spamassassin a possible security risk?

Thomas Zehetbauer thomasz at hostmaster.org
Tue Oct 19 12:46:25 UTC 2004


On Mon, 2004-10-18 at 21:13 -0500, John Thompson wrote:
> Spamd can be configured to run as a different user and on FreeBSD at
> least -- I don't run SA on my Fedora box -- it defaults to running as
> user "nobody" if it is invoked as "root" with no "-u [name]" option.

Fedora comes configured to run spamd as root, it then changes it's user-
id to the user supplied by spamc or nobody if that fails.

Tom

-- 
  T h o m a s   Z e h e t b a u e r   ( TZ251 )
  PGP encrypted mail preferred - KeyID 96FFCB89
      finger thomasz at hostmaster.org for key

XT emulator finally available for Pentium-IV: install Windows XP today!



-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 481 bytes
Desc: This is a digitally signed message part
URL: <http://listman.redhat.com/archives/fedora-list/attachments/20041019/734ff43b/attachment-0001.sig>


More information about the fedora-list mailing list