[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: suid binaries should not be writable by owner



On Tue, Feb 06, 2001 at 10:12:00PM -0600, Chris Lawrence wrote:
> Then again, if the software can run as a non-root user and be suid to
> that user, I can't think of any good reason why it couldn't just be
> sgid to some group without any users in it instead.  Maybe I'm not
> thinking hard enough though :)

Because then files created by it would be owned by the user running
the process, which might not be what you want.

   Julian

-- 
=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-

         Julian Gilbey, Dept of Maths, Queen Mary, Univ. of London
       Debian GNU/Linux Developer,  see http://people.debian.org/~jdg
  Donate free food to the world's hungry: see http://www.thehungersite.com/



Reply to: