Details
-
Bug
-
Status: Closed
-
Major
-
Resolution: Fixed
-
2.2.1
-
None
Description
Despite having set the directoryMode for the dependencySet the permissions are ignored and the folder is set to 777 which poses as a possible security risk. Please find attached project which can be used to create the test zip containing the folder with incorrect permissions.
$ unzip project-deploy.zip Archive: project-deploy.zip creating: webapps/ inflating: webapps/commons-fileupload.jar $ ls -lah total 92K drwxr-xr-x 4 johno sulake 4.0K Oct 27 20:26 . drwxr-xr-x 4 johno sulake 4.0K Oct 27 20:25 .. drwxr-xr-x 2 johno sulake 4.0K Oct 27 20:25 archive-tmp -rw-r--r-- 1 johno sulake 51K Oct 27 20:25 project-deploy.zip drwxrwxrwx 2 johno sulake 4.0K Oct 27 20:25 webapps
Thanks in advance!