kwk...@hkbn.net wrote:
> On Mon, 31 Dec 2012 10:03:40 +0200
> Alan McKinnon <alan.mckin...@gmail.com> wrote:
>
>> It's not in the profile, the xorg-server ebuild sets USE="suid" on by
>> default.
>>
>> Most likely is that Walter has USE="-suid" in his make.conf and sets
>> it back on for things he's checked out personally. Meaning that in
>> this case one slipped through.
>
> I suspect it is a USE="-* (blah)" rather than an explicit USE="-suid"
> in the make.conf file.
>
> One question though --- should the xorg-server ebuild be such that
> IUSE="(blah) +suid" when using a hardened-profile? Also, checking
> my PORTDIR, given the global description in use.desc (suid - Enable
> setuid root program, with potential security risks), shouldn't the suid
> use flag entries (net-analyzer/nagios-plugins:suid and
> net-wireless/kismet:suid) be deleted from use.local.desc?
>
> Kerwin.


I think you are right. I seem to recall that Walter is one of few that
does USE="-* blah" in make.conf.  Seems he may have asked for this one.

Dale

:-)  :-)

-- 
I am only responsible for what I said ... Not for what you understood or
how you interpreted my words!

Reply via email to