[BBLISA] Fun with nosetuid!

Theo Van Dinter felicity at kluge.net
Tue Jan 15 18:42:30 EST 2008


On Tue, Jan 15, 2008 at 05:56:28PM -0500, Scott Ehrlich wrote:
> On an unpatched Centos 4.4 system I chmod'd /usr/bin/sudo to ug+s, and set 
> the filesystem in /etc/fstab to defaults,nosetuid.  Reboot, and am told 
> sudo needs to be set to setuid root.

So you made /usr/bin/sudo setuid and setgid, then changed the filesystem which
holds /usr/bin/sudo to be mounted as nosetuid.

> What am I missing?

If the fs is mounted nosetuid, then setuid executables won't get to setuid. :)

-- 
Randomly Selected Tagline:
Why are there certain flavors of pet food?  Chicken, beef...
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
Url : http://www.bblisa.org/pipermail/bblisa/attachments/20080115/f1923ed8/attachment.pgp 


More information about the bblisa mailing list