Re: cons.saver not suid root



Hi Jakub,

On Wed, 2005-06-08 at 16:40, Jakub Jelinek wrote:
> cons.saver should not be setuid root, it should be setuid to whatever
> user owns /dev/vcsa* devices.  Ideally there is a vcsa user that
> just owns these devices and cons.saver.

Could you maybe go into the details if and if how a setuid-ed root
cons.saver could be abused?

Leonard.

-- 
mount -t life -o ro /dev/dna /genetic/research





[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]