[Bug 1327404] [NEW] Mailman's log files are world readable

Mark Sapiro mark at msapiro.net
Fri Jun 6 22:04:01 CEST 2014


Public bug reported:

Mailman creates log files with permissions -rw-rw-r--. This allows
possibly untrusted local users to read those logs and possibly find
sensitive information therein.

The same is true of lists/LISTNAME/request.pck files.

** Affects: mailman
     Importance: Medium
     Assignee: Mark Sapiro (msapiro)
         Status: In Progress

-- 
You received this bug notification because you are a member of Mailman
Coders, which is subscribed to GNU Mailman.
https://bugs.launchpad.net/bugs/1327404

Title:
  Mailman's log files are world readable

To manage notifications about this bug go to:
https://bugs.launchpad.net/mailman/+bug/1327404/+subscriptions


More information about the Mailman-coders mailing list