Re: GTK+-1.2.9 Released



Drazen Kacar <dave arsdigita com> writes:

> Owen Taylor wrote:
> 
> > Overview of Changes in GTK+ 1.2.9:
> > ==================================
> > 
> > * Refuse to initialize GTK+ when setuid (http://www.gtk.org/setuid.html)
> 
> Is this just setuid or it includes setgid? There are games which are
> setgid to group games for the sole purpose of having the ability to
> manipulate high score lists which are not accessible to users. Those
> programs will break if they can't run setgid any more.

It includes setgid, however, the check does not kick in if it
the program has already dropped setgid privileges before initializing
GTK+.

This is the way that GNOME games works, and there is a pretty
clear argument that any setgid game game should work this way.

                                        Owen




[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]