Fix permissions handling (CVE-2010-0825).
commitc8f19d81022a1f17cd14d1553a9c063f4eabe3c2
authorChong Yidong <cyd@stupidchicken.com>
Fri, 2 Apr 2010 15:24:16 +0000 (2 11:24 -0400)
committerChong Yidong <cyd@stupidchicken.com>
Fri, 2 Apr 2010 15:24:16 +0000 (2 11:24 -0400)
treee785f91b914962e7fb8e38553b042903efbfd301
parente4b204d75ff161c1f4823eee5187fd0a64511f60
Fix permissions handling (CVE-2010-0825).

* movemail.c (main): Check return values of setuid.  Avoid
possibility of symlink attack when movemail is setgid mail
(CVE-2010-0825).
lib-src/ChangeLog
lib-src/movemail.c