openrc/man
William Hubbs b6fef599bf checkpath: fix CVE-2018-21269
This walks the directory path to the file we are going to manipulate to make
sure that when we create the file and change the ownership and permissions
we are working on the same file.
Also, all non-terminal symbolic links must be owned by root. This will
keep a non-root user from making a symbolic link as described in the
bug. If root creates the symbolic link, it is assumed to be trusted.

On non-linux platforms, we no longer follow non-terminal symbolic links
by default. If you need to do that, add the -s option on the checkpath
command line, but keep in mind that this is not secure.

This fixes #201.
2020-11-20 09:15:59 -06:00
..
einfo.3 Convert OpenRC to a centralized copyright/license structure 2015-12-21 12:16:06 -06:00
Makefile man: remove service(8) man page 2017-10-12 18:47:36 -05:00
openrc-init.8 reword the bugs section of the openrc-init man page 2017-04-14 11:11:07 -05:00
openrc-run.8 checkpath: fix CVE-2018-21269 2020-11-20 09:15:59 -06:00
openrc-shutdown.8 improve shutdown documentation 2019-02-12 16:54:12 -06:00
openrc.8 man/openrc.8: add openrc-run.8 to see also 2019-01-18 13:40:06 -06:00
rc_config.3 Convert OpenRC to a centralized copyright/license structure 2015-12-21 12:16:06 -06:00
rc_deptree.3 Convert OpenRC to a centralized copyright/license structure 2015-12-21 12:16:06 -06:00
rc_find_pids.3 Convert OpenRC to a centralized copyright/license structure 2015-12-21 12:16:06 -06:00
rc_plugin_hook.3 Convert OpenRC to a centralized copyright/license structure 2015-12-21 12:16:06 -06:00
rc_runlevel.3 Convert OpenRC to a centralized copyright/license structure 2015-12-21 12:16:06 -06:00
rc_service.3 Convert OpenRC to a centralized copyright/license structure 2015-12-21 12:16:06 -06:00
rc_stringlist.3 Convert OpenRC to a centralized copyright/license structure 2015-12-21 12:16:06 -06:00
rc-service.8 rc-service: add --ifstarted and --ifstopped options 2018-05-16 13:25:22 -05:00
rc-sstat.8 Convert OpenRC to a centralized copyright/license structure 2015-12-21 12:16:06 -06:00
rc-status.8 rc-status: add -f option to allow formatting output 2019-02-15 14:21:43 -06:00
rc-update.8 Convert OpenRC to a centralized copyright/license structure 2015-12-21 12:16:06 -06:00
start-stop-daemon.8 start-stop-daemon: add ability to log stdout or stderr to processes 2018-06-15 12:23:50 -05:00
supervise-daemon.8 man: supervise-daemon: fix various style issues 2019-01-01 18:36:40 -05:00