summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorSamuel Thibault <samuel.thibault@ens-lyon.org>2011-08-12 02:35:01 +0200
committerSamuel Thibault <samuel.thibault@ens-lyon.org>2011-08-12 02:35:01 +0200
commit290f2a74c2e2140aa78016aeeb066d447a801ecd (patch)
tree041dc85ea68862993a2a0c41f5614f4049a1e0ff
parent95f85966681f56233db55885bd6487b2811a825c (diff)
Avoid /tmp/entropy.sock compromision
* local/setup-translators: Set up entropy socket in /var/run instead of /tmp, as the latter is world-writable.
-rw-r--r--debian/changelog2
-rwxr-xr-xdebian/local/setup-translators4
2 files changed, 4 insertions, 2 deletions
diff --git a/debian/changelog b/debian/changelog
index 515f0af1..06bb0487 100644
--- a/debian/changelog
+++ b/debian/changelog
@@ -2,6 +2,8 @@ hurd (20110519-4) UNRELEASED; urgency=low
* local/setup-translators: Restore /dev/shm creation.
* patches/libdiskfs_sync.patch: New patch to fix sync at shutdown.
+ * local/setup-translators: Set up entropy socket in /var/run instead of
+ /tmp, as the latter is world-writable.
-- Samuel Thibault <sthibault@debian.org> Mon, 01 Aug 2011 22:53:23 +0200
diff --git a/debian/local/setup-translators b/debian/local/setup-translators
index 17d0a28a..6bd2f1d1 100755
--- a/debian/local/setup-translators
+++ b/debian/local/setup-translators
@@ -145,8 +145,8 @@ else
md ptyq
md lprX 0123
md comX 0123
- st random 'random /tmp/entropy.sock' random
- st urandom 'random -u /tmp/entropy.sock' urandom
+ st random 'random /var/run/entropy.sock' random
+ st urandom 'random -u /var/run/entropy.sock' urandom
fi
st kbd 'symlink cons/kbd' kbd