Fix permissions handling (CVE-2010-0825).
authorChong Yidong <cyd@stupidchicken.com>
Fri, 2 Apr 2010 15:24:16 +0000 (11:24 -0400)
committerChong Yidong <cyd@stupidchicken.com>
Fri, 2 Apr 2010 15:24:16 +0000 (11:24 -0400)
commit7a5f61e907358d35aafe5457d04067ccb02eaf2d
tree959e5ee3ce07109295b477e76eb70bfbb194928f
parenta750c1f6ccad20b01d8f568a2716608bb01ae78e
Fix permissions handling (CVE-2010-0825).

* movemail.c (main): Check return values of setuid.  Avoid
possibility of symlink attack when movemail is setgid mail
(CVE-2010-0825).
lib-src/ChangeLog
lib-src/movemail.c