On Mon, 31 Dec 2012 10:03:40 +0200
Alan McKinnon <alan.mckin...@gmail.com> wrote:

> It's not in the profile, the xorg-server ebuild sets USE="suid" on by
> default.
> 
> Most likely is that Walter has USE="-suid" in his make.conf and sets
> it back on for things he's checked out personally. Meaning that in
> this case one slipped through.

I suspect it is a USE="-* (blah)" rather than an explicit USE="-suid"
in the make.conf file.

One question though --- should the xorg-server ebuild be such that
IUSE="(blah) +suid" when using a hardened-profile?  Also, checking
my PORTDIR, given the global description in use.desc (suid - Enable
setuid root program, with potential security risks), shouldn't the suid
use flag entries (net-analyzer/nagios-plugins:suid and
net-wireless/kismet:suid) be deleted from use.local.desc?

Kerwin.

Attachment: signature.asc
Description: PGP signature

Reply via email to