Marc Sherman
2005-Jan-20 15:20 UTC
[Logcheck-devel] Bug#291395: logcheck-database: Rules dirs are setuid, they should be setgid
Package: logcheck-database Version: 1.2.33 Severity: normal I just installed 1.2.33, and it made my rules dirs setuid, not setgid... - Marc -- System Information: Debian Release: 3.1 APT prefers testing APT policy: (900, 'testing'), (300, 'unstable') Architecture: i386 (i686) Kernel: Linux 2.6.8-1-k7 Locale: LANG=en_CA, LC_CTYPE=en_CA (charmap=ISO-8859-1) Versions of packages logcheck-database depends on: ii debconf [debconf-2.0] 1.4.30.11 Debian configuration management sy -- debconf information: logcheck-database/conffile-cleanup: false logcheck-database/rules-directories-note: logcheck-database/standard-rename-note:
Todd Troxell
2005-Jan-20 18:23 UTC
Bug#291395: [Logcheck-devel] Bug#291395: logcheck-database: Rules dirs are setuid, they should be setgid
On Thu, Jan 20, 2005 at 10:20:29AM -0500, Marc Sherman wrote:> I just installed 1.2.33, and it made my rules dirs setuid, not setgid...Oops, good catch. I'll get this uploaded shortly. Cheers, -Todd> -- System Information: > Debian Release: 3.1 > APT prefers testing > APT policy: (900, 'testing'), (300, 'unstable') > Architecture: i386 (i686) > Kernel: Linux 2.6.8-1-k7 > Locale: LANG=en_CA, LC_CTYPE=en_CA (charmap=ISO-8859-1) > > Versions of packages logcheck-database depends on: > ii debconf [debconf-2.0] 1.4.30.11 Debian configuration management sy > > -- debconf information: > logcheck-database/conffile-cleanup: false > logcheck-database/rules-directories-note: > logcheck-database/standard-rename-note: > > > _______________________________________________ > Logcheck-devel mailing list > Logcheck-devel at lists.alioth.debian.org > lists.alioth.debian.org/mailman/listinfo/logcheck-devel-- [ Todd J. Troxell ,''`. Student, Debian GNU/Linux Developer, SysAdmin, Geek : :' : debian.org || rapidpacket.com/~xtat `. `' `- ] -------------- next part -------------- A non-text attachment was scrubbed... Name: not available Type: application/pgp-signature Size: 189 bytes Desc: Digital signature Url : lists.alioth.debian.org/pipermail/logcheck-devel/attachments/20050120/7fb7e73e/attachment.pgp
Debian Bug Tracking System
2005-Jan-24 03:18 UTC
[Logcheck-devel] Bug#291395: marked as done (logcheck-database: Rules dirs are setuid, they should be setgid)
Your message dated Sun, 23 Jan 2005 22:02:06 -0500 with message-id <E1CsuUQ-0007X2-00 at newraff.debian.org> and subject line Bug#291395: fixed in logcheck 1.2.34 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what I am talking about this indicates a serious mail system misconfiguration somewhere. Please contact me immediately.) Debian bug tracking system administrator (administrator, Debian Bugs database) -------------------------------------- Received: (at submit) by bugs.debian.org; 20 Jan 2005 15:21:01 +0000>From msherman at projectile.ca Thu Jan 20 07:21:01 2005Return-path: <msherman at projectile.ca> Received: from projectile.ca (pyloric.projectile.ca) [64.26.176.14] by spohr.debian.org with esmtp (Exim 3.35 1 (Debian)) id 1Cre7J-0003qW-00; Thu, 20 Jan 2005 07:21:01 -0800 Received: from msherman by pyloric.projectile.ca with local (Exim 4.34) id 1Cre6o-0006DT-0X; Thu, 20 Jan 2005 10:20:30 -0500 Content-Type: text/plain; charset="us-ascii" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit From: Marc Sherman <msherman at projectile.ca> To: Debian Bug Tracking System <submit at bugs.debian.org> Subject: logcheck-database: Rules dirs are setuid, they should be setgid X-Mailer: reportbug 3.2 Date: Thu, 20 Jan 2005 10:20:29 -0500 Message-Id: <E1Cre6o-0006DT-0X at pyloric.projectile.ca> Delivered-To: submit at bugs.debian.org X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2005_01_02 (1.212-2003-09-23-exp) on spohr.debian.org X-Spam-Status: No, hits=-8.0 required=4.0 tests=BAYES_00,HAS_PACKAGE autolearn=no version=2.60-bugs.debian.org_2005_01_02 X-Spam-Level: Package: logcheck-database Version: 1.2.33 Severity: normal I just installed 1.2.33, and it made my rules dirs setuid, not setgid... - Marc -- System Information: Debian Release: 3.1 APT prefers testing APT policy: (900, 'testing'), (300, 'unstable') Architecture: i386 (i686) Kernel: Linux 2.6.8-1-k7 Locale: LANG=en_CA, LC_CTYPE=en_CA (charmap=ISO-8859-1) Versions of packages logcheck-database depends on: ii debconf [debconf-2.0] 1.4.30.11 Debian configuration management sy -- debconf information: logcheck-database/conffile-cleanup: false logcheck-database/rules-directories-note: logcheck-database/standard-rename-note: --------------------------------------- Received: (at 291395-close) by bugs.debian.org; 24 Jan 2005 03:06:51 +0000>From katie at ftp-master.debian.org Sun Jan 23 19:06:51 2005Return-path: <katie at ftp-master.debian.org> Received: from newraff.debian.org [208.185.25.31] (mail) by spohr.debian.org with esmtp (Exim 3.35 1 (Debian)) id 1CsuZ1-0005o8-00; Sun, 23 Jan 2005 19:06:51 -0800 Received: from katie by newraff.debian.org with local (Exim 3.35 1 (Debian)) id 1CsuUQ-0007X2-00; Sun, 23 Jan 2005 22:02:06 -0500 From: Todd Troxell <ttroxell at debian.org> To: 291395-close at bugs.debian.org X-Katie: $Revision: 1.55 $ Subject: Bug#291395: fixed in logcheck 1.2.34 Message-Id: <E1CsuUQ-0007X2-00 at newraff.debian.org> Sender: Archive Administrator <katie at ftp-master.debian.org> Date: Sun, 23 Jan 2005 22:02:06 -0500 Delivered-To: 291395-close at bugs.debian.org X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2005_01_02 (1.212-2003-09-23-exp) on spohr.debian.org X-Spam-Status: No, hits=-6.0 required=4.0 tests=BAYES_00,HAS_BUG_NUMBER autolearn=no version=2.60-bugs.debian.org_2005_01_02 X-Spam-Level: X-CrossAssassin-Score: 6 Source: logcheck Source-Version: 1.2.34 We believe that the bug you reported is fixed in the latest version of logcheck, which is due to be installed in the Debian FTP archive: logcheck-database_1.2.34_all.deb to pool/main/l/logcheck/logcheck-database_1.2.34_all.deb logcheck_1.2.34.dsc to pool/main/l/logcheck/logcheck_1.2.34.dsc logcheck_1.2.34.tar.gz to pool/main/l/logcheck/logcheck_1.2.34.tar.gz logcheck_1.2.34_all.deb to pool/main/l/logcheck/logcheck_1.2.34_all.deb logtail_1.2.34_all.deb to pool/main/l/logcheck/logtail_1.2.34_all.deb A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to 291395 at bugs.debian.org, and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Todd Troxell <ttroxell at debian.org> (supplier of updated logcheck package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing ftpmaster at debian.org) -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Sunday, 23 Jan 2005 21:31:00 -0500 Source: logcheck Binary: logcheck logtail logcheck-database Architecture: source all Version: 1.2.34 Distribution: unstable Urgency: low Maintainer: Debian logcheck Team <logcheck-devel at lists.alioth.debian.org> Changed-By: Todd Troxell <ttroxell at debian.org> Description: logcheck - Mails anomalies in the system logfiles to the administrator logcheck-database - A database of system log rules for the use of log checkers logtail - Print log file lines that have not been read Closes: 289529 289801 289866 290195 290511 291395 Changes: logcheck (1.2.34) unstable; urgency=low . todd: * Correct "Gandhi" spelling in docs/README.how.to.interpret. Thanks Satya <debbugs at thesatya.com> (closes: #289529) * Set logtail to report errors on stderr instead of stdout. (closes: #289801) * Adjust logcheck to redirect stdout and also stderr when reporting in order to maintain the current behavior of logcheck after the change above. * Change rule directories to setgid for real this time. (closes: #291395) * Update gconf, workstation/kernel rules maks: * Add pdns, fix scponly, fix gconfd SIGHUP rule. * Fix pam_winbind rule at level workstation. (Closes: #289866) * Ignore sudo "command continued" logline. (Closes: #290195) * Add rule for daily sysklogd -r restart at level server. (Closes: #290511) jamie: * Update rules for nagios. Files: 6612f3aae699b008fbbce64951b28d74 703 admin optional logcheck_1.2.34.dsc 1042830c8ae783c69751fc99b588f943 90068 admin optional logcheck_1.2.34.tar.gz 6cd0126e9f140a2dbaf22d28b5ce08d6 42210 admin optional logcheck_1.2.34_all.deb 5fc7d09450a439eb169010993c84ac9b 57956 admin optional logcheck-database_1.2.34_all.deb 2426337abec798ed7a28ee5954f8717c 25770 admin optional logtail_1.2.34_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.4 (GNU/Linux) iD8DBQFB9F+E4u3oQ3FHP2YRAvaHAJ95fSajvH++jdpR2UqWiIjk7zXf3QCeJZb1 CdzEyRku0QK3EEeGm27yzUg=ACq6 -----END PGP SIGNATURE-----
Apparently Analagous Threads
- Bug#290511: logcheck: syslogd restart in cron.daily/sysklogd causes a log message
- Bug#289801: Logtail should output error messages to stderr, not stdout
- Bug#289529: logcheck: "Ghandi" should be "Gandhi" in README.how.to.interpret
- Bug#290195: violations.d/sudo and violations.ignore.d/logcheck-sudo missing sudo log entries
- Bug#286532: dnsmasq: misses message for DHCPINFORM due to 283331 fix