Bug 1431499
| Summary: | openvswitch: /var/log/openvswitch is world readable | |||
|---|---|---|---|---|
| Product: | Red Hat OpenStack | Reporter: | Summer Long <slong> | |
| Component: | openvswitch | Assignee: | Timothy Redaelli <tredaelli> | |
| Status: | CLOSED ERRATA | QA Contact: | Ofer Blaut <oblaut> | |
| Severity: | medium | Docs Contact: | ||
| Priority: | medium | |||
| Version: | 6.0 (Juno) | CC: | aloughla, amuller, apevec, chrisw, eglynn, fleitner, jruzicka, jschluet, lhh, lmartins, mburns, oblaut, opavlenk, pkilambi, rbartal, rhel-osp-director-maint, rhos-maint, sclewis, slinaber, srevivo, ssmolyak | |
| Target Milestone: | zstream | Keywords: | Security, Triaged, ZStream | |
| Target Release: | 6.0 (Juno) | |||
| Hardware: | Unspecified | |||
| OS: | Unspecified | |||
| Whiteboard: | ||||
| Fixed In Version: | openvswitch-2.4.1-2.git20160727.el7ost | Doc Type: | If docs needed, set a value | |
| Doc Text: | Story Points: | --- | ||
| Clone Of: | 1431497 | |||
| : | 1431501 (view as bug list) | Environment: | ||
| Last Closed: | 2017-09-06 17:50:13 UTC | Type: | Bug | |
| Regression: | --- | Mount Type: | --- | |
| Documentation: | --- | CRM: | ||
| Verified Versions: | Category: | --- | ||
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | ||
| Cloudforms Team: | --- | Target Upstream Version: | ||
| Embargoed: | ||||
|
Description
Summer Long
2017-03-13 02:12:42 UTC
[root@localhost ~]# rpm -q openvswitch
openvswitch-2.4.1-1.git20160727.el7_2.x86_64
[root@localhost ~]# ls -l /var/log/openvswitch
total 0
[root@localhost ~]# ls -ld !$
ls -ld /var/log/openvswitch
drwxr-xr-x. 2 root root 6 Jul 26 2016 /var/log/openvswitch
^^^ 'other' world read/execute bits set.
[root@localhost ~]# rpm -Uvh openvswitch-2.4.1-2.git20160727.el7ost.x86_64.rpm
Preparing... ################################# [100%]
Updating / installing...
1:openvswitch-2.4.1-2.git20160727.e################################# [ 50%]
Cleaning up / removing...
2:openvswitch-2.4.1-1.git20160727.e################################# [100%]
[root@localhost ~]# ls -ld /var/log/openvswitch/
drwxr-x---. 2 root root 6 Jul 25 11:28 /var/log/openvswitch/
^^^ 'other' world read/execute bits NOT set.
Verified with openvswitch-2.4.1-2.git20160727.el7ost.
Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHSA-2017:2665 |