Default permissions for injected files can be too loose in some cases
Bug #967807 reported by
Johannes Erdfelt
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
openstack-guest-agents |
Fix Committed
|
Medium
|
Abhishek Kumar |
Bug Description
For instance, if /etc/shadow is injected, then 0644 permissions are too loose.
A possible fix is to maintain the same permissions if a file already exists, but default to 0644 for new files.
Changed in openstack-guest-agents: | |
status: | New → Confirmed |
importance: | Undecided → Medium |
To post a comment you must log in.
mentioned commit#666d2 link has the fix, /github. com/rackerlabs/ openstack- guest-agents- unix/commit/ 666d2090e68baa1 86ae44ddbf1d255 8a8c491dc7
https:/
once it's merged into master, will close this bug