I've merged the latest changes from Debian into trusty, including this
fix:

iputils (3:20121221-2) unstable; urgency=low

  * Silence erroneous "kernel is not very fresh" warnings. (Closes: 709052)
  * Cherry pick revision 608419a7 from upstream for traceroute
    max-hops options
  * Cherry pick revision cec404067 from upstream for tracepath, tracepath6
    minor bugfixes
  * Enable the CAP_NET_RAW capability and strip the setuid bit on ping and
    ping6 binaries if possible.
  * Bump standards version to 3.9.4.0 (No changes needed.)

 -- Noah Meyerhans <[email protected]>  Sun, 08 Dec 2013 17:47:52 -0800

** Changed in: iputils (Ubuntu)
       Status: New => Fix Released

-- 
You received this bug notification because you are a member of Desktop
Packages, which is subscribed to iputils in Ubuntu.
https://bugs.launchpad.net/bugs/534341

Title:
  /bin/ping use Linux file capabilities instead of suid root

Status in “iputils” package in Ubuntu:
  Fix Released

Bug description:
  Since 2.6.24 Linux has supported file capabilities which can be used
  for /bin/ping: http://www.friedhoff.org/posixfilecaps.html

  Since this patch: 
http://marc.info/?l=linux-security-module&m=123852850319459&w=2 
  It is possible to have both capabilities and suid root support (for backward 
compatibility for pre-2.6.24 kernels or kernels compiled without 
CONFIG_SECURITY_FILE_CAPABILITIES), so there is now no reason to not use 
capabilities.

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/iputils/+bug/534341/+subscriptions

-- 
Mailing list: https://launchpad.net/~desktop-packages
Post to     : [email protected]
Unsubscribe : https://launchpad.net/~desktop-packages
More help   : https://help.launchpad.net/ListHelp

Reply via email to