HELL-O!
I install urxvt from ports and see that it is installed with root suid bits set on both daemon and not-daemon binary! non-sense! What a security risk!
And after that I seriously begin to think of what real impact on security it does?
And also write bits - normally executables should not have them set?
How do I find all executables/libraries in system with suid bit and write bits set?
And is it safe to unset these bits on binaries from base system? And from what ports?
And my traditional robotic: "Thanks in advance for any help!"
I install urxvt from ports and see that it is installed with root suid bits set on both daemon and not-daemon binary! non-sense! What a security risk!
And after that I seriously begin to think of what real impact on security it does?
And also write bits - normally executables should not have them set?
How do I find all executables/libraries in system with suid bit and write bits set?
And is it safe to unset these bits on binaries from base system? And from what ports?
And my traditional robotic: "Thanks in advance for any help!"