diff options
author | Matthias Schiffer <mschiffer@universe-factory.net> | 2016-09-26 15:25:37 +0200 |
---|---|---|
committer | Matthias Schiffer <mschiffer@universe-factory.net> | 2016-09-26 17:57:56 +0200 |
commit | a16a8814ead80984ce4ef7bed756434119b3aafa (patch) | |
tree | 8c0f95376ab484d1734d2915860c08ed6f713fcf /include/package-seccomp.mk | |
parent | 6c1542787d135de358710254e71fe926f8676954 (diff) | |
download | upstream-a16a8814ead80984ce4ef7bed756434119b3aafa.tar.gz upstream-a16a8814ead80984ce4ef7bed756434119b3aafa.tar.bz2 upstream-a16a8814ead80984ce4ef7bed756434119b3aafa.zip |
image: don't modify file permissions before rootfs generation
Modifying the file permissions can be harmful, as it would make files
world-readable even if they weren't in the ipk packages. The
Image/mkfs/prepare step is removed completely, as it is redundant now (/tmp
and /overlay are already provided by base-files with the correct
permissions).
It has been verified that this change does not affect any permissions of
files in the default package set except /etc/ppp/chap-secrets, which was
world-readable before. All packages not in the default set are more likely
to be installed via opkg than being part of a base image and thus were
usually not affected by the permission modification anyways.
Signed-off-by: Matthias Schiffer <mschiffer@universe-factory.net>
Diffstat (limited to 'include/package-seccomp.mk')
0 files changed, 0 insertions, 0 deletions