Re: setuid programs
Ian Jackson wrote:
> I'd like explanations for why I should not report the following sets
> of permissions as bugs:
[...]
> netstd 1.24-1
> (run out of inetd, why make it setgid?)
> -rwxr-sr-x 1 root mail 16388 Nov 22 09:13 /usr/sbin/in.pop3d
Because it needs the group "mail" to do proper mailbox locking. Since
it can also be run from the command line I didn't use the ".group"
extension in the /etc/inetd.conf file.
Peter
--
Peter Tobias EMail:
Fachhochschule Ostfriesland tobias@et-inf.fho-emden.de
Fachbereich Elektrotechnik und Informatik tobias@perseus.fho-emden.de
Constantiaplatz 4, 26723 Emden, Germany
Reply to: