Comment 3 for bug 1411671

Revision history for this message
Jamie Strandboge (jdstrand) wrote : Re: /apps/bin should be added to sudoer's sercure_path

I guess the implementation would be to add /apps/bin to the end of the secure_path so that apps can't override system binaries. The problem is that apps are not trusted (though they are confined) so adding them automatically to the secure_path needs thought. Can someone from the security team comment on this?