[systemd-devel] "CVE-2013-4392: TOCTOU race condition when updating file permissions and SELinux security contexts" still an issue

Michael Biebl mbiebl at gmail.com
Sat Mar 24 21:54:48 UTC 2018


Hi,

the Debian systemd package has an open bug report
https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=725357
about
CVE-2013-4392: TOCTOU race condition when updating file permissions
and SELinux security contexts

This references https://bugzilla.redhat.com/show_bug.cgi?id=859060
which never was properly closed afaics. So I wonder if this issue is
still relevant or was this fixed in another way?

Regards,
Michael

-- 
Why is it that all of the instruments seeking intelligent life in the
universe are pointed away from Earth?


More information about the systemd-devel mailing list