https://bugzilla.wikimedia.org/show_bug.cgi?id=39790

       Web browser: ---
             Bug #: 39790
           Summary: Sudo policy should use the project group, rather than
                    ALL for users
           Product: MediaWiki extensions
           Version: unspecified
          Platform: All
        OS/Version: All
            Status: NEW
          Severity: normal
          Priority: Unprioritized
         Component: OpenStackManager
        AssignedTo: rlan...@gmail.com
        ReportedBy: rlan...@gmail.com
    Classification: Unclassified
   Mobile Platform: ---


Using ALL for users, rather than the project group is insecure. If passwordless
sudo was allowed, then all users on the system, including service accounts
would be allowed to run sudo commands.

-- 
Configure bugmail: https://bugzilla.wikimedia.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug.

_______________________________________________
Wikibugs-l mailing list
Wikibugs-l@lists.wikimedia.org
https://lists.wikimedia.org/mailman/listinfo/wikibugs-l

Reply via email to