From 3bdcce6903850552c1b869447497d6e0ed2dfa3b Mon Sep 17 00:00:00 2001 From: Miroslav Lichvar Date: Wed, 8 Jul 2020 17:02:32 +0200 Subject: [PATCH] conf: restrict permissions of created directories If logdir or dumpdir doesn't exist, create the directory with no permissions for other users (mode 0750 instead of 0755). --- conf.c | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/conf.c b/conf.c index 2e994dc..20ce93b 100644 --- a/conf.c +++ b/conf.c @@ -1766,9 +1766,9 @@ CNF_CreateDirs(uid_t uid, gid_t gid) } if (logdir) - UTI_CreateDirAndParents(logdir, 0755, uid, gid); + UTI_CreateDirAndParents(logdir, 0750, uid, gid); if (dumpdir) - UTI_CreateDirAndParents(dumpdir, 0755, uid, gid); + UTI_CreateDirAndParents(dumpdir, 0750, uid, gid); } /* ================================================== */