minus-squarevillainy@lemmy.worldtoLinux@lemmy.ml•Timing Flaw in systemd Cleanup Enables Root Privilege Escalationlinkfedilinkarrow-up8arrow-down1·9 days agoUbuntu configures systemd-tmpfiles to delete a snapd tmp dir, snapd runs setuid root and blindly trusts/executes files from a tmp dir it does not manage the life cycle of. Where is the flaw in systemd here? linkfedilink
Ubuntu configures systemd-tmpfiles to delete a snapd tmp dir, snapd runs setuid root and blindly trusts/executes files from a tmp dir it does not manage the life cycle of. Where is the flaw in systemd here?