[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: /dev/fb* permissions, local DoS



On Mon, Nov 20, 2000 at 10:09:23AM +0100, Michel Dänzer wrote:
> 
> So 0620 might be better, with /dev/fb in group video or a dedicated group.

that seems more reasonable.

> This is on a SuSE 6.4 system BTW:
> 
> crw-rw----   1 root     video     29,   0 Mar 11  2000 /dev/fb0

this is broken IMO, it allows all members of group video to grab a
copy of the current framebuffer contents.  620 is safer.  

-- 
Ethan Benson
http://www.alaska.net/~erbenson/

Attachment: pgpMmCx7JRi3W.pgp
Description: PGP signature


Reply to: