Skip to content

Comments

Fixes pentest issue DG25-28 from 2025-09-02#578

Merged
j-chmielewski merged 7 commits intodevfrom
fix-dg25-28
Sep 19, 2025
Merged

Fixes pentest issue DG25-28 from 2025-09-02#578
j-chmielewski merged 7 commits intodevfrom
fix-dg25-28

Conversation

@j-chmielewski
Copy link
Contributor

This pull request fixes vulnerability from penetration tests done by our security team on 2025-09-02:

Ensure data directories have appropriate permissions

Related issue #563

filipslezaklab
filipslezaklab previously approved these changes Sep 19, 2025
@j-chmielewski j-chmielewski merged commit cf49ab2 into dev Sep 19, 2025
3 checks passed
@j-chmielewski j-chmielewski deleted the fix-dg25-28 branch September 19, 2025 11:24
j-chmielewski added a commit that referenced this pull request Sep 24, 2025
* Fix build and cargo dependencies (#580)

* Fixes pentest issue DG25-28 from 2025-09-02 (#578)

* ensure data directories have appropriate permissions
* also set permissions for log directory
* set permissions for other files/directories
* automatically determine if path is a directory
* nix flake update

* bump defguard-wireguard-rs dependency to 0.7.7 (#582)

* bump version to 1.5.1

* Avoid panic when UNIX domain socket cannot be connected (#588)

* Refer to troubleshooting guide (#590)

---------

Co-authored-by: Maciek <19913370+wojcik91@users.noreply.github.com>
Co-authored-by: Adam <adam@defguard.net>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants