net-misc/networkmanager-no-modify-system-patch (khoverlay)

Search

Package Information

Description:
READ THIS BEFORE USING THIS PACKAGE. Official Gentoo packaging of NetworkManager >=1.42.6 unconditionally sets a nondefault build-time option (-Dmodify_system=true) that allows ALL logged in users to modify system connections, including reading network credentials (https://bugs.gentoo.org/905668). This ebuild provides a patch to the configure script that disables the logic behind this option, so that network settings are again protected from untrusted users and programs. This ebuild is package.masked by default as it has the potential to break the build of NetworkManager, especially on ~arch when a new version of NetworkManager is released and the patch no longer applies cleanly. Pings are welcome if things break on unstable and I haven't updated the patch yet. After installing this package for the first time, rebuilding net-misc/networkmanager is required.
Homepage:
https://khumba.net/
License:
Apache-2.0

Versions

Version EAPI Keywords Slot
1 8 ~alpha ~amd64 ~arm ~arm64 ~ia64 ~loong ~ppc ~ppc64 ~riscv ~sparc ~x86 0

Metadata

Description

Maintainers

Raw Metadata XML
<pkgmetadata>
	<maintainer type="person">
		<email>bog@khumba.net</email>
		<name>Bryan Gardiner</name>
	</maintainer>
	<longdescription>
    READ THIS BEFORE USING THIS PACKAGE.

    Official Gentoo packaging of NetworkManager >=1.42.6 unconditionally
    sets a nondefault build-time option (-Dmodify_system=true) that
    allows ALL logged in users to modify system connections, including
    reading network credentials (https://bugs.gentoo.org/905668).  This
    ebuild provides a patch to the configure script that disables the
    logic behind this option, so that network settings are again
    protected from untrusted users and programs.

    This ebuild is package.masked by default as it has the potential to
    break the build of NetworkManager, especially on ~arch when a new
    version of NetworkManager is released and the patch no longer
    applies cleanly.  Pings are welcome if things break on unstable and
    I haven't updated the patch yet.

    After installing this package for the first time, rebuilding
    net-misc/networkmanager is required.
  </longdescription>
</pkgmetadata>

Lint Warnings

Files

Manifest

Type File Size Versions
Unmatched Entries
Type File Size
AUX nm-1.42.6-neuter-modify-system.patch 798 bytes
EBUILD networkmanager-no-modify-system-patch-1.ebuild 977 bytes
MISC metadata.xml 1228 bytes