Suggestion to Remove KFloppy and hold back K3b
Nicolás Alvarez
nicolas.alvarez at gmail.com
Tue Feb 21 23:55:00 UTC 2017
> On Feb 15, 2017, at 17:58, Wolfgang Bauer <wbauer at tmo.at> wrote:
>
> Am Mittwoch, 15. Februar 2017, 22:21:19 schrieb Martin Gräßlin:
>> Please do not consider starting a GUI application as root a possibility.
>
> Ok, but partitionmanager does exactly that. It restarts itself as root if run
> as user.
> So that instantly would rule out partionmanager as a proposed replacement, I
> suppose.
>
> But KFloppy is quite a simple application.
> There should not really be a special risk involved running it as root, but I
> might be mistaken there.
Sounds like you're challenging Martin to write a take-over-machine exploit via root KFloppy, and I would bet money that he would succeed ;)
--
Nicolás
More information about the release-team
mailing list