<?xml version="1.0" encoding="UTF-8" standalone="yes" ?>
<!DOCTYPE bugzilla SYSTEM "http://bugs.gentoo.org/bugzilla.dtd">

<bugzilla version="2.22.7"
          urlbase="http://bugs.gentoo.org/"
          maintainer="bugzilla@gentoo.org"
>

    <bug>
          <bug_id>171725</bug_id>
          
          <creation_ts>2007-03-21 21:21 0000</creation_ts>
          <short_desc>mail-filter/dspam: dspamc should be setuid</short_desc>
          <delta_ts>2007-03-22 14:49:42 0000</delta_ts>
          <reporter_accessible>1</reporter_accessible>
          <cclist_accessible>1</cclist_accessible>
          <classification_id>1</classification_id>
          <classification>Unclassified</classification>
          <product>Gentoo Linux</product>
          <component>Ebuilds</component>
          <version>unspecified</version>
          <rep_platform>All</rep_platform>
          <op_sys>Linux</op_sys>
          <bug_status>RESOLVED</bug_status>
          <resolution>FIXED</resolution>
          
          
          
          <priority>P2</priority>
          <bug_severity>minor</bug_severity>
          <target_milestone>---</target_milestone>
          
          
          
          <everconfirmed>1</everconfirmed>
          <reporter>jonas@websystem.se</reporter>
          <assigned_to>mrness@gentoo.org</assigned_to>
          

      

      
          <long_desc isprivate="0">
            <who>jonas@websystem.se</who>
            <bug_when>2007-03-21 21:21:05 0000</bug_when>
            <thetext>When installing with the daemon use-flag the dspamc binary is installed and it should have setuid also, else it can&apos;t read dspam.conf.

Reproducible: Always</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>mrness@gentoo.org</who>
            <bug_when>2007-03-22 09:45:14 0000</bug_when>
            <thetext>But /usr/bin/dspam is installed with sgid
  tsr ~ # ls -l /usr/bin/dspam
  -r-x--s--x 1 root dspam 62892 2007-01-08 17:42 /usr/bin/dspam
and dspam.conf has the following permissions
  tsr dspam # ls -l /etc/mail/dspam/dspam.conf
  -rw-r----- 1 root dspam 27770 2007-01-08 17:42 /etc/mail/dspam/dspam.conf

Unless I am missing something here, this should be enough.</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>jonas@websystem.se</who>
            <bug_when>2007-03-22 11:00:07 0000</bug_when>
            <thetext>Well.. Almost...

It was /usr/bin/dspamc (Observe the c at the end) I was talking about. The dspam binary is working as it should. dspamc is a lightweight version of dspam that only  has the --client stuff not the rest. </thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>mrness@gentoo.org</who>
            <bug_when>2007-03-22 14:49:42 0000</bug_when>
            <thetext>fixed in dspam-3.6.8-r3. 
thanks!</thetext>
          </long_desc>
      
    </bug>

</bugzilla>