Fix permissions handling (CVE-2010-0825).
authorChong Yidong <cyd@stupidchicken.com>
Fri, 2 Apr 2010 15:26:24 +0000 (11:26 -0400)
committerChong Yidong <cyd@stupidchicken.com>
Fri, 2 Apr 2010 15:26:24 +0000 (11:26 -0400)
commit51a91f9da64f25b68a1d3f752df6193c49c9b4fc
tree6cfd08f009874dc66e3575a111829cc4297fb012
parenta9ae306fe491f75b43a9c70c8909c138c36765d5
Fix permissions handling (CVE-2010-0825).

* movemail.c (main): Check return values of setuid.  Avoid
possibility of symlink attack when movemail is setgid mail
(CVE-2010-0825).
lib-src/ChangeLog
lib-src/movemail.c