Menu

#10 missing-call-to-setgroups-before-setuid build error

1.0
closed
nobody
None
2015-10-05
2015-10-05
No

Hi
When building on the Open Build Service for an openSUSE rpm I get the following error;

[ 41s] scanbd.x86_64: W: missing-call-to-setgroups-before-setuid /usr/sbin/scanbd
[ 41s] This executable is calling setuid and setgid without setgroups or initgroups.
[ 41s] There is a high probability this means it didn't relinquish all groups, and
[ 41s] this would be a potential security issue to be fixed. Seek POS36-C on the web
[ 41s] for details about the problem.

Attached, please find a patch to resolve the issue for your consideration.

1 Attachments

Discussion

  • WilhelmM

    WilhelmM - 2015-10-05

    Thank you. Applied to trunk.

     
  • WilhelmM

    WilhelmM - 2015-10-05
    • status: open --> closed
     

Log in to post a comment.