https://bugzilla.novell.com/show_bug.cgi?id=295341
User zeuthen@gmail.com added comment
https://bugzilla.novell.com/show_bug.cgi?id=295341#c68
David Zeuthen
The policykit source code documentation for polkit_sysdeps_get_exe_for_pid() clearly states that containts based on the calling program's name cannot be relied upon as firstly they can be easily circumvented by the user himself and secondly don't work for interpreted languages.
It does however work for secure programs. (In reply to comment #66)
The authorization scheme seems to be broken by design, it would not help adding a suid bit.
I'm not sure what to make of this comment. -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.