Zenon Panoussis wrote:

Gordon Messmer wrote:

Given your trace, it looks like /usr/lib/courier/bin/sendmail is no longer SUID root.


# ls -l /usr/lib/courier/bin/sendmail
-r-s--x--x 1 root courier 67952 Aug 20 15:07 /usr/lib/courier/bin/sendmail

I'll clarify... I based that diagnosis on these lines:

16904 execve("/usr/lib/courier/bin/sendmail", ["sendmail", "-t"], [<env snipped>]) = 0
<snip>
16904 setgid32(102)                     = -1 EPERM (Operation not permitted)
16904 getuid32()                        = 500
16904 setuid32(500)                     = 0

The sendmail binary is unable to change its GID to the "courier" user's GID,
and is clearly not running as root as its UID is 500.  Perhaps your audit tool
changed /usr or some sub-filesystem such that it is mounted with the "nosuid"
option?


------------------------------------------------------- This SF.Net email is sponsored by BEA Weblogic Workshop FREE Java Enterprise J2EE developer tools! Get your free copy of BEA WebLogic Workshop 8.1 today. http://ads.osdn.com/?ad_id=5047&alloc_id=10808&op=click _______________________________________________ courier-users mailing list [EMAIL PROTECTED] Unsubscribe: https://lists.sourceforge.net/lists/listinfo/courier-users

Reply via email to