Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Linux release package files have excessive permissions #3293

Closed
itaranto opened this issue Oct 1, 2024 · 1 comment · Fixed by #3294
Closed

Linux release package files have excessive permissions #3293

itaranto opened this issue Oct 1, 2024 · 1 comment · Fixed by #3294
Assignees
Labels

Comments

@itaranto
Copy link

itaranto commented Oct 1, 2024

All files from the Linux latest release (1.40.0) have tar package contain 0755 permissions.

I think file permissions could be restricted further, ideally 0644 for regular files and 0755 for executables and directories.

@rgrunber rgrunber added the bug label Oct 2, 2024
@rgrunber
Copy link
Contributor

rgrunber commented Oct 2, 2024

I've looked as far back as 0.10.0, and it's 755 even there. Looks like it's controlled by

.

It should be pretty straightforward to split up the configuration files (644), the jar files (444), and the scripts (755) so that each has better permissions.

@rgrunber rgrunber changed the title Linux release package files have excesive permissions Linux release package files have excessive permissions Oct 2, 2024
@rgrunber rgrunber added this to the End October 2024 milestone Oct 2, 2024
@rgrunber rgrunber self-assigned this Oct 2, 2024
@rgrunber rgrunber moved this to ✅ Done in IDE Cloudaptors Oct 2, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

Successfully merging a pull request may close this issue.

2 participants