tech-kern archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

Re: quotactl permissions



On Tue, Sep 04, 2012 at 02:43:51PM -0400, Thor Lancelot Simon wrote:
> On Tue, Sep 04, 2012 at 10:57:08AM -0500, Eric Haszlakiewicz wrote:
> > 
> > The kauth check seems to be in secmodel_suser.c, and it seems to consider 
> > the
> > effective uid:
> 
> That's just euid = 0 -- it should be doing the other check there too.

Sure, but regardless of where that other check is implemented, it seems like 
it might be wrong, since it's checking the real uid, not the effective uid.

eric


Home | Main Index | Thread Index | Old Index