summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorChristophe Fergeau <cfergeau@mandriva.com>2009-10-13 17:00:17 +0000
committerChristophe Fergeau <cfergeau@mandriva.com>2009-10-13 17:00:17 +0000
commite1b29be2e9dfeebc1d831c62b6e0dc1d1a6853dc (patch)
tree7a26379957f046847cbe10140f224d455c567aad
parent63b06831d3c1ee0eb8d6cb5f53a5682b512fb5dd (diff)
downloadurpmi-e1b29be2e9dfeebc1d831c62b6e0dc1d1a6853dc.tar
urpmi-e1b29be2e9dfeebc1d831c62b6e0dc1d1a6853dc.tar.gz
urpmi-e1b29be2e9dfeebc1d831c62b6e0dc1d1a6853dc.tar.bz2
urpmi-e1b29be2e9dfeebc1d831c62b6e0dc1d1a6853dc.tar.xz
urpmi-e1b29be2e9dfeebc1d831c62b6e0dc1d1a6853dc.zip
fix potential priviledge escalation in rurpmi/rurpme (#54568)
-rw-r--r--rurpme2
-rw-r--r--rurpmi2
2 files changed, 2 insertions, 2 deletions
diff --git a/rurpme b/rurpme
index ee7b4e7f..cbfb76fd 100644
--- a/rurpme
+++ b/rurpme
@@ -12,7 +12,7 @@ if ($< != 0) {
}
$ENV{PATH} = "/sbin:/usr/sbin:/bin:/usr/bin:/usr/X11R6/bin";
-delete @ENV{qw(ENV BASH_ENV IFS CDPATH PERLLIB PERL5LIB PERL5OPT PERLIO PERLIO_DEBUG PERL5DB PERL_ENCODING PERL_HASH_SEED PERL_SIGNALS PERL_UNICODE)};
+delete @ENV{qw(ENV BASH_ENV HOME IFS CDPATH PERLLIB PERL5LIB PERL5OPT PERLIO PERLIO_DEBUG PERL5DB PERL_ENCODING PERL_HASH_SEED PERL_SIGNALS PERL_UNICODE)};
print STDERR N("Running urpme in restricted mode..."), "\n";
@ARGV or @ARGV = qw(--help);
diff --git a/rurpmi b/rurpmi
index f402d44d..0876a01e 100644
--- a/rurpmi
+++ b/rurpmi
@@ -13,7 +13,7 @@ if ($< != 0) {
}
$ENV{PATH} = "/sbin:/usr/sbin:/bin:/usr/bin:/usr/X11R6/bin";
-delete @ENV{qw(ENV BASH_ENV IFS CDPATH PERLLIB PERL5LIB PERL5OPT PERLIO PERLIO_DEBUG PERL5DB PERL_ENCODING PERL_HASH_SEED PERL_SIGNALS PERL_UNICODE)};
+delete @ENV{qw(ENV BASH_ENV HOME IFS CDPATH PERLLIB PERL5LIB PERL5OPT PERLIO PERLIO_DEBUG PERL5DB PERL_ENCODING PERL_HASH_SEED PERL_SIGNALS PERL_UNICODE)};
print STDERR N("Running urpmi in restricted mode..."), "\n";
@ARGV or @ARGV = qw(--help);