-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 - --- english/security/2016/dsa-3440.wml 2016-01-12 00:25:11.000000000 +0500 +++ russian/security/2016/dsa-3440.wml 2016-01-12 17:23:38.298041317 +0500 @@ -1,32 +1,33 @@ - -<define-tag description>security update</define-tag> +#use wml::debian::translation-check translation="1.2" maintainer="Lev Lamberov" +<define-tag description>обновление безопаÑноÑÑи</define-tag> <define-tag moreinfo> - -<p>When sudo is configured to allow a user to edit files under a directory - -that they can already write to without using sudo, they can actually - -edit (read and write) arbitrary files. Daniel Svartman reported that a - -configuration like this might be introduced unintentionally if the - -editable files are specified using wildcards, for example:</p> +<p>ÐÑли ÑÑилиÑа sudo наÑÑÑоена Ñак, ÑÑо полÑзоваÑÐµÐ»Ñ Ð¼Ð¾Ð¶ÐµÑ ÑедакÑиÑоваÑÑ ÑÐ°Ð¹Ð»Ñ Ð² каÑалоге, +в коÑоÑом они Ñже до ÑÑого могли вÑполнÑÑÑ Ð·Ð°Ð¿Ð¸ÑÑ Ð¸ без sudo, Ñо они могÑÑ +ÑедакÑиÑоваÑÑ (вÑполнÑÑÑ ÑÑение и запиÑÑ) пÑоизволÑнÑе ÑайлÑ. ÐÑÐ½Ð¸ÐµÐ»Ñ Ð¡Ð²Ð°ÑÑман ÑообÑил, ÑÑо +Ñакие наÑÑÑойки могÑÑ Ð±ÑÑÑ Ð²ÑÐ¿Ð¾Ð»Ð½ÐµÐ½Ñ ÑлÑÑайно в Ñом ÑлÑÑае, еÑли +ÑÐ°Ð¹Ð»Ñ Ð´Ð»Ñ ÑедакÑиÑÐ¾Ð²Ð°Ð½Ð¸Ñ ÑказÑваÑÑÑÑ Ñ Ð¸ÑполÑзованием Ñаблонов подÑÑановки, напÑимеÑ:</p> <pre>operator ALL=(root) sudoedit /home/*/*/test.txt</pre> - -<p>The default behaviour of sudo has been changed so that it does not allow - -editing of a file in a directory that the user can write to, or that is - -reached by following a symlink in a directory that the user can write - -to. These restrictions can be disabled, but this is strongly - -discouraged.</p> +<p>Ðо ÑмолÑÐ°Ð½Ð¸Ñ Ð¿Ð¾Ð²ÐµÐ´ÐµÐ½Ð¸Ðµ sudo изменено Ñак, ÑÑÐ¾Ð±Ñ ÑедакÑиÑование Ñайла в +каÑалоге, в коÑоÑÑй полÑзоваÑÐµÐ»Ñ Ð¼Ð¾Ð¶ÐµÑ Ð²ÑполнÑÑÑ Ð·Ð°Ð¿Ð¸ÑÑ, либо Ñайла, +коÑоÑÑй можно оÑкÑÑÑÑ ÑеÑез ÑимволÑнÑÑ ÑÑÑÐ»ÐºÑ Ð² каÑалоге, в коÑоÑÑй полÑзоваÑÐµÐ»Ñ Ð¼Ð¾Ð¶ÐµÑ +вÑполнÑÑÑ Ð·Ð°Ð¿Ð¸ÑÑ, не ÑазÑеÑалоÑÑ. ÐÑи огÑаниÑÐµÐ½Ð¸Ñ Ð¼Ð¾Ð¶Ð½Ð¾ оÑклÑÑиÑÑ, но делаÑÑ +ÑÑо не ÑекомендÑеÑÑÑ.</p> - -<p>For the oldstable distribution (wheezy), this problem has been fixed - -in version 1.8.5p2-1+nmu3+deb7u1.</p> +<p>РпÑедÑдÑÑем ÑÑабилÑном вÑпÑÑке (wheezy) ÑÑа пÑоблема бÑла иÑпÑавлена +в веÑÑии 1.8.5p2-1+nmu3+deb7u1.</p> - -<p>For the stable distribution (jessie), this problem has been fixed in - -version 1.8.10p3-1+deb8u3.</p> +<p>Ð ÑÑабилÑном вÑпÑÑке (jessie) ÑÑа пÑоблема бÑла иÑпÑавлена в +веÑÑии 1.8.10p3-1+deb8u3.</p> - -<p>For the testing distribution (stretch), this problem has been fixed - -in version 1.8.15-1.1.</p> +<p>Ð ÑеÑÑиÑÑемом вÑпÑÑке (stretch) ÑÑа пÑоблема бÑла иÑпÑавлена +в веÑÑии 1.8.15-1.1.</p> - -<p>For the unstable distribution (sid), this problem has been fixed in - -version 1.8.15-1.1.</p> +<p>РнеÑÑабилÑном вÑпÑÑке (sid) ÑÑа пÑоблема бÑла иÑпÑавлена в +веÑÑии 1.8.15-1.1.</p> - -<p>We recommend that you upgrade your sudo packages.</p> +<p>РекомендÑеÑÑÑ Ð¾Ð±Ð½Ð¾Ð²Ð¸ÑÑ Ð¿Ð°ÐºÐµÑÑ sudo.</p> </define-tag> # do not modify the following line -----BEGIN PGP SIGNATURE-----
iQIcBAEBCgAGBQJWlPDZAAoJEF7nbuICFtKl6JIQAKmtomHY6lu74Bj3c14SImcj 9k2xSmPTebjMx3i9hjyj5G+efiKZHLGXm5xqLkXQtpSxQ7t4AR6wmIXnsaxJUr0m EhGLiXxGmnB1dVDVbvqaMP6+Gs24Y8gFC76HeOncX1+A/iVs2HJSQNf8bwqMGN+s 3J1b6+EvztAM9Qm9SK37Dj9HXkH4TDW1ZzOSI9pvp4POg3+2pEHh9qzU0Eu2scYJ VUGOWzErK2u45jvtIx2HXUSi17zhrBEyQl97P0vnH45Vj8OUNXwuVNhgQBbNYdtg r28oYhFPHfM1C1U1GgyorSLGMMGNNijHZMyq9AresROGWVqGpNbPcOfOzk64otoC X2O+xja4vVIlVajYZO7c34IeaNYmttzCwI+RJoYraXcHqTOOi/ziCo1E9jtU/MLE Q7svxmFZOFyjhC47ajoyRl1D645cjpwe+ZBrVbYwDPczfrYnqgh4Q9vK09DIyZCQ QENPiQNv8kOWEgljCLluabykaQjYrdDUs+BaG//ZIwjo+G1vfnXZ/QjxrIfqJu2D L8aTnXSVLoHBlGUK2Nzu7fjGWIjLj/FjYYNxoKIF7HzX58LR7YS0npnGoaKbM1LJ AU/V93uQoa4cxRH1y5m29s8W5ZjklWSmZ2r4kuCz+ftwwW8Y6cs4ht2dwdEaaAqX lvXxMWgdNyUFYtttbKEu =PIX5 -----END PGP SIGNATURE-----

