Trust file-content-metadata path on CVMFS when cloning
All threads resolved!
All threads resolved!
To mitigate the vulnerability CVE-2024-32004, when cloning from a local repository, the directory have to be owned by the user doing the cloning or explicitly trusted. This change temporarily trusts the file-content-metadata repository in CVMFS before cloning it, if needed.
See: https://lore.kernel.org/git/20240529102307.GF1098944@coredump.intra.peff.net/T/#t
Replaces !4585 (closed)
Edited by Chris Burr
Merge request reports
Activity
Filter activity
added RTA label
added 1 commit
- 33e5d7c9 - Trust file-content-metadata path on CVMFS when cloning
added 1 commit
- 3e1c2544 - Trust file-content-metadata path on CVMFS when cloning
mentioned in merge request !4585 (closed)
- Resolved by Sebastien Ponce
/ci-test
added ci-test-triggered label
- [2025-01-13 15:57] Validation started with lhcb-master-mr#12214
mentioned in commit 5aee24da
picked the changes into the branch
cherry-pick-5aee24da
with commit c1514274mentioned in commit c1514274
mentioned in merge request !4874 (merged)
Please register or sign in to reply