On 10/15/2007 05:03 PM, Anders Damm wrote:
> Use One-klick on http://opensuse-community.org/Restricted_Formats/10.3 ;-)
>   
What is up with the link http://opensuse-community.org/codecs-kde.ymp. 
I clicked on it, which then asked me which app should open it, and yast
was preselected.  It then actually launched a Yast module I had not seen
before to add repositories I had already added, but WITHOUT prompting
for root's password.  I am using Firefox.  That sounds like a security
problem big time.  How could any user gain root's access via a link in a
browser, or what exactly is that ymp file?

-- 
Joe Morris
Registered Linux user 231871 running openSUSE 10.3 x86_64





-- 
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to