e9ef0e
From 152efd46931a70ab4e3d81e99d312df7dcd666e6 Mon Sep 17 00:00:00 2001
e9ef0e
From: Boris Ranto <branto@redhat.com>
e9ef0e
Date: Tue, 10 May 2016 19:12:08 +0200
e9ef0e
Subject: [PATCH] CVE-2011-4339 OpenIPMI
e9ef0e
e9ef0e
IPMI event daemon creates PID file with world writeable permissions
e9ef0e
---
e9ef0e
 lib/helper.c | 1 -
e9ef0e
 1 file changed, 1 deletion(-)
e9ef0e
e9ef0e
diff --git a/lib/helper.c b/lib/helper.c
e9ef0e
index de91438..c3a1c80 100644
e9ef0e
--- a/lib/helper.c
e9ef0e
+++ b/lib/helper.c
e9ef0e
@@ -829,7 +829,6 @@ ipmi_start_daemon(struct ipmi_intf *intf)
e9ef0e
 #endif
e9ef0e
 
e9ef0e
 	chdir("/");
e9ef0e
-	umask(0);
e9ef0e
 
e9ef0e
 	for (fd=0; fd<64; fd++) {
e9ef0e
 		if (fd != intf->fd)
e9ef0e
-- 
e9ef0e
2.7.4
e9ef0e