Red Hat Bugzilla – Bug 46769
ping6 and traceroute6 should be setuid
Last modified: 2015-03-04 20:09:17 EST
ping6 and traceroute6 are are installed setuid root as their ipv4 equivalents
These should be done.
Root privileges are dropped very early, as early as in ping and traceroute, so
this creates no additional security problems.
Erh, yes, like 2 lines into main the setuid() call is done. Thats good enough
for me, so i'll include the changes.
Is/usr/sbin/ping6 ok as place or should it be moved to the same location as ping
(/bin)? It's not used by any of the 'standard' network-scripts nor by any of the
initscripts, so i guess /usr/sbin is fine.
Read ya, Phil
Under /usr is fine for now I think.
Another issue is whether these would have to be moved to /usr/_bin_, as they're
setuid executable by users. That's what some people think FHS requires.
There's a pr# about that under traceroute.
*** Bug 23792 has been marked as a duplicate of this bug. ***