[PATCHES] Fix build errors and sandbox bugs in the Solaris port

Poul-Henning Kamp phk at phk.freebsd.dk
Mon Aug 6 11:35:03 CEST 2012


In message <501AC1C1.2040303 at schokola.de>, Nils Goroll writes:

>testing the new sandbox code I noticed that the tmpdir should be owned by
>mgt_param.uid, otherwise unlinking the compiled .so will fail when
>setuid(mgt_param.uid) succeeds.

I'm not sure I follow ?

The .so file is unlinked from the mgt process with full privs, isn't it ?


-- 
Poul-Henning Kamp       | UNIX since Zilog Zeus 3.20
phk at FreeBSD.ORG         | TCP/IP since RFC 956
FreeBSD committer       | BSD since 4.3-tahoe    
Never attribute to malice what can adequately be explained by incompetence.



More information about the varnish-dev mailing list