Bug 557762

Summary: RN: group dialout caveat
Product: [openSUSE] openSUSE 11.2 Reporter: Ludwig Nussel <lnussel>
Component: Release NotesAssignee: Karl Eichwalder <ke>
Status: RESOLVED FIXED QA Contact: Stephan Kulow <coolo>
Severity: Normal    
Priority: P3 - Medium CC: security-team
Version: RC 2   
Target Milestone: ---   
Hardware: Other   
OS: Other   
Whiteboard: maint:released:11.2:30142
Found By: --- Services Priority:
Business Priority: Blocker: ---
Marketing QA Status: --- IT Deployment: ---
Bug Depends on: 551294, 551729, 557412    
Bug Blocks: 558749    

Description Ludwig Nussel 2009-11-23 15:26:11 UTC
udev silently changed the group of serial devices from 'uucp' to
'dialout' (see bnc#552095). Users created on releases prior to
openSUSE 11.2 were member of group 'dialout' by default. That means
after upgrading to 11.2 those users can directly access e.g. modems
to issue dial commands. Administrators should therefore review the
members of group dialout by checking /etc/group. To remove a user
from the group the following command can be used:

# groupmod -R $USER dialout
Comment 1 Karl Eichwalder 2009-11-24 13:23:35 UTC
Thanks for writing the draft!  This is my proposal:

  <!-- bnc#557762 and bnc#552095 -->
  <sect3 id="sec.112.serial-dialout" status="2009-11-24">
   <title>Serial Devices Belonging to 'dialout' Group</title>

   <para><command>udev</command> silently changed the group of serial devices
from '<systemitem>uucp</systemitem>' to '<systemitem>dialout</systemitem>'<!--
(see bnc#552095)-->. Users created on releases prior to openSUSE 11.2 were
member of the '<systemitem>dialout</systemitem>' group by default.  After
upgrading to 11.2 these users can directly access e.g., modems to issue dial
commands. Administrators must review the '<systemitem>dialout</systemitem>'
group by checking <filename>/etc/group</filename>.  To remove a user from this
group use the following command (replace <systemitem>$USER</systemitem> with
the actual user name):
</para>

   <screen>groupmod -R $USER dialout
</screen>
  </sect3>

============================================================================

I need another swampid, please (there are more RN related changes pending).
Comment 2 Karl Eichwalder 2009-11-24 13:33:19 UTC
I'll use this bug to collect other RN related issues for the next update
Comment 3 Christian Dengler 2009-11-26 13:37:37 UTC
I think an update is reasonable here, because it is a security relevant information.
Comment 5 Christian Dengler 2009-12-04 14:15:33 UTC
Karl, be so kind and set a NEEDINFO back to the maintenance team if you have got more bugs for the release notes and you will start the update process.
Comment 6 Karl Eichwalder 2010-01-13 12:17:16 UTC
Christian, if you wont mind, I'll publish it together with a general 11.2 translation update (bug 558749).  I'd say that's fair because there are also quite some new release notes translations to add.
Comment 7 Karl Eichwalder 2010-01-13 12:27:08 UTC
created request id 29415 (for openSUSE-11.2).
Comment 8 Karl Eichwalder 2010-01-13 13:39:27 UTC
I'm about to create to the patchinfo.
Comment 9 Swamp Workflow Management 2010-01-21 13:49:49 UTC
Update released for: desktop-translations, release-notes-openSUSE, translation-update, translation-update-cs, translation-update-da, translation-update-de, translation-update-es, translation-update-fi, translation-update-fr, translation-update-gl, translation-update-hr, translation-update-hu, translation-update-it, translation-update-ja, translation-update-ka, translation-update-km, translation-update-ko, translation-update-lt, translation-update-nb, translation-update-nl, translation-update-pa, translation-update-pl, translation-update-pt, translation-update-pt_BR, translation-update-ro, translation-update-ru, translation-update-sk, translation-update-uk, translation-update-wa, yast2-trans, yast2-trans-af, yast2-trans-am, yast2-trans-ar, yast2-trans-be, yast2-trans-bg, yast2-trans-bn, yast2-trans-bs, yast2-trans-ca, yast2-trans-cs, yast2-trans-cy, yast2-trans-da, yast2-trans-de, yast2-trans-el, yast2-trans-en_GB, yast2-trans-en_US, yast2-trans-es, yast2-trans-et, yast2-trans-fa, yast2-trans-fi, yast2-trans-fr, yast2-trans-gl, yast2-trans-gu, yast2-trans-he, yast2-trans-hi, yast2-trans-hr, yast2-trans-hu, yast2-trans-id, yast2-trans-it, yast2-trans-ja, yast2-trans-jv, yast2-trans-ka, yast2-trans-km, yast2-trans-ko, yast2-trans-ku, yast2-trans-lo, yast2-trans-lt, yast2-trans-mk, yast2-trans-mr, yast2-trans-ms, yast2-trans-my, yast2-trans-nb, yast2-trans-nl, yast2-trans-pa, yast2-trans-pl, yast2-trans-pt, yast2-trans-pt_BR, yast2-trans-ro, yast2-trans-ru, yast2-trans-si, yast2-trans-sk, yast2-trans-sl, yast2-trans-sr, yast2-trans-sv, yast2-trans-sw, yast2-trans-ta, yast2-trans-tg, yast2-trans-th, yast2-trans-tk, yast2-trans-tr, yast2-trans-uk, yast2-trans-vi, yast2-trans-wa, yast2-trans-xh, yast2-trans-zh_CN, yast2-trans-zh_TW, yast2-trans-zu
Products:
openSUSE 11.2 (i586)