Fix permissions handling (CVE-2010-0825).
authorChong Yidong <cyd@stupidchicken.com>
Fri, 2 Apr 2010 15:26:24 +0000 (11:26 -0400)
committerChong Yidong <cyd@stupidchicken.com>
Fri, 2 Apr 2010 15:26:24 +0000 (11:26 -0400)
commit3c4e39ea2c09fd14cb271c8af3d16439e779679e
treee96baacf6f9f903aca97cefe7b153661cbc037aa
parentb84f38b0360f7bfc565f52a47e1e3edb26840365
Fix permissions handling (CVE-2010-0825).

* movemail.c (main): Check return values of setuid.  Avoid
possibility of symlink attack when movemail is setgid mail
(CVE-2010-0825).
lib-src/ChangeLog
lib-src/movemail.c