Le 17/12/2012 10:57, Colin Guthrie a écrit :
wally <wally> 1.8.4-2.mga3:
+ Revision: 324195
- install dumpcap setuid root as upstream suggests (to allow to start wireshark 
as normal user)
- drop run-as-root hacks

Hi,

It seems you introduced a security flaw: now all users are able to
capture the network traffic.

This should be reverted, or restrictions should be added (maybe by
making consolekit add acls if possible).

Perhaps only make it only work for users in the wheel group?
What's the added-value of pushing this kind of pre-defined user management policies ? That's not packaging anymore, this is sysadmin duty for me.

--
BOFH excuse #185:

system consumed all the paper for paging

Reply via email to