Bug 1229699
Summary: | /etc/os-collect-config.conf is world readable and contains credentials to openstack | ||
---|---|---|---|
Product: | Red Hat OpenStack | Reporter: | Attila Fazekas <afazekas> |
Component: | openstack-tripleo-image-elements | Assignee: | James Slagle <jslagle> |
Status: | CLOSED ERRATA | QA Contact: | Attila Fazekas <afazekas> |
Severity: | urgent | Docs Contact: | |
Priority: | urgent | ||
Version: | 7.0 (Kilo) | CC: | apevec, kbasil, lhh, mburns, mcornea, rhel-osp-director-maint, sbaker, yeylon |
Target Milestone: | ga | ||
Target Release: | Director | ||
Hardware: | Unspecified | ||
OS: | Unspecified | ||
Whiteboard: | |||
Fixed In Version: | openstack-tripleo-image-elements-0.9.6-6.el7ost | Doc Type: | Bug Fix |
Doc Text: | Story Points: | --- | |
Clone Of: | Environment: | ||
Last Closed: | 2015-08-05 13:52:58 UTC | Type: | Bug |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: |
Comment 4
Attila Fazekas
2015-07-21 12:47:44 UTC
The final write sequence according to my strace.: 11212 open("/etc/tmp1ywvKu", O_RDWR|O_CREAT|O_EXCL|O_NOFOLLOW, 0600) = 3 .... 11212 chmod("/etc/tmp1ywvKu", 0600) = 0 11212 chown("/etc/tmp1ywvKu", 0, 0) = 0 11212 rename("/etc/tmp1ywvKu", "/etc/os-collect-config.conf") = 0 Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHEA-2015:1549 |