[Secure-testing-team] Bug#448873: iscsitarget: ietd.conf public readable and contains passwords

Martin Zobel-Helas zobel at debian.org
Fri Nov 2 17:25:39 UTC 2007


Package: iscsitarget
Version: 0.4.15-4
Severity: serious
Tags: security
Justification: Policy 10.9

Hi,

/etc/ietd.conf will on most usual cases contain passwords, but is 644
per default after the installations. That needs to be fixed.

Greetings
Martin

-- System Information:
Debian Release: 4.0
  APT prefers stable
  APT policy: (500, 'stable')
Architecture: i386 (i686)
Shell:  /bin/sh linked to /bin/bash
Kernel: Linux 2.6.18-5-686
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)





More information about the Secure-testing-team mailing list