GNU bug report logs - #27135
/root is world readable by default

Previous Next

Package: guix;

Reported by: Alex Griffin <a <at> ajgrf.com>

Date: Mon, 29 May 2017 19:05:01 UTC

Severity: normal

Done: ludo <at> gnu.org (Ludovic Courtès)

Bug is archived. No further changes may be made.

Full log


View this message in rfc822 format

From: help-debbugs <at> gnu.org (GNU bug Tracking System)
To: ludo <at> gnu.org (Ludovic Courtès)
Cc: tracker <at> debbugs.gnu.org
Subject: bug#27135: closed (/root is world readable by default)
Date: Tue, 30 May 2017 16:13:03 +0000
[Message part 1 (text/plain, inline)]
Your message dated Tue, 30 May 2017 18:11:59 +0200
with message-id <878tle1fzk.fsf <at> gnu.org>
and subject line Re: bug#27135: /root is world readable by default
has caused the debbugs.gnu.org bug report #27135,
regarding /root is world readable by default
to be marked as done.

(If you believe you have received this mail in error, please contact
help-debbugs <at> gnu.org.)


-- 
27135: http://debbugs.gnu.org/cgi/bugreport.cgi?bug=27135
GNU Bug Tracking System
Contact help-debbugs <at> gnu.org with problems
[Message part 2 (message/rfc822, inline)]
From: Alex Griffin <a <at> ajgrf.com>
To: bug-guix <at> gnu.org
Subject: /root is world readable by default
Date: Mon, 29 May 2017 14:04:34 -0500
After a default install of GuixSD, anybody can read root's home
directory. I think /root should have permissions 700 instead of 755.


[Message part 3 (message/rfc822, inline)]
From: ludo <at> gnu.org (Ludovic Courtès)
To: Alex Griffin <a <at> ajgrf.com>
Cc: 27135-done <at> debbugs.gnu.org
Subject: Re: bug#27135: /root is world readable by default
Date: Tue, 30 May 2017 18:11:59 +0200
Hi Alex,

Alex Griffin <a <at> ajgrf.com> skribis:

> After a default install of GuixSD, anybody can read root's home
> directory. I think /root should have permissions 700 instead of 755.

Fixed in 41db5a756369f5b14d1e67a523ee0940cad56744.

For the other user accounts, useradd(8) does its thing, and apparently
it defaults to world-readable accounts (it defaults to a umask of 022 as
written in the man page).

Thoughts?

Thanks,
Ludo’.


This bug report was last modified 8 years and 48 days ago.

Previous Next


GNU bug tracking system
Copyright (C) 1999 Darren O. Benham, 1997,2003 nCipher Corporation Ltd, 1994-97 Ian Jackson.