Your message dated Wed, 19 Jul 2006 09:42:49 -0700
with message-id <[EMAIL PROTECTED]>
and subject line Now fixed in security
has caused the attached Bug report to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what I am
talking about this indicates a serious mail system misconfiguration
somewhere. Please contact me immediately.)
Debian bug tracking system administrator
(administrator, Debian Bugs database)
--- Begin Message ---
Package: rssh
Version: 2.2.3-1.sarge.1
Since http://packages.qa.debian.org/r/rssh/news/20060418T004132Z.html
rssh seem to run incorrectly:
I have this following /etc/rssh.conf config file:
logfacility = LOG_USER
umask = 022
user=test:011:10000:
it's supposed to force user test to run rsync only without chroot
if i'm on an other host and run something else than rsync it do that:
# ssh [EMAIL PROTECTED]:
Linux host 2.6.15.1 #2 Sun Jan 15 21:11:04 EST 2006 i686 GNU/Linux
Last login: Thu Apr 20 16:22:00 2006 from host2
This account is restricted by rssh.
Allowed commands: scp
If you believe this is in error, please contact your system administrator.
Connection to host closed.
scp? I did specified rsync only (10000)
I try something else like ls:
# ssh [EMAIL PROTECTED] ls
Usage: ls [cvs-options] command [command-options-and-arguments]
where cvs-options are -q, -n, etc.
(specify --help-options for a list of options)
where command is add, admin, etc.
(specify --help-commands for a list of commands
or --help-synonyms for a list of command synonyms)
where command-options-and-arguments depend on the specific command
(specify -H followed by a command name for command-specific help)
Specify --help to receive this message
The Concurrent Versions System (CVS) is a tool for version control.
For CVS updates and additional information, see
the CVS home page at http://www.cvshome.org/ or
Pascal Molli's CVS site at http://www.loria.fr/~molli/cvs-index.html
ls with cvs output?
I tried again with rsync and not-existing command:
Usage: something_that_dont_exist [cvs-options] command
[command-options-and-arguments]
Since that upgrade rssh don't work anymore like it used to be
I've looked trough the configuration file and it haven't changed.
thanks, bye
--- End Message ---
--- Begin Message ---
Version: 2.2.3-1.sarge.2
The security vulnerability was fixed for sarge in 2.2.3-1.sarge.2.
--
Russ Allbery ([EMAIL PROTECTED]) <http://www.eyrie.org/~eagle/>
--- End Message ---