On Thu, Apr 19, 2001 at 12:19:40PM +0200, Michel Dänzer wrote: > > In the 0.9.57 announcement they talk about less dependency on the kernel - > wonder if that will help for these issues? They say 'it might be necessary to > recompile MOL from the source in certain cases' for 2.4 kernels...
interesting, ill have to tinker with it, i still have a macos disk image on my ext2fs... > You mean MacOS is the security hole? :) hehehe, well what got me thinking, is mol runs with root privileges full time. and macos has no security whatsoever.. so does this mean that an errant MacOS app can screw with things on the linux side that would ordinarily be privileged? i would guess not, but its fun to think about. my main concern is the massive setuid root binary that mol is. i think any debian package should offer to add a group and restrict permissions to the setuid mol bins. -- Ethan Benson http://www.alaska.net/~erbenson/
pgpq4ZXaFBx0f.pgp
Description: PGP signature