[OE-core] [PATCH] libpam: reproducibility: Fix host umask leakage at patch-time

Burton, Ross ross.burton at intel.com
Thu Dec 20 20:37:00 UTC 2018


On Thu, 20 Dec 2018 at 20:26, Douglas Royds <douglas.royds at taitradio.com> wrote:
> libpam is unusual in having a patch that creates an entirely new file
> (tty_secure.c). If that patch eventually goes, then this umask setting
> can go as well.
>
> I haven't come across any other cases of a patch creating a file, but if
> there are, then we could certainly move this setting. Perhaps we should
> wait until others emerge.

I definitely wouldn't want to make the assumption that libpam is the
only recipe of all time that will create a file.

Ross


More information about the Openembedded-core mailing list