[arch-releng] [PATCH 1/1] limit access to cow directory

Christian Hesse list at eworm.de
Wed May 6 08:12:42 UTC 2015


From: Christian Hesse <mail at eworm.de>

Signed-off-by: Christian Hesse <mail at eworm.de>
---
 archiso/initcpio/hooks/archiso | 2 +-
 1 file changed, 1 insertion(+), 1 deletion(-)

diff --git a/archiso/initcpio/hooks/archiso b/archiso/initcpio/hooks/archiso
index fcfe820..b02d9f8 100644
--- a/archiso/initcpio/hooks/archiso
+++ b/archiso/initcpio/hooks/archiso
@@ -172,7 +172,7 @@ archiso_mount_handler() {
         mkdir -p /run/archiso/cowspace
         mount -t tmpfs -o "size=${cow_spacesize}",mode=0755 cowspace /run/archiso/cowspace
     fi
-    mkdir -p "/run/archiso/cowspace/${cow_directory}"
+    mkdir -p -m 0700 "/run/archiso/cowspace/${cow_directory}"
 
     _mnt_sfs "/run/archiso/bootmnt/${archisobasedir}/${arch}/airootfs.sfs" "/run/archiso/sfs/airootfs"
     if [[ -f "/run/archiso/sfs/airootfs/airootfs.img" ]]; then
-- 
2.4.0


More information about the arch-releng mailing list