Bug#752092: softhsm-keyconv creates security-sensibe file world-readable

2014-12-01 Thread Ondřej Surý
On Sat, Nov 29, 2014, at 23:44, Moritz Mühlenhoff wrote: > On Thu, Jun 19, 2014 at 05:10:35PM +0200, Ondřej Surý wrote: > > Control: forwarded -1 https://issues.opendnssec.org/browse/SUPPORT-136 > > > > Funny, I have just fixed exactly same bug in ldns. > > > > Will push that forward... > > Can

Bug#752092: softhsm-keyconv creates security-sensibe file world-readable

2014-11-29 Thread Moritz Mühlenhoff
On Thu, Jun 19, 2014 at 05:10:35PM +0200, Ondřej Surý wrote: > Control: forwarded -1 https://issues.opendnssec.org/browse/SUPPORT-136 > > Funny, I have just fixed exactly same bug in ldns. > > Will push that forward... Can you please upload a fix for jessie? Cheers, Moritz -- To UNSU

Bug#752092: softhsm-keyconv creates security-sensibe file world-readable

2014-06-19 Thread Ondřej Surý
Control: forwarded -1 https://issues.opendnssec.org/browse/SUPPORT-136 Funny, I have just fixed exactly same bug in ldns. Will push that forward... O. On Thu, Jun 19, 2014, at 14:03, Jonas Smedegaard wrote: > Package: softhsm > Version: 1.3.3-2 > Severity: important > Tags: security > > -B

Bug#752092: softhsm-keyconv creates security-sensibe file world-readable

2014-06-19 Thread Jonas Smedegaard
Package: softhsm Version: 1.3.3-2 Severity: important Tags: security -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 the softshm-keyconv tool creates its output files with default access rights, i.e. group and aworld readable on a default Debian setup. I believe the correct thing would be to ins