[DRE-maint] Bug#578534: libapache2-mod-passenger: AssignUserID not respected in directory privileges

Radek Antoniuk wardenik at gmail.com
Tue Apr 20 16:38:08 UTC 2010


Package: libapache2-mod-passenger
Version: 2.2.11debian-1
Severity: important
Tags: upstream


I am using passenger with apache2-mpm-itk and AssignUserID directive in config file of virtual hosts.
The problem is, that passenger temporary files are created with wrong privileges, i.e.
if I have
AssignUserID user1 group1 
in the config, then:
/tmp/passenger.XXX/webserver_private/
should be created with that user/group id.
Instead it is closed for root only.


-- System Information:
Debian Release: squeeze/sid
  APT prefers testing
  APT policy: (500, 'testing')
Architecture: i386 (i686)

Kernel: Linux 2.6.24-10-pve (SMP w/2 CPU cores; PREEMPT)
Locale: LANG=C, LC_CTYPE=C (charmap=ANSI_X3.4-1968)
Shell: /bin/sh linked to /bin/dash

Versions of packages libapache2-mod-passenger depends on:
ii  apache2-mpm-itk             2.2.15-3     multiuser MPM for Apache 2.2
ii  libapr1                     1.4.2-3      The Apache Portable Runtime Librar
ii  libaprutil1                 1.3.9+dfsg-3 The Apache Portable Runtime Utilit
ii  libc6                       2.10.2-6     Embedded GNU C Library: Shared lib
ii  libgcc1                     1:4.4.2-9    GCC support library
ii  libjs-prototype             1.6.1-1      JavaScript Framework for dynamic w
ii  librack-ruby                1.1.0-3      A modular Ruby webserver interface
ii  libruby1.8                  1.8.7.249-2  Libraries necessary to run Ruby 1.
ii  libstdc++6                  4.4.2-9      The GNU Standard C++ Library v3
ii  ruby                        4.4          An interpreter of object-oriented 
ii  rubygems                    1.3.5-2      package management framework for R

libapache2-mod-passenger recommends no packages.

Versions of packages libapache2-mod-passenger suggests:
pn  passenger-doc                 <none>     (no description available)
ii  python                        2.5.4-9    An interactive high-level object-o
ii  rails                         2.2.3-2    MVC ruby based framework geared fo

-- debconf-show failed






More information about the Pkg-ruby-extras-maintainers mailing list