QNX RTOS v4 Knowledge Base
QNX RTOS v4 Knowledge Base
Title |
Non-root user able to run root owned program without setuid bit set |
Ref. No. |
QNX.000000423 |
Category(ies) |
Development |
Issue |
We have upgraded our system from QNX 4.23A to QNX 4.24 and now non-root users are able to run root owned programs, as root, when the setuid bit is not set.
|
Solution |
This was a bug introduced in version 4.24 which allowed non-root users to run programs which were owned by root, to run as root, without the setuid bit set. This bug is fixed in version 4.25. |
|