Package: quota
Version: 3.12-6
Severity: wishlist

Recommended practice is aquota.{user,group} to have access mode of 0600.
This means that ordinary user can't display own quota with quota(1).  A
solution is to make quota(1) SUID and don't allow user or group argument
when quota(1) is called by ordinary user.

Am I missing something in my logic?

Regards,
ogi

-- System Information:
Debian Release: 3.1
  APT prefers testing
  APT policy: (500, 'testing'), (50, 'unstable')
Architecture: i386 (i686)
Kernel: Linux 2.4.31-pre2
Locale: LANG=bg_BG, LC_CTYPE=bg_BG (charmap=CP1251)

Versions of packages quota depends on:
ii  debconf                     1.4.30.13    Debian configuration management sy
ii  e2fslibs                    1.37-2       ext2 filesystem libraries
ii  libc6                       2.3.2.ds1-21 GNU C Library: Shared libraries an
ii  libcomerr2                  1.37-2       common error description library
ii  libwrap0                    7.6.dbs-8    Wietse Venema's TCP wrappers libra

-- debconf information excluded



-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to