package/libcgroup: fix CVE-2018-14348
authorFabrice Fontaine <fontaine.fabrice@gmail.com>
Sat, 29 Feb 2020 22:30:18 +0000 (23:30 +0100)
committerYann E. MORIN <yann.morin.1998@free.fr>
Sun, 1 Mar 2020 07:36:04 +0000 (08:36 +0100)
commit7d74283309535a6b673cdb95e9aaac28e46523bb
tree4bd9d2273b32a26810092e33be879ce448207c3c
parentc623d89b4b575f6882fdc669397b3276007e5d9d
package/libcgroup: fix CVE-2018-14348

libcgroup up to and including 0.41 creates /var/log/cgred with mode 0666
regardless of the configured umask, leading to disclosure of information

Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com>
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr>
package/libcgroup/0001-cgrulesengd-remove-umask-0.patch [new file with mode: 0644]
package/libcgroup/libcgroup.mk