[Mono-bugs] [Bug 77340][Maj] Changed - Local user can overwrite arbitrary file using mono-service

bugzilla-daemon at bugzilla.ximian.com bugzilla-daemon at bugzilla.ximian.com
Sun Jul 30 15:09:51 EDT 2006

Please do not reply to this email- if you want to comment on the bug, go to the
URL shown below and enter your comments there.

Changed by miguel at ximian.com.


--- shadow/77340	2006-07-30 08:43:53.000000000 -0400
+++ shadow/77340.tmp.16346	2006-07-30 15:09:51.000000000 -0400
@@ -1,12 +1,12 @@
 Bug#: 77340
 Product: Mono: Tools
 Version: 1.1
 OS: GNU/Linux [Other]
 OS Details: 
-Status: NEW   
+Status: RESOLVED   
 Severity: Unknown
 Priority: Major
 Component: tools
 AssignedTo: mono-bugs at ximian.com                            
 ReportedBy: pawel.sakowski at mind-breeze.com               
@@ -62,6 +62,11 @@
 This critical security bug has been open for six months without
 getting assigned or commented on, so I'll be happy to remove the
 script from the install target in a couple of days if there's no
 further comment as it seems to be unmaintained, and no changes have
 been made since my 2006-04-21 fixes.
+------- Additional Comments From miguel at ximian.com  2006-07-30 15:09 -------
+Fixed by using O_EXCL in the open call
+You can also use the -l: argument to specify the lockfile

More information about the mono-bugs mailing list