IIUC, when anyone who plugs a removable USB stick in a PC it is mounted
in /media// and, as long as the FS in the device does not
support privileges attributes (e.g. FAT32), anyone is granted the rights
to overwrite anything (but partitions ?) in the device. So I don't see
why anyone would be
This bug was fixed in the package policykit-desktop-privileges - 0.21
---
policykit-desktop-privileges (0.21) eoan; urgency=medium
* Don't allow usb-creator to overwrite devices without authentication.
(LP: #1832337)
-- Marc Deslauriers Tue, 18 Jun 2019
13:56:08 -0400
--
This bug was fixed in the package usb-creator - 0.3.6
---
usb-creator (0.3.6) eoan; urgency=medium
* Unmount device during image operation so a single policykit prompt can
be displayed to the user. (LP: #1832337)
-- Marc Deslauriers Tue, 18 Jun 2019
14:19:59 -0400
**
This will also require usb-creator to be modified to have a single
policykit prompt.
** Also affects: usb-creator (Ubuntu)
Importance: Undecided
Status: New
** Changed in: usb-creator (Ubuntu)
Assignee: (unassigned) => Ubuntu Security Team (ubuntu-security)
** Changed in:
4 matches
Mail list logo