Comment 2 for bug 401107

Revision history for this message
Fred (eldmannen+launchpad) wrote :

If that is the only way, then the software is bad, and needs to be fixed or replaced.

I do not want an insecure system and potentially exploitable system because of a setup with badly isolated processes and crappy software that requires superuser privileges.

X.org can be fixed so it wont need to run as root, using kernel mode setting (KMS). OpenBSD is interested in this.
http://www.phoronix.com/scan.php?page=news_item&px=NzM2MA

I don't understand why a network daemon (winbindd from samba) needs root. That is absolutely stupid, and just begging to get hacked.
It cant be much different from a HTTP or FTP server, and running that as root would be stupid.

In dhcp3 there was recently discovered several security vulnerabilities. How convenient that it runs as root.
http://www.debian.org/security/2009/dsa-1833