Default permissions for injected files can be too loose in some cases

Bug #967807 reported by Johannes Erdfelt
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
openstack-guest-agents
Fix Committed
Medium
Abhishek Kumar

Bug Description

For instance, if /etc/shadow is injected, then 0644 permissions are too loose.

A possible fix is to maintain the same permissions if a file already exists, but default to 0644 for new files.

Changed in openstack-guest-agents:
status: New → Confirmed
importance: Undecided → Medium
Revision history for this message
Abhishek Kumar (abionic) wrote :

mentioned commit#666d2 link has the fix,
https://github.com/rackerlabs/openstack-guest-agents-unix/commit/666d2090e68baa186ae44ddbf1d2558a8c491dc7

once it's merged into master, will close this bug

Changed in openstack-guest-agents:
status: Confirmed → Fix Committed
assignee: nobody → Abhishek Kumar (abionic)
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.