[hackers] [slock] [PATCH] Properly drop privileges

From: FRIGN <dev_AT_frign.de>
Date: Wed, 7 Sep 2016 13:37:30 +0200

Hello fellow hackers,

I noticed a few weeks ago that slock did not drop privileges on OpenBSD
until the last commit. Now, still, the privdropping is horrible and
thus I wrote this patch to make it very strict and actually allow the
user to specifiy what to drop to and also override the supplementary
groups.
There really should not be any security compromises with a setuid
application like slock.

Cheers

FRIGN

-- 
FRIGN <dev_AT_frign.de>
Received on Wed Sep 07 2016 - 13:37:30 CEST

This archive was generated by hypermail 2.3.0 : Wed Sep 07 2016 - 13:48:15 CEST