I'm unmarking this as security for the moment. This is clearly a bug in "install" though. (Or at least a bug in their documentation.) Given that most Debian package build processes have a specific check for file permissions, I think the impact of this problem is minimal. Please open new bugs for any fall-out from this that you find.
Thanks! ** Changed in: coreutils (Ubuntu) Importance: Undecided => Low Status: Unconfirmed => Confirmed ** Visibility changed to: Public ** This bug is no longer flagged as a security issue ** Summary changed: - security: install 5.93/5.97 ignores --mode on existing dirs if no leading 4th byte + install 5.93/5.97 ignores --mode on existing dirs if no leading 4th byte -- install 5.93/5.97 ignores --mode on existing dirs if no leading 4th byte https://bugs.launchpad.net/bugs/111582 You received this bug notification because you are a member of Ubuntu Bugs, which is the bug contact for Ubuntu. -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs