Op 28-09-15 om 23:29 schreef Philip Guenther:
On Mon, Sep 28, 2015 at 1:31 PM, L. V. Lammert <l...@omnitec.net> wrote:
...
X has never been installed on this box, .. why now?
http://www.openbsd.org/faq/faq4.html#FilesNeededX
From the FAQ:
"By itself, installing X on a system does not change the risk of
external security issues."
I might be misinterpreting "external" here, but considering some files
from the X sets[1], wouldn't the following be more accurate: "Installing
X adds one setuid root binary and some setgid non-root binaries on a
system, but apart from that does not change the risk of external
security issues."?
[1] from xbase57.tgz and xserv57.tgz:
-rwsr-xr-x 1 root wheel 2651992 Aug 12 15:28 /usr/X11R6/bin/Xorg
-rwxr-sr-x 1 root auth 2970888 Mar 7 2015 /usr/X11R6/bin/xlock
-rwxr-sr-x 1 root utmp 594648 Aug 12 15:24 /usr/X11R6/bin/xterm