Skip to content

[SecuritySolution][Timelines] Update privilege#208383

Merged
janmonschke merged 1 commit intoelastic:mainfrom
janmonschke:security/fix-endpoints-privileges
Jan 27, 2025
Merged

[SecuritySolution][Timelines] Update privilege#208383
janmonschke merged 1 commit intoelastic:mainfrom
janmonschke:security/fix-endpoints-privileges

Conversation

@janmonschke
Copy link
Copy Markdown
Contributor

Summary

We forgot to update this privilege in #201780 . The endpoint only uses the scoped SO client, so this missing privilege declaration does not lead to privilege escalation on the endpoint. There are automated tests that check for the correct privilege access for this and other endpoints.

@janmonschke janmonschke added release_note:skip Skip the PR/issue when compiling release notes backport:skip This PR does not require backporting v9.0.0 Team:Threat Hunting:Investigations Security Solution Threat Hunting Investigations Team labels Jan 27, 2025
@janmonschke janmonschke requested a review from a team as a code owner January 27, 2025 14:46
@elasticmachine
Copy link
Copy Markdown
Contributor

Pinging @elastic/security-threat-hunting-investigations (Team:Threat Hunting:Investigations)

@janmonschke janmonschke enabled auto-merge (squash) January 27, 2025 14:56
@janmonschke janmonschke merged commit 1449a20 into elastic:main Jan 27, 2025
@elasticmachine
Copy link
Copy Markdown
Contributor

💛 Build succeeded, but was flaky

Failed CI Steps

Metrics [docs]

✅ unchanged

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

backport:skip This PR does not require backporting release_note:skip Skip the PR/issue when compiling release notes Team:Threat Hunting:Investigations Security Solution Threat Hunting Investigations Team v9.0.0

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants