kolide / launcher

Osquery launcher, autoupdater, and packager
https://kolide.com/launcher
Other
500 stars 99 forks source link

Ensure file permissions are set appropriately when untarring archives during autoupdate #1680

Closed RebeccaMahany closed 2 months ago

RebeccaMahany commented 2 months ago

Replaces kolide/kit's UntarBundle with a new implementation that creates files with sanitized permissions, ensuring that group/public will never have write access to the autoupdate as it's being extracted.