From 1be510f9529cb082f802408b472a77d074b394c0 Mon Sep 17 00:00:00 2001 From: Nicolas Vigier Date: Sun, 14 Apr 2013 13:46:12 +0000 Subject: Add zarb MLs html archives --- zarb-ml/mageia-discuss/20120208/006429.html | 79 +++++++++++++++++++++++++++++ 1 file changed, 79 insertions(+) create mode 100644 zarb-ml/mageia-discuss/20120208/006429.html (limited to 'zarb-ml/mageia-discuss/20120208/006429.html') diff --git a/zarb-ml/mageia-discuss/20120208/006429.html b/zarb-ml/mageia-discuss/20120208/006429.html new file mode 100644 index 000000000..2851dbf7b --- /dev/null +++ b/zarb-ml/mageia-discuss/20120208/006429.html @@ -0,0 +1,79 @@ + + + + [Mageia-discuss] A possible risk ? + + + + + + + + + +

[Mageia-discuss] A possible risk ?

+ Wolfgang Bornath + molch.b at googlemail.com +
+ Wed Feb 8 13:51:27 CET 2012 +

+
+ +
2012/2/8 Sander Lepik <sander.lepik at eesti.ee>:
+> 08.02.2012 13:47, Renaud (Ron) Olgiati kirjutas:
+>
+>> Brilliant, thanks.
+>>
+>> But would it not make more sense to have the default changed to root ?
+>
+> Updates shouldn't break system and so i think they should be enabled for
+> normal users. Upgrades is something else and should be disabled for normal
+> users. You can report bug about this problem.
+
+Last November I setup my normal Mageia system to auto-boot into xguest
+so visitors at the Mageia stand at an exhibition can try out Mageia. I
+was surpised and shocked when I watched the update icon light up and
+the visitor could perform this update as xguest! This IS a risk no
+matter whether an update breaks a system or not. After I saw this the
+first thing I did was su into root and change the permission setting
+for updates.
+
+This is one thing where security was broken for ease of use.
+
+-- 
+wobo
+
+ + + +
+

+ +
+More information about the Mageia-discuss +mailing list
+ -- cgit v1.2.1