https://bugs.kde.org/show_bug.cgi?id=452532
golgeadam changed:
What|Removed |Added
CC||golgead...@gmail.com
--
You are receiving this
https://bugs.kde.org/show_bug.cgi?id=452532
Paul Worrall changed:
What|Removed |Added
CC||p.r.worr...@gmail.com
--
You are receiving
https://bugs.kde.org/show_bug.cgi?id=452532
--- Comment #13 from Erich Eickmeyer ---
My 2c is this is something that KDE *should* fix in kdesu because it means that
kdesu has been taking advantage of an exploit in sudo for years, perhaps
decades. Basically, it's the same mechanism that the CVE
https://bugs.kde.org/show_bug.cgi?id=452532
--- Comment #12 from Rik Mills ---
Now the question is, is this something that KDE wants to fix in kdesu? Or will
distros who ship a sudoers config with 'Defaults use_pty' have to exclude that
from applying to kdesu?
--
You are receiving this mail
https://bugs.kde.org/show_bug.cgi?id=452532
--- Comment #11 from Rik Mills ---
Seems to be due (or triggered) by this change in sudo config by debian:
https://salsa.debian.org/sudo-team/sudo/-/commit/59db341d46aa4c26b54c1270e69f2562e7f3d751
--
You are receiving this mail because:
You are
https://bugs.kde.org/show_bug.cgi?id=452532
--- Comment #10 from Rik Mills ---
That is clearly not relevant to the case here, as it worked before without, and
NOW does not work with OR without
--
You are receiving this mail because:
You are watching all bug changes.
https://bugs.kde.org/show_bug.cgi?id=452532
--- Comment #9 from Ahmad Samir ---
kdesu can work without the kdesud daemon, but for it to use the kdesud daemon
it must be setgid, that has been the case for a long time...
--
You are receiving this mail because:
You are watching all bug changes.
https://bugs.kde.org/show_bug.cgi?id=452532
--- Comment #8 from Rik Mills ---
(In reply to Ahmad Samir from comment #7)
> To clarify things, does kdesud have the setgid bit set?
No, but this has not been set or required in _any_ previous release for kdesu
to work just fine.
Furthermore,
https://bugs.kde.org/show_bug.cgi?id=452532
--- Comment #7 from Ahmad Samir ---
To clarify things, does kdesud have the setgid bit set?
--
You are receiving this mail because:
You are watching all bug changes.
https://bugs.kde.org/show_bug.cgi?id=452532
--- Comment #6 from Rik Mills ---
Confirmed on KDE Neon preliminary 22.04 Jammy builds.
Possibly some change in latest pam/sudo found in 22.04 has triggered the issue?
--
You are receiving this mail because:
You are watching all bug changes.
https://bugs.kde.org/show_bug.cgi?id=452532
Ganton changed:
What|Removed |Added
CC||ku...@gmx.com
--
You are receiving this mail
https://bugs.kde.org/show_bug.cgi?id=452532
--- Comment #5 from Ahmad Samir ---
They keyword is "libexec" dir, I know distros have different configurations for
the FHS stuff.
--
You are receiving this mail because:
You are watching all bug changes.
https://bugs.kde.org/show_bug.cgi?id=452532
--- Comment #4 from Erich Eickmeyer ---
(In reply to Ahmad Samir from comment #3)
> The daemon is kdesud, which is typically installed in /usr/libexec.
That's true on Arch systems, but not Debian/Ubuntu. It's just one way, not the
only way.
--
You
https://bugs.kde.org/show_bug.cgi?id=452532
Ahmad Samir changed:
What|Removed |Added
CC||a.samir...@gmail.com
--- Comment #3 from Ahmad
https://bugs.kde.org/show_bug.cgi?id=452532
Andrei changed:
What|Removed |Added
CC||tdhj744ra...@opayq.com
--
You are receiving this
https://bugs.kde.org/show_bug.cgi?id=452532
Erich Eickmeyer changed:
What|Removed |Added
CC||eeickme...@ubuntu.com
--- Comment #2 from
https://bugs.kde.org/show_bug.cgi?id=452532
Rik Mills changed:
What|Removed |Added
Priority|HI |VHI
Severity|major
https://bugs.kde.org/show_bug.cgi?id=452532
Rik Mills changed:
What|Removed |Added
Status|REPORTED|CONFIRMED
Ever confirmed|0
https://bugs.kde.org/show_bug.cgi?id=452532
Rik Mills changed:
What|Removed |Added
Priority|NOR |HI
Severity|normal
https://bugs.kde.org/show_bug.cgi?id=452532
Rik Mills changed:
What|Removed |Added
CC||rikmi...@kde.org
--
You are receiving this mail
https://bugs.kde.org/show_bug.cgi?id=452532
Andrius Štikonas changed:
What|Removed |Added
CC||andr...@stikonas.eu
--- Comment #1 from
21 matches
Mail list logo