insecure permissions for zabbix_server_XXXX.pinger files

XMLWordPrintable

    • Type: Change Request
    • Resolution: Unresolved
    • Priority: Trivial
    • None
    • Affects Version/s: 2.2.7
    • Component/s: Server (S)
    • Environment:
      CentOS 6.6 x86_64

      Temp files for fping are created world readable:

      [root@myserver ~]# ls -l /tmp/zabbix_*pinger
      rw-rw-r- 1 zabbix zabbix 383 nov 5 09:24 /tmp/zabbix_server_5498.pinger
      rw-rw-r- 1 zabbix zabbix 13 nov 5 09:24 /tmp/zabbix_server_5502.pinger

      AFAIK these file contain hostnames only, but it would be better to be on the safe side and supress the read flag for others.

            Assignee:
            Unassigned
            Reporter:
            Alberto Díaz
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Created:
              Updated: