Mailinglist Archive: opensuse-bugs (3771 mails)

< Previous Next >
[Bug 910898] New: seccheck weekly and monthly report mails have no subject in mail header
  • From: bugzilla_noreply@xxxxxxxxxx
  • Date: Fri, 19 Dec 2014 19:41:57 +0000
  • Message-id: <bug-910898-21960@http.bugzilla.opensuse.org/>
http://bugzilla.opensuse.org/show_bug.cgi?id=910898

Bug ID: 910898
Summary: seccheck weekly and monthly report mails have no
subject in mail header
Classification: openSUSE
Product: openSUSE Distribution
Version: 13.2
Hardware: x86-64
OS: openSUSE 13.2
Status: NEW
Severity: Normal
Priority: P5 - None
Component: Security
Assignee: security-team@xxxxxxx
Reporter: d_werner@xxxxxxx
QA Contact: qa-bugs@xxxxxxx
Found By: ---
Blocker: ---

Created attachment 618054
--> http://bugzilla.opensuse.org/attachment.cgi?id=618054&action=edit
patch to remove the leading blanks from the here documents in
security-control.sh

The monthly and weekly report mails generated by seccheck contain no subject in
the mail header.

This is caused by whitespace formatting in the here document which generates
the header in security-control.sh, similar to #904544 for the daily reports.

####
Current result:
dirk@linux:~> mail
Heirloom mailx version 12.5 7/5/10. Type ? for help.
"/var/mail/dirk": 1 message 1 new
N 1 root@xxxxxxxxxxxxx Fri Dec 19 19:49 866/29578
?
####
Desired result:
dirk@linux:~> mail
Heirloom mailx version 12.5 7/5/10. Type ? for help.
"/var/mail/dirk": 1 message 1 new
N 1 root@xxxxxxxxxxxxx Fri Dec 19 19:57 865/29533 Local Monthly Security for
linux: Complete
?
####

The faulty mail looks like this:
From root@xxxxxxxxxxxxxxx Fri Dec 19 19:49:55 2014
Return-Path: <root@xxxxxxxxxxxxxxx>
X-Original-To: root
Delivered-To: root@xxxxxxxxxxxxxxx
Received: by linux-qbcc.site (Postfix, from userid 0)
<------>id 5358A4071B; Fri, 19 Dec 2014 19:49:55 +0100 (CET)
Message-Id: <20141219184955.5358A4071B@xxxxxxxxxxxxxxx>
Date: Fri, 19 Dec 2014 19:49:55 +0100 (CET)
From: root@xxxxxxxxxxxxxxx (root)
Status: RO

To: root
Subject: Local Monthly Security for linux: Complete

Monthly security check v3.0 by Marc Heuse <marc@xxxxxxx>
This is an automated mail by the seccheck tool. If you want to
disable
this service, set START_SECCHK=no in /etc/sysconfig/seccheck.

DISCLAIMER
...
Please note that these security checks are neither complete nor reliable.
Any attacker with proper experience and root access to your system can
deceive *any* security check!

Monthly security check v3.0 by Marc Heuse <marc@xxxxxxx>

NOTE: have you checked http://www.novell.com/products/security.html for
security updates?!

####
The correct mail looks like this:
From root@xxxxxxxxxxxxxxx Fri Dec 19 19:57:18 2014
Return-Path: <root@xxxxxxxxxxxxxxx>
X-Original-To: root
Delivered-To: root@xxxxxxxxxxxxxxx
Received: by linux-qbcc.site (Postfix, from userid 0)
id E7AA24071B; Fri, 19 Dec 2014 19:57:17 +0100 (CET)
To: root@xxxxxxxxxxxxxxx
Subject: Local Monthly Security for linux: Complete
Message-Id: <20141219185717.E7AA24071B@xxxxxxxxxxxxxxx>
Date: Fri, 19 Dec 2014 19:57:17 +0100 (CET)
From: root@xxxxxxxxxxxxxxx (root)
Status: RO

Monthly security check v3.0 by Marc Heuse <marc@xxxxxxx>
This is an automated mail by the seccheck tool. If you want to disable
this service, set START_SECCHK=no in /etc/sysconfig/seccheck.

DISCLAIMER

Please note that these security checks are neither complete nor reliable.
Any attacker with proper experience and root access to your system can
deceive *any* security check!

Monthly security check v3.0 by Marc Heuse <marc@xxxxxxx>


NOTE: have you checked http://www.novell.com/products/security.html for
security updates?!

####
The difference is just the whitespace.

The attached patch removes the blanks at the line begin of the here-documents
for the weekly and monthly reports from security-control.sh and results in
correct mails.

Sorry for raising this just after the update for 904544 is pushed, but the
weekly and monthly reports do not come so often.

--
You are receiving this mail because:
You are on the CC list for the bug.
< Previous Next >
Follow Ups