Re: Linux 2.3.99pre9-2 JOB list

From: Alan Cox (alan@lxorguk.ukuu.org.uk)
Date: Thu May 18 2000 - 05:45:41 EST


> Yes, except that GUI _anything_ involves a bunch of libraries that never
> were audited with suid-root in mind. And the main activity of said
> libraries is dealing with user-controlled input... I dearly hope that
> this GUI mount actually calls mount(8) - assuming the authors' sanity it's
> the only reasonable variant, but that's a heck of undemonstrated
> assumption...

The GUI ones I have seen use mount(8) and its existing user mount stuff. I've
not seen any that are setuid. Even modern xdm clones and xterm replacements
are not setuid/setgid

-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.rutgers.edu
Please read the FAQ at http://www.tux.org/lkml/



This archive was generated by hypermail 2b29 : Tue May 23 2000 - 21:00:15 EST