Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

CERT C++ Secure Coding StandardFIO06-CPP. Create files with appropriate access permissions
CERT Oracle Secure Coding Standard for JavaFIO01-J. Create files with appropriate access permissions
ISO/IEC TR 24731-1:2007Section 6.5.2.1, "The fopen_s Function"
ISO/IEC TR 24772:2013Missing or Inconsistent Access Control [XZN]
MITRE CWECWE-276, Insecure default permissions
CWE-279, Insecure execution-assigned permissions
CWE-732, Incorrect permission assignment for critical resource

...

[CVE] 
[Dowd 2006]Chapter 9, "UNIX 1: Privileges and Files"
[OpenBSD] 
[Open Group 2004]"The open Function"
"The umask Function"
[Viega 2003]Section 2.7, "Restricting Access Permissions for New Files on UNIX"