[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: /dev/fb* permissions, local DoS

On Mon, Nov 20, 2000 at 10:09:23AM +0100, Michel Dänzer wrote:
> So 0620 might be better, with /dev/fb in group video or a dedicated group.

that seems more reasonable.

> This is on a SuSE 6.4 system BTW:
> crw-rw----   1 root     video     29,   0 Mar 11  2000 /dev/fb0

this is broken IMO, it allows all members of group video to grab a
copy of the current framebuffer contents.  620 is safer.  

Ethan Benson

Attachment: pgpMmCx7JRi3W.pgp
Description: PGP signature

Reply to: