Package: dhcpcd5
Version: 9.4.1-0.1
Severity: important
Tags: ipv6

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

In Debian 9.4.1-0.1, dhcpcd5 isn't built with priviledge separation. Enabling 
this would improve security by forking separate sub-processes for IPv4 and IPv6.

I have a 9.4.1-0.2 ready at https://mentors.debian.net/package/dhcpcd5/ which 
enables priviledge separation using the canonical non-zero user "daemon" ready 
to sponsor.

Martin-Éric

- -- System Information:
Debian Release: bookworm/sid
  APT prefers testing-debug
  APT policy: (500, 'testing-debug'), (500, 'stable-security'), (500, 'testing')
Architecture: i386 (i586)

Kernel: Linux 5.18.0-2-686 (SMP w/1 CPU thread; PREEMPT)
Locale: LANG=fi_FI.UTF-8, LC_CTYPE=fi_FI.UTF-8 (charmap=UTF-8), LANGUAGE=fi:en
Shell: /bin/sh linked to /bin/dash
Init: systemd (via /run/systemd/system)
LSM: AppArmor: enabled

Versions of packages dhcpcd5 depends on:
ii  libc6     2.33-7
ii  libudev1  251.2-5
ii  lsb-base  11.2

Versions of packages dhcpcd5 recommends:
pn  openresolv | resolvconf  <none>

Versions of packages dhcpcd5 suggests:
pn  dhcpcd-gtk  <none>
pn  dhcpcd-ui   <none>

- -- Configuration Files:
/etc/dhcpcd.conf changed [not included]

- -- no debconf information

-----BEGIN PGP SIGNATURE-----
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=OlOO
-----END PGP SIGNATURE-----

Reply via email to