[prev in list] [next in list] [prev in thread] [next in thread] 

List:       kde-multimedia
Subject:    Re: Fwd: Re: LOCAL ROOT EXPLOIT - SUPPORT FULL-DISCLOSURE -
From:       Andreas Pour <pour () mieterra ! com>
Date:       2002-07-08 7:04:59
[Download RAW message or body]

Adrian Schroeter wrote:

[ ... ]

> And it was a "setreuid" call in the past, which would be okay.

Sorry, it makes no difference, at least on Linux, where the man page
says, and tests confirm, that:

     Currently  seteuid(euid)  is  functionally  equivalent  to
     setreuid(-1, euid).

Also, checking back, it seems this problem is in place since inception
(pre-KDE 1.90), time to update the notices . . . .

[ ... ]

Ciao,

Dre
_______________________________________________
kde-multimedia mailing list
kde-multimedia@mail.kde.org
http://mail.kde.org/mailman/listinfo/kde-multimedia
[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic