[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: exim-using packages - are you relying on -C or -D options?

This one time, at band camp, Ian Jackson said:
> Andreas Metzler writes ("exim-using packages - are you relying on -C or -D options?"):
> > Do you know packages that rely on the -D or -C options? For -C
> > option, in which directory is the alternate configuration file searched
> > for?
> sauce uses the -C option.  And chiark's mail system relies on -C very
> heavily in other ways.  Please don't break it.

Can it limit itsef to a choice of two non world-writable directories?
That is the only current way to keep a successful break-in to the exim
account from escalating to root.  There is a patch on exim-dev to allow
this to work without escalated privileges, but it's not in the lenny

|   ,''`.                                            Stephen Gran |
|  : :' :                                        sgran@debian.org |
|  `. `'                        Debian user, admin, and developer |
|    `-                                     http://www.debian.org |

Attachment: signature.asc
Description: Digital signature

Reply to: