Follow me on twitter

Ticket #428 (closed defect: fixed)

Opened 17 months ago

Last modified 10 months ago

internal config leak

Reported by: dch Owned by: bryan
Priority: trivial Milestone: 1.3
Component: shell config Version: 1.2.15
Keywords: Cc:

Description

when entering config-editing mode with ./hub -C and not editing anything, simply exiting vi with :q the config file still exists in ./tmp/.conf-XXXXX and is readable revealing hub's ip among other details.

Change History

Changed 17 months ago by bryan

  • priority changed from critical to trivial
  • type changed from memory leak to defect
  • component changed from core to shell config

a. your hub shouldn't be on a public shell b. sockstat would show this as well from hub or leaf shell

This isn't really that major at all.

Changed 10 months ago by bryan

  • milestone set to 1.2.17

Changed 10 months ago by Bryan Drewery

  • status changed from new to closed
  • resolution set to fixed

* Fix a case where the temporary file was not cleaned up when exiting config editor (-C) (fixes #428)

Changeset: ba5aab3f9cd0f5e1b2d4a88c032e3c9602cc8564

Note: See TracTickets for help on using tickets.