|
Bugzilla – Full Text Bug Listing |
| Summary: | Runas_Alias matches user and UID as text, not numerically | ||
|---|---|---|---|
| Product: | Sudo | Reporter: | Julian Cowley <cyber> |
| Component: | Sudo | Assignee: | Todd C. Miller <Todd.Miller> |
| Status: | RESOLVED FIXED | ||
| Severity: | normal | ||
| Priority: | normal | ||
| Version: | 1.6.7 | ||
| Hardware: | PC | ||
| OS: | Linux | ||
|
Description
Julian Cowley
2004-03-21 12:50:23 MST
The next version of sudo will check pw_uid for the specified -u user so a !#0 in sudoers will match root, toor, #0, etc. However, specifying root in sudoers will not match other usernames with the same uid; looking up each username in sudoers in the passwd file would be too expensive. The initgroups issue has already been fixed in the sudo cvs tree. Great, looking forward to the next release! Thanks. One last note. Regarding the decision not to lookup UIDs in the sudoers file due to cost, I agree it makes sense from an implementation point of view. Perhaps it can be revisited later if there is ever a compiled sudoers file where the UIDs have been cached (of course, this would its own concerns about when to invalidate the cache and so on). |