[ubuntu-hardened] Removing SUID on binaries that don't need it

Phillip Susi psusi at cfl.rr.com
Thu Nov 29 19:43:01 GMT 2007


Scott James Remnant wrote:
> On Wed, 2007-11-28 at 21:28 -0500, John Richard Moser wrote:
> 
>> Theoretically, nobody cares.  Here's a good way to start a program:
>>
>> int main() {
> 
> Race condition here.
> 
>>    drop_unneeded_caps();
> 
> And here.

Huh?  Where is the other thread and what are they racing for?




More information about the ubuntu-devel mailing list