I've merged the latest changes from Debian into trusty, including this
fix:
iputils (3:20121221-2) unstable; urgency=low
* Silence erroneous "kernel is not very fresh" warnings. (Closes: 709052)
* Cherry pick revision 608419a7 from upstream for traceroute
max-hops options
* Cherry pick revision cec404067 from upstream for tracepath, tracepath6
minor bugfixes
* Enable the CAP_NET_RAW capability and strip the setuid bit on ping and
ping6 binaries if possible.
* Bump standards version to 3.9.4.0 (No changes needed.)
-- Noah Meyerhans <[email protected]> Sun, 08 Dec 2013 17:47:52 -0800
** Changed in: iputils (Ubuntu)
Status: New => Fix Released
--
You received this bug notification because you are a member of Desktop
Packages, which is subscribed to iputils in Ubuntu.
https://bugs.launchpad.net/bugs/534341
Title:
/bin/ping use Linux file capabilities instead of suid root
Status in “iputils” package in Ubuntu:
Fix Released
Bug description:
Since 2.6.24 Linux has supported file capabilities which can be used
for /bin/ping: http://www.friedhoff.org/posixfilecaps.html
Since this patch:
http://marc.info/?l=linux-security-module&m=123852850319459&w=2
It is possible to have both capabilities and suid root support (for backward
compatibility for pre-2.6.24 kernels or kernels compiled without
CONFIG_SECURITY_FILE_CAPABILITIES), so there is now no reason to not use
capabilities.
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/iputils/+bug/534341/+subscriptions
--
Mailing list: https://launchpad.net/~desktop-packages
Post to : [email protected]
Unsubscribe : https://launchpad.net/~desktop-packages
More help : https://help.launchpad.net/ListHelp