Hi Michael,

Am Wed, Nov 06, 2024 at 07:49:41AM +0100 schrieb Michael Cornelison:
> 'wprintp' function no longer exists.
> 
> 'email_dialog_event' function no longer exists.
> 
> file "/tmp/global_lock_fotoxx_syncfiles" no longer exists.
> 
> The bug report says that using fotoxx as root user is necessary to trigger
> this bug.

I *personally* admit its the users own fault to use fotoxx as root, but
well ...

> In fact, using fotoxx (now fotocx) as root user can do many things to crash
> or alter a running system or alter files belonging to root. What is the fix
> for this? I could detect if running as root user and just exit. Is that a
> fix?

In my eyes this is a fix, yes.

Thanks a lot for the quick response
    Andreas.
 
> On Tue, Nov 5, 2024 at 6:27 PM Andreas Tille <[email protected]> wrote:
> 
> > Control: tags -1 upstream
> > Control: forwarded -1 Michael Cornelison <[email protected]>
> > Thanks
> >
> > Hi Michael,
> >
> > there is a ten year old bug report[1] against the fotoxx code that was
> > uploaded to Debian at that time.  I intend to close this bug in my next
> > upload but I would like to get your confirmation that the problem is
> > dealt with in your current code.  Please be so kind to have a look[1]
> > since the issue is potentially security relevant.
> >
> > Kind regards and thank you for providing fotocx as free software
> >    Andreas.
> >
> > [1] https://bugs.debian.org/761879
> >
> > --
> > https://fam-tille.de
> >
> 
> 
> -- 
> Mike
> kornelix.net  open source Linux apps
> substack <https://michaelcornelison.substack.com/>  essays

-- 
https://fam-tille.de

Reply via email to