[Top][All Lists]

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: saved IDs and exec (standard violation?)

From: Thomas Bushnell, BSG
Subject: Re: saved IDs and exec (standard violation?)
Date: 11 May 2002 17:56:26 -0700
User-agent: Gnus/5.09 (Gnus v5.9.0) Emacs/21.2

Roland McGrath <roland@frob.com> writes:

> > Oh this is horrible.  Sigh.  However, in the normal case, the ids
> > don't change.  Is there a security reason we should not allow the user
> > to decide for themselves?
> "Allow the user to decide for themselves" does not have a precise meaning
> to me in this context.  Please specify.  

Sorry.  I meant to have the library do the change itself in execve
when it's needed (since usually it's a nop) instead of expecting the
exec server to do it.

But there might be a security reason why we have to force the change
to be made.  But I can't possibly see what that would be.


reply via email to

[Prev in Thread] Current Thread [Next in Thread]