Open-iSCSI targetcli-fb through 2.1.52 has weak permissions for /etc/target (and for the backup directory and backup files).
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-13867
Reference (s):
- FEDORA:FEDORA-2020-83d2616f81
- URL: https://lists.fedoraproject.org/archives/list/[email protected]/message/6LANBGRCCZBPKKBD5ZMJS7C7DYAHYR6B/
- GENTOO:GLSA-202008-22
- URL: https://security.gentoo.org/glsa/202008-22
- https://github.com/open-iscsi/targetcli-fb/pull/172

