[Exim] Linux setuid bug?

Pàgina inicial
Delete this message
Reply to this message
Autor: Dirk Koopman
Data:  
A: exim-users
Assumptes vells: [Exim] Majordomo and Exim
Assumpte: [Exim] Linux setuid bug?
Does anyone know whether it is possible to exploit the recent setuid
'feature' discovered in linux 2.2.* kernels in exim?

I hope exim is OK, but does anyone with more knowledge than I have a view?
(I knew there was a reason not to upgrade to 2.2 kernels on my outward facing
servers - up until now I had simply assumed it was laziness...)

Dirk
--
Dirk-Jan Koopman, Tobit Computer Co Ltd
At the source of every error which is blamed on the computer you will find
at least two human errors, including the error of blaming it on the computer.