Bug#243176: grub: minor security suggestion in menu.lst

Nicolas Boulenguez Nicolas Boulenguez <nicolas.boulenguez@free.fr>, 243176@bugs.debian.org
Sun, 11 Apr 2004 17:03:21 +0200


Package: grub
Version: 0.93+cvs20031021-8
Severity: wishlist
Tags: security

I suggest that
- the file /boot/grub/menu.lst automatically generated by grub
  configuration tools,
- the example provided in the /usr/share/doc/ documentation,
- the info documentation about the password command
remember the ineperimented user to chmod o-r the file before adding
its own uncrypted password into it.

-- System Information:
Debian Release: testing/unstable
  APT prefers testing
  APT policy: (500, 'testing')
Architecture: i386 (i686)
Kernel: Linux 2.4.25
Locale: LANG=fr_FR@euro, LC_CTYPE=fr_FR@euro

Versions of packages grub depends on:
ii  libc6                       2.3.2.ds1-11 GNU C Library: Shared libraries an
ii  libncurses5                 5.4-3        Shared libraries for terminal hand

-- no debconf information