Note: This bug is displayed in read-only format because the product is no longer active in Red Hat Bugzilla.

Bug 84805

Summary: swap space permissions
Product: [Retired] Red Hat Linux Reporter: Thomas Kellar <tkellar>
Component: anacondaAssignee: Jeremy Katz <katzj>
Status: CLOSED DUPLICATE QA Contact: Mike McLean <mikem>
Severity: medium Docs Contact:
Priority: medium    
Version: 8.0CC: kmaraas, mitr
Target Milestone: ---Keywords: Security
Target Release: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Fixed In Version: Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2006-02-21 18:51:55 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:

Description Thomas Kellar 2003-02-21 15:54:23 UTC
Description of problem:

file based swap space is created with the wrong
permissions allowing anyone-any user to scan the
swap space.  It is created with 666 permissions
and should be created with 660 or better 600 
permissions.  The disk based rather then file
based swap space has 660 permissions.

Version-Release number of selected component (if applicable):

Version 8.0 professional version

How reproducible:

easy

Steps to Reproduce:
1. add swap space manually
2. add swap space via the upgrade to 8.0 process
3.
    
Actual results:

/SWAP created by the upgrade procedure has 666 permissions when it
should have 660 or 600 permissions

Expected results:


Additional info:

Easy to fix but this is a security problem on multi user systems.

Comment 1 Jeremy Katz 2003-02-21 21:50:43 UTC
Fixed in Phoebe and later

Comment 2 Kjartan Maraas 2003-04-03 19:59:12 UTC
This is a duplicate of http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=74849

Comment 3 Jeremy Katz 2003-04-03 20:10:27 UTC

*** This bug has been marked as a duplicate of 74849 ***

Comment 4 Red Hat Bugzilla 2006-02-21 18:51:55 UTC
Changed to 'CLOSED' state since 'RESOLVED' has been deprecated.