RPM

Comment 29 for bug 634183

Revision history for this message
In , Vincent (vincent-redhat-bugs) wrote :

Statement:

We do not consider RPM's lack of removing POSIX ACLs to be security sensitive. Users cannot use POSIX ACLs to elevate their privileges; therefore, there is no need to clear them upon package upgrade or removal.