[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#1099697: initramfs-tools: please change default /dev/pts mode to 0600



On Thu, Mar 06, 2025 at 10:46:17PM +0100, Chris Hofstaedtler wrote:
> in the past there were security concerns (and security issues 
> raised) around other users writing to each others terminals. Some of 
> this was workarounded in util-linux, cf. CVE-2024-28085.
> 
> A fuller fix is to disallow writing unrelated users to each other's 
> terminals by default.
[..]
> Please find a patch attached
> following the change from 0620 to 0600 for initramfs-tools.
[..]

Salsa merge request:
https://salsa.debian.org/kernel-team/initramfs-tools/-/merge_requests/161

Best,
Chris


Reply to: