Bugtraq mailing list archives

Re: sendmail -bt negative index bug...


From: Glynn Clements <glynn () SENSEI CO UK>
Date: Thu, 12 Oct 2000 20:25:39 +0100

Michal Zalewski wrote:

Sendmail, launched with -bt command-line switch, enters it's special
"address test" mode. It is not dropping root privledges (why?),

Presumably sendmail doesn't drop root priviledges[1] when performing
address rewrites for real. If so, then dropping them only in test mode
could invalidate any tests (particularly if sendmail.cf uses any
"prog" maps; I don't know whether any other map types require
privileges after the initial startup has completed).

[1] Actually "sendmail -bt" seems to honour the setting of the
RunAsUser option, so the term "root privilege" isn't 100% accurate.

--
Glynn Clements <glynn () sensei co uk>


Current thread: