Package: backup-manager Version: 0.7.7-1 Severity: important
When using BM to back-up MySQL databases, it uses the .my.cnf file in $HOME for the password. If this file does not exist, BM creates it and populates it with the password set in /etc/backup-manager.conf. However, when run under cron, BM is run under a non-privileged user that has no $HOME (or it's something like "/dev/null" or "/"). In that case, the .my.cnf is created in "/" and left there, which is obviously a bad thing for a lot of reasons. I think the fix for this should be quite easy -- if the .my.cnf file does not exist and is created by BM, then BM should also delete it after it's done with it. -- System Information: Debian Release: lenny/sid APT prefers unstable APT policy: (500, 'unstable') Architecture: amd64 (x86_64) Kernel: Linux 2.6.26-1-amd64 (SMP w/2 CPU cores) Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8) (ignored: LC_ALL set to en_US.UTF-8) Shell: /bin/sh linked to /bin/bash Versions of packages backup-manager depends on: ii debconf [debconf-2.0] 1.5.23 Debian configuration management sy ii findutils 4.4.0-2 utilities for finding files--find, ii gzip 1.3.12-6 The GNU compression utility ii ucf 3.007 Update Configuration File: preserv backup-manager recommends no packages. Versions of packages backup-manager suggests: ii anacron 2.3-13.1 cron-like program that doesn't go ii dar 2.3.8-3 Disk ARchive: Backup directory tre ii dvd+rw-tools 7.1-3 DVD+-RW/R tools ii gettext-base 0.17-3 GNU Internationalization utilities ii mkisofs 9:1.1.8-1 Dummy transition package for genis ii openssh-client 1:5.1p1-2 secure shell client, an rlogin/rsh ii perl 5.10.0-13 Larry Wall's Practical Extraction ii perl-modules [libnet-perl] 5.10.0-13 Core Perl modules ii wodim 9:1.1.8-1 command line CD/DVD writing tool ii zip 2.32-1 Archiver for .zip files -- debconf information: backup-manager/upload-key: backup-manager/name-format: long backup-manager/upload-hosts: backup-manager/upload-user-ftp: backup-manager/cron_frequency: daily backup-manager/cron_d_remove_deprecated: false backup-manager/blacklist: /var/archives backup-manager/time-to-live: 5 backup-manager/burning-maxsize: 650 backup-manager/encryption_recipient: backup-manager/upload-user-scp-warning: backup-manager/transfert_mode: scp backup-manager/dump_symlinks: false backup-manager/upload-user-scp: bmngr backup-manager/burning-device: /dev/cdrom backup-manager/upload-dir: /var/archives/uploads backup-manager/enable_encryption: false * backup-manager/directories: /etc /home/yyy * backup-manager/repo_group: xxx backup-manager/filetype: tar.gz * backup-manager/repo_user: yyy * backup-manager/backup-repository: /var/archives backup-manager/burning-method: CDRW backup-manager/burning-enabled: false backup-manager/want_to_upload: false -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]