Re: Local users get to play root?
[Posted November 20, 2009 by jake]
| From: |
| Richard Hughes <hughsient-AT-gmail.com> |
| To: |
| Development discussions related to Fedora <fedora-devel-list-AT-redhat.com> |
| Subject: |
| Re: Local users get to play root? |
| Date: |
| Wed, 18 Nov 2009 22:38:13 +0000 |
| Message-ID: |
| <15e53e180911181438n47f45937t2355f0f3cb8bfa52@mail.gmail.com> |
| Archive-link: |
| Article, Thread
|
2009/11/18 Jeff Garzik <jgarzik@pobox.com>:
> And this enormous security hole of a policy change was done with next to
> /zero/ communication, making it likely that many admins will not even know
> they are vulnerable until their kids install a bunch of unwanted packages.
F11 had retained authorisations, which arguably were more of a
security weakness. If rawhide had been signed during the F12 cycle
everybody would have seen this change much earlier.
If you're deploying F12, then I really think you should know the
basics about PolicyKit.
Richard.
--
fedora-devel-list mailing list
fedora-devel-list@redhat.com
https://www.redhat.com/mailman/listinfo/fedora-devel-list
(
Log in to post comments)