aboutsummaryrefslogtreecommitdiff
path: root/nix/libutil/types.hh
diff options
context:
space:
mode:
authorRicardo Wurmus <rekado@elephly.net>2024-01-11 11:45:19 +0100
committerRicardo Wurmus <rekado@elephly.net>2024-01-11 11:45:19 +0100
commit2383da330da89774291f5b800ddc8d1980c9eae7 (patch)
tree5c6430512b6e56c736259f090f5bdd1079839d0f /nix/libutil/types.hh
parente007e93b63fd24bc65dcc34e81713b9bf4878a5e (diff)
downloadguix-2383da330da89774291f5b800ddc8d1980c9eae7.tar.gz
guix-2383da330da89774291f5b800ddc8d1980c9eae7.zip
gnu: r-ggpp: Update to 0.5.6.
* gnu/packages/cran.scm (r-ggpp): Update to 0.5.6. Change-Id: Ib9a5bb2ff59381f301f481e189a196706cdbb928
Diffstat (limited to 'nix/libutil/types.hh')
0 files changed, 0 insertions, 0 deletions
3activation: Do not dereference symlinks during home directory creation.Maxime Devos Fixes <https://bugs.gnu.org/47584>. * gnu/build/activation.scm (copy-account-skeletons): Do not chown the home directory; leave this to 'activate-user-home'. (activate-user-home): Only chown the home directory after the account skeletons have been copied. Co-authored-by: Ludovic Courtès <ludo@gnu.org>. 2021-03-10services: Prevent following symlinks during activation.Maxime Devos This addresses a potential security issue, where a compromised service could trick the activation code in changing the permissions, owner and group of arbitrary files. However, this patch is currently only a partial fix, due to a TOCTTOU (time-of-check to time-of-use) race, which can be fixed once guile has bindings to openat and friends. Fixes: <https://lists.gnu.org/archive/html/guix-devel/2021-01/msg00388.html> * gnu/build/activation.scm: new procedure 'mkdir-p/perms'. * gnu/services/authentication.scm (%nslcd-activation, nslcd-service-type): use new procedure. * gnu/services/cups.scm (%cups-activation): likewise. * gnu/services/dbus.scm (dbus-activation): likewise. * gnu/services/dns.scm (knot-activation): likewise. Signed-off-by: Ludovic Courtès <ludo@gnu.org> 2021-02-09activation: Do not make setuid programs setgid-root [security].Ludovic Courtès Fixes <https://bugs.gnu.org/46395>. Reported by Duncan Overbruck <mail@duncano.de>. * gnu/build/activation.scm (activate-setuid-programs): Change TARGET mode to not be setgid.