Sascha Herrmann
2010-Sep-08 09:03 UTC
[Pkg-xen-devel] Bug#596048: xen-utils-common: /etc/init.d/xendomains stop saves images world readable
Package: xen-utils-common Version: 4.0.0-1 Severity: important When xen domUs are saved by running /etc/init.d/xendomains stop the memory images are saved world readable, so that every user on the system can read the memory dumps. The default mode of /var/lib/xen/save is 755, vm images are saved with mode 755. At least the save directory shoudn't be world readable. -- System Information: Debian Release: squeeze/sid APT prefers testing APT policy: (500, 'testing') Architecture: amd64 (x86_64) Kernel: Linux 2.6.32-5-xen-amd64 (SMP w/8 CPU cores) Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8) Shell: /bin/sh linked to /bin/dash Versions of packages xen-utils-common depends on: ii gawk 1:3.1.7.dfsg-5 GNU awk, a pattern scanning and pr ii lsb-base 3.2-23.1 Linux Standard Base 3.2 init scrip ii udev 160-1 /dev/ and hotplug management daemo ii xenstore-utils 4.0.1~rc6-1 Xenstore utilities for Xen xen-utils-common recommends no packages. xen-utils-common suggests no packages. -- Configuration Files: /etc/xen/xend-config.sxp changed [not included] -- no debconf information
Debian Bug Tracking System
2012-May-06 18:42 UTC
[Pkg-xen-devel] Bug#596048: marked as done (xen-utils-common: /etc/init.d/xendomains stop saves images world readable)
Your message dated Sun, 06 May 2012 18:39:34 +0000 with message-id <E1SR6Mo-00024g-TS at franck.debian.org> and subject line Bug#596048: fixed in xen 4.1.2-6 has caused the Debian Bug report #596048, regarding xen-utils-common: /etc/init.d/xendomains stop saves images world readable to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what this message is talking about, this may indicate a serious mail system misconfiguration somewhere. Please contact owner at bugs.debian.org immediately.) -- 596048: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=596048 Debian Bug Tracking System Contact owner at bugs.debian.org with problems -------------- next part -------------- An embedded message was scrubbed... From: Sascha Herrmann <sh-bugs at nvbi.de> Subject: xen-utils-common: /etc/init.d/xendomains stop saves images world readable Date: Wed, 08 Sep 2010 11:03:10 +0200 Size: 2611 URL: <http://lists.alioth.debian.org/pipermail/pkg-xen-devel/attachments/20120506/ed375648/attachment-0002.mht> -------------- next part -------------- An embedded message was scrubbed... From: Bastian Blank <waldi at debian.org> Subject: Bug#596048: fixed in xen 4.1.2-6 Date: Sun, 06 May 2012 18:39:34 +0000 Size: 8519 URL: <http://lists.alioth.debian.org/pipermail/pkg-xen-devel/attachments/20120506/ed375648/attachment-0003.mht>
Maybe Matching Threads
- Bug#772809: Update debian xendomains init and default to latest xen upstream
- Error in /etc/init.d/xendomains if using option XEN_DOMAINS_AUTO_ONLY=true - saving of the domains always fails / shutdown is called
- Error in /etc/init.d/xendomains if using option XEN_DOMAINS_AUTO_ONLY=true - saving of the domains always fails / shutdown is called
- Bug#680528: xcp-xapi: /etc/init.d/xendomains cause xapi to hand during boot
- Bug#763102: xen-utils-common: xen-init-list fails to parse xm output -> cannot shutdown domains with service xendomains