Bug#400632: x11-common: should not ship a SUID root binary

2008-05-13 Thread Julien Cristau
On Fri, Mar 14, 2008 at 11:42:41 +0100, Julien Cristau wrote: I can't see the reason why the X libraries (Pre-)Depend on x11-common. Actually, there's a reason for (at least) libice6 to keep a dependency: /etc/init.d/x11-common sets up the /tmp/.ICE-unix directory. Anyway, next upload of the

Bug#400632: x11-common: should not ship a SUID root binary

2008-03-15 Thread Steve Langasek
On Fri, Mar 14, 2008 at 11:42:41AM +0100, Julien Cristau wrote: On Mon, Feb 4, 2008 at 21:02:01 -0800, Steve Langasek wrote: The problem is not that /usr/bin/X is suid-root. The problem is that /usr/bin/X is now shipped in a package which is a dependency of *all* of the X libraries, so

Bug#400632: x11-common: should not ship a SUID root binary

2008-03-14 Thread Julien Cristau
On Mon, Feb 4, 2008 at 21:02:01 -0800, Steve Langasek wrote: The problem is not that /usr/bin/X is suid-root. The problem is that /usr/bin/X is now shipped in a package which is a dependency of *all* of the X libraries, so you can no longer have a system with X clients only without pulling

Bug#400632: x11-common should not ship a SUID root binary

2008-02-05 Thread Julien Cristau
On Mon, Feb 4, 2008 at 18:23:14 -0500, David Nusinow wrote: The easy and obvious fix is to just ship this with xserver-xorg instead. To be honest, I'm not sure why this ended up in x11-common instead of here. It used to be in xserver-common, which was removed and folded in x11-common at some

Bug#400632: x11-common should not ship a SUID root binary

2008-02-04 Thread Stephen Frost
Package: x11-common Severity: serious tags 400632 -wontfix Greetings, The setuid usr/bin/X binary should not be shipped with x11-common because it's not *needed* for X11 clients. That by itself is a good enough reason. Put it in xserver-xorg-core or similar, not in x11-common. Additionally,

Bug#400632: x11-common should not ship a SUID root binary

2008-02-04 Thread David Nusinow
On Mon, Feb 04, 2008 at 12:53:35PM -0500, Stephen Frost wrote: Package: x11-common Severity: serious tags 400632 -wontfix Greetings, The setuid usr/bin/X binary should not be shipped with x11-common because it's not *needed* for X11 clients. That by itself is a good enough reason. Put

Bug#400632: x11-common: should not ship a SUID root binary

2008-02-04 Thread Steve Langasek
Hi Brice, tags 400632 +wontfix thank you We are not going to remove the SUID bit because of this. The actual problem here is: why do you need x11-common installed on this system? Probably because of complex dependencies between all X packages? The upcoming xbase-clients split might make

Bug#400632: x11-common: should not ship a SUID root binary

2007-05-21 Thread Brice Goglin
tags 400632 +wontfix thank you We are not going to remove the SUID bit because of this. The actual problem here is: why do you need x11-common installed on this system? Probably because of complex dependencies between all X packages? The upcoming xbase-clients split might make things better in

Bug#400632: x11-common: should not ship a SUID root binary

2006-11-27 Thread Laurent Bonnaud
Package: x11-common Version: 1:7.1.0-7 Severity: wishlist Hi, x11-common installs the /usr/bin/X wrapper with SUID root permissions: -rwsr-sr-x 1 root root 18416 2006-11-19 01:58 /usr/bin/X This is fine on a workstation where one wants a X server. However, on a server that does not need a X