2007-08-12 00:53:15 +03:00
|
|
|
Index: dropbear-0.50/svr-chansession.c
|
2007-06-04 14:25:53 +03:00
|
|
|
===================================================================
|
2007-08-12 00:53:15 +03:00
|
|
|
--- dropbear-0.50.orig/svr-chansession.c 2007-08-10 23:47:48.000000000 +0200
|
|
|
|
+++ dropbear-0.50/svr-chansession.c 2007-08-10 23:47:48.000000000 +0200
|
2007-06-04 14:25:53 +03:00
|
|
|
@@ -908,12 +908,12 @@
|
2005-03-06 05:53:29 +02:00
|
|
|
/* We can only change uid/gid as root ... */
|
|
|
|
if (getuid() == 0) {
|
|
|
|
|
|
|
|
- if ((setgid(ses.authstate.pw->pw_gid) < 0) ||
|
2005-10-20 16:55:42 +03:00
|
|
|
+ if ((ses.authstate.pw->pw_gid != 0) && ((setgid(ses.authstate.pw->pw_gid) < 0) ||
|
2005-03-06 05:53:29 +02:00
|
|
|
(initgroups(ses.authstate.pw->pw_name,
|
2005-10-20 16:55:42 +03:00
|
|
|
- ses.authstate.pw->pw_gid) < 0)) {
|
|
|
|
+ ses.authstate.pw->pw_gid) < 0))) {
|
|
|
|
dropbear_exit("error changing user group");
|
|
|
|
}
|
|
|
|
- if (setuid(ses.authstate.pw->pw_uid) < 0) {
|
|
|
|
+ if ((ses.authstate.pw->pw_uid != 0) && (setuid(ses.authstate.pw->pw_uid) < 0)) {
|
2005-03-06 05:53:29 +02:00
|
|
|
dropbear_exit("error changing user");
|
|
|
|
}
|
|
|
|
} else {
|