[Bug 1327404] Re: Mailman's log files are world readable
Mark Sapiro
mark at msapiro.net
Fri Jun 6 22:12:13 CEST 2014
** Description changed:
Mailman creates log files with permissions -rw-rw-r--. This allows
possibly untrusted local users to read those logs and possibly find
sensitive information therein.
- The same is true of lists/LISTNAME/request.pck files.
+ The same is true of lists/LISTNAME/request.pck files and data/heldmsg-*
+ files.
--
You received this bug notification because you are a member of Mailman
Coders, which is subscribed to GNU Mailman.
https://bugs.launchpad.net/bugs/1327404
Title:
Mailman's log files are world readable
To manage notifications about this bug go to:
https://bugs.launchpad.net/mailman/+bug/1327404/+subscriptions
More information about the Mailman-coders
mailing list