Re: Privilege escalation via PID file manipulation
Dianne Skoll <[email protected]> Thu, 31 Aug 2017 13:01:33 -0400
| Newsgroups | gmane.mail.mimedefang |
|---|---|
| Organization | Roaring Penguin Software Inc. |
| Message-ID | <[email protected]> |
On Thu, 31 Aug 2017 12:11:05 -0400 Michael Orlitzky <[email protected]> wrote: > Hmmm, in that case, maybe the PID file is being reused for a purpose > that it isn't really suited for? The contents of the PID file are > slightly sensitive, since init scripts tend to trust them -- but the > contents of a lock file aren't. Would it make more sense to have a > separate lock file, whose only purpose is to prevent multiple daemons > from starting (and not to provide info to an init system)? That makes sense. I'll do it that way. Thanks for alerting me to this. Regards, Dianne. _______________________________________________ NOTE: If there is a disclaimer or other legal boilerplate in the above message, it is NULL AND VOID. You may ignore it. Visit http://www.mimedefang.org and http://www.roaringpenguin.com MIMEDefang mailing list [email protected] http://lists.roaringpenguin.com/mailman/listinfo/mimedefang