maj] Changed - Local user can overwrite arbitrary file using mono-service

bugzilla-daemon at bugzilla.ximian.com bugzilla-daemon at bugzilla.ximian.com
Sun Jul 30 15:09:51 EDT 2006


Please do not reply to this email- if you want to comment on the bug, go to the
URL shown below and enter your comments there.

Changed by miguel at ximian.com.

http://bugzilla.ximian.com/show_bug.cgi?id=77340

--- shadow/77340	2006-07-30 08:43:53.000000000 -0400
+++ shadow/77340.tmp.16346	2006-07-30 15:09:51.000000000 -0400
@@ -1,12 +1,12 @@
 Bug#: 77340
 Product: Mono: Tools
 Version: 1.1
 OS: GNU/Linux [Other]
 OS Details: 
-Status: NEW   
+Status: RESOLVED   
 Resolution: 
 Severity: Unknown
 Priority: Major
 Component: tools
 AssignedTo: mono-bugs at ximian.com                            
 ReportedBy: pawel.sakowski at mind-breeze.com               
@@ -62,6 +62,11 @@
 This critical security bug has been open for six months without
 getting assigned or commented on, so I'll be happy to remove the
 script from the install target in a couple of days if there's no
 further comment as it seems to be unmaintained, and no changes have
 been made since my 2006-04-21 fixes.
 
+
+------- Additional Comments From miguel at ximian.com  2006-07-30 15:09 -------
+Fixed by using O_EXCL in the open call
+
+You can also use the -l: argument to specify the lockfile


More information about the mono-bugs mailing list