some archive directories have excessively open permissions

Bug #118220 reported by Colin Watson
2
Affects Status Importance Assigned to Milestone
Launchpad itself
Fix Released
Undecided
Unassigned

Bug Description

cjwatson@drescher:~$ find /srv/launchpad.net/ubuntu-archive/ubuntu/ -type d -perm 0777
/srv/launchpad.net/ubuntu-archive/ubuntu/dists/dapper/main/dist-upgrader-all
/srv/launchpad.net/ubuntu-archive/ubuntu/dists/dapper-updates/main/installer-hppa
/srv/launchpad.net/ubuntu-archive/ubuntu/dists/dapper-updates/main/installer-amd64
/srv/launchpad.net/ubuntu-archive/ubuntu/dists/dapper-updates/main/installer-powerpc
/srv/launchpad.net/ubuntu-archive/ubuntu/dists/dapper-updates/main/installer-sparc
/srv/launchpad.net/ubuntu-archive/ubuntu/dists/dapper-updates/main/installer-ia64
/srv/launchpad.net/ubuntu-archive/ubuntu/dists/dapper-updates/main/installer-i386
/srv/launchpad.net/ubuntu-archive/ubuntu/dists/dapper-updates/main/dist-upgrader-all
/srv/launchpad.net/ubuntu-archive/ubuntu/dists/edgy/main/dist-upgrader-all
/srv/launchpad.net/ubuntu-archive/ubuntu/dists/edgy-updates/main/dist-upgrader-all
/srv/launchpad.net/ubuntu-archive/ubuntu/dists/feisty/main/dist-upgrader-all
/srv/launchpad.net/ubuntu-archive/ubuntu/dists/feisty/main/installer-powerpc
/srv/launchpad.net/ubuntu-archive/ubuntu/dists/feisty/main/installer-amd64
/srv/launchpad.net/ubuntu-archive/ubuntu/dists/feisty/main/installer-i386
/srv/launchpad.net/ubuntu-archive/ubuntu/dists/feisty/main/installer-ia64
/srv/launchpad.net/ubuntu-archive/ubuntu/dists/feisty/main/installer-sparc

World-writable directories aren't really a great idea ...

Tags: lp-soyuz
Revision history for this message
James Henstridge (jamesh) wrote :

This is probably a duplicate of bug 107068. While the fix for that bug fixes new custom uploads, it wouldn't affect things already in the archive. Given that you didn't find any gutsy files with this problem, it probably just indicates some existing directories that need their permissions fixed.

Revision history for this message
Colin Watson (cjwatson) wrote :

OK, thanks. I can't see bug 107068 as it's private, but I've fixed the permissions on all the directories I listed.

Changed in soyuz:
status: Unconfirmed → Fix Released
Revision history for this message
Colin Watson (cjwatson) wrote :

(fixed to mode 2755)

To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.