FC4 setuid executable changes

Bill Nottingham notting at redhat.com
Fri May 27 16:32:00 UTC 2005


Matthew Miller (mattdm at mattdm.org) said: 
> 
> On Fri, May 27, 2005 at 12:08:43PM -0400, Bill Nottingham wrote:
> > > +/usr/bin/screen	root	utmp	-rwxr-sr-x
> > This looks wrong.... if it's using utempter, why is it setgid?
> 
> I wondered too, so I poked into it a bit... last changelog entry:
> 
> * Tue Mar 29 2005 Petr Rockai <prockai at redhat.com> - 4.0.2-8
> - fix BR 150392 by implementing the setgid/utmp scheme for socket directory
> 
> And <https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=150392>
> 
> Looks like it basically comes down to the "private tmpdir" issue.... 

Hm, so utmp was chosen as a random group b/c it happened to
already be setgid utmp on some other distro?

Bad idea.

Bill




More information about the Fedora-maintainers mailing list