-
Notifications
You must be signed in to change notification settings - Fork 25.5k
Make sure file accesses in DnRoleMapper are done in stack frames with permissions #112400
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Conversation
Hi @thecoop, I've created a changelog YAML for you. |
Pinging @elastic/es-core-infra (Team:Core/Infra) |
Hi @thecoop, I've created a changelog YAML for you. |
This fixes the bug - we can look at improving the testing as part of #112411 |
Pinging @elastic/es-security (Team:Security) |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
lgtm 🥇
💚 Backport successful
|
… permissions (elastic#112400) * Make sure file accesses are done in stack frames with permissions * Update docs/changelog/112400.yaml * Delete docs/changelog/112400.yaml * Update docs/changelog/112400.yaml
@thecoop I believe this is now targeted for 8.15.2, should we update the version label? Also, should we add a known issue entry to 8.15.0 and 8.15.1 (upcoming) release notes? Thx! |
Good idea - created #112506 |
… permissions (elastic#112400) * Make sure file accesses are done in stack frames with permissions * Update docs/changelog/112400.yaml * Delete docs/changelog/112400.yaml * Update docs/changelog/112400.yaml
…mes with permissions (elastic#112400)" This reverts commit 2871b94.
…ames with permissions (elastic#112400)" This reverts commit c85ca4c046f843858590072423521ec27d17b357.
The Settings method doesn't have permissions to access secured files