In vivid this is mitigated because the systemd unit doesn't enable suid_dumpable. This was an erroneous omission. However, we should still either fix the bug there or disable it in the upstart job, as I figure a lot of users are still running under upstart.
In vivid this is mitigated because the systemd unit doesn't enable suid_dumpable. This was an erroneous omission. However, we should still either fix the bug there or disable it in the upstart job, as I figure a lot of users are still running under upstart.