OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Subject: Re: Is postfix vulnerable to the Linux setcap bug?
From: Lorens Kockum (lk-pfubigears.solsoft.com)
Date: Fri Jun 09 2000 - 09:21:29 CDT


On postfix-users Liviu.Daiaimar.ro wrote:
>
> The setcap(2) affect binaries SETUID TO ROOT.

Yes.

>None of the Postfix binaries is setuid.

Ah, of course, I missed that (I somewhat neglected the setuid
part, and focused on the existence of programs that run as root
-- didn't think to investigate how they got the rights in the
first place).

My question is answered.

> I'd still recommend staying away from Linux though. :-)

None of the machines that I run that are accessible from the
Internet run Linux (well, the there's only one that's really
mine). But I have friends with no qualms about it :-)

Sorry for provoking such a furore . . .