[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Setting file capabilites of files shipped in binary packages

Sebastian Harl <tokkee@debian.org> writes:
> Imho, setting the file capability is a nicer approach than setting the
> setuid bit.

Do you know about any lurking bugs (in udev, dbus, etc?) that could
allow one to escalate CAP_NET_RAW to full root privileges in regular
squeeze installations?

Reply to: