OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Subject: Re: Is postfix vulnerable to the Linux setcap bug?
From: Brad Knowles (blkskynet.be)
Date: Thu Jun 08 2000 - 08:18:52 CDT


At 2:39 PM +0200 2000/6/8, Matthias Andree wrote:

> If you're worried about that, get Linux Kernel 2.2.16 that has been
> released a couple of hours ago and install that, it supposedly fixes
> the capability security problems.

        Right, but the point of releasing sendmail 8.10.2 was that
sendmail would do some extra checks to see if it was running on a
vulnerable system, and if so then it would refuse to run. While not
ideal, I believe that this is the best sort of solution in that kind
of case.

--
   These are my opinions -- not to be taken as official Skynet policy
======================================================================
Brad Knowles, <blkskynet.be>                || Belgacom Skynet SA/NV
Systems Architect, Mail/News/FTP/Proxy Admin || Rue Colonel Bourg, 124
Phone/Fax: +32-2-706.13.11/12.49             || B-1140 Brussels
http://www.skynet.be                         || Belgium