Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 425796 - app-admin/sudo-1.8.5_p2 shouldn't be world executable
Summary: app-admin/sudo-1.8.5_p2 shouldn't be world executable
Status: RESOLVED WONTFIX
Alias: None
Product: Gentoo Linux
Classification: Unclassified
Component: New packages (show other bugs)
Hardware: All Linux
: Normal critical
Assignee: Gentoo Linux bug wranglers
URL:
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2012-07-11 10:57 UTC by wbrana
Modified: 2012-07-11 13:01 UTC (History)
0 users

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description wbrana 2012-07-11 10:57:15 UTC
sudo had many security bugs. sudo would be more secure if it had access 4110 instead of 4111. Only users of some group e.g. sudo would be able to execute sudo.
Comment 1 Diego Elio Pettenò (RETIRED) gentoo-dev 2012-07-11 13:01:29 UTC
No. `sudo` didn't have so many issues _where the user was totally unauthorized_. The problem is that there were many ways to workaround the limits put on what users were supposed to do. But that is not going to be fixed by marking it 4110.