Re: [PATCH] Drop root privileges (if we have them)

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



----- Original Message ----- 
From: "Chris Rankin" <rankincj@yahoo.com>
Sent: Wednesday, September 17, 2003 10:17 PM


> However, there is a bug in the pwlib-1.5.2
> PProcess::SetUserName() function that makes GateKeeper
> core-dump if you specify a garbage user name.

It is also present in 1.5.3. Have you reported this bug to openh323@openh323.org?
I think you could override SetUserName function in Gatekeeper class.
It's body can be a copy&paste of fixed PProcess::SetUserName that
does change the group also.

> I was hoping to change the group ID so that I could
> leave the gatekeeper.ini file owned by root and
> read-only by the gnugk group. But this doesn't appear
> practical at present.

I would rather not bother this - you can change config variable
from status line, so the hacker does not have to have gnugk
privileges to change gk configuration.

---
Zygmuntowicz Michal


-------------------------------------------------------
This sf.net email is sponsored by:ThinkGeek
Welcome to geek heaven.
http://thinkgeek.com/sf
_______________________________________________
List: Openh323gk-users@lists.sourceforge.net
Archive: http://sourceforge.net/mailarchive/forum.php?forum_id=8549
Homepage: http://www.gnugk.org/

[Index of Archives]     [SIP]     [Open H.323]     [Gnu Gatekeeper]     [Asterisk PBX]     [ISDN Cause Codes]     [Yosemite News]

  Powered by Linux