httpd-users mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Joshua Slive" <jos...@slive.ca>
Subject Re: [users@httpd] Question about suexec
Date Mon, 18 Sep 2006 15:47:26 GMT
On 9/18/06, Yves Dorfsman <yves@zioup.com> wrote:
>
> >
> > In fact, you did receive a response:
> >
>
> http://mail-archives.apache.org/mod_mbox/httpd-users/200609.mbox/%3ce498c1660609151131y66923ea9o2d7f3a766d42cc23@mail.gmail.com%3e
>
> Oops missed it - sorry, and thanks for pointing to this. Darn, this means
> I've
> got to re-compile with BIG_SECURITY_HOLE...

Ugh, no.  As I said, it means you need to learn how to use sudo.  This
is, in itself, a dangerous thing to expose to the web.  But the danger
pales in comparison to what you can get into by running apache as
root.

Joshua.

---------------------------------------------------------------------
The official User-To-User support forum of the Apache HTTP Server Project.
See <URL:http://httpd.apache.org/userslist.html> for more info.
To unsubscribe, e-mail: users-unsubscribe@httpd.apache.org
   "   from the digest: users-digest-unsubscribe@httpd.apache.org
For additional commands, e-mail: users-help@httpd.apache.org


Mime
View raw message