Re: exim-using packages - are you relying on -C or -D options?
Stephen Gran writes ("Re: exim-using packages - are you relying on -C or -D options?"):
> This one time, at band camp, Ian Jackson said:
> > sauce uses the -C option. And chiark's mail system relies on -C very
> > heavily in other ways. Please don't break it.
>
> Can it limit itsef to a choice of two non world-writable directories?
The other config files are in /etc/exim4 just like the main one, if
that's what you mean.
> That is the only current way to keep a successful break-in to the exim
> account from escalating to root. There is a patch on exim-dev to allow
> this to work without escalated privileges, but it's not in the lenny
> exim.
Are you saying the current exim4 package in lenny-security already has
the disability you are discussing ?
Ian.
Reply to: