Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Q/A] "Removing suid on /usr/bin/fusermount3 may seriously harm your system", Action? #253

Open
perpi opened this issue Feb 12, 2025 · 0 comments

Comments

@perpi
Copy link

perpi commented Feb 12, 2025

6.1.13_find_suid_files:

[INFO] Performing audit
[INFO] Checking if there are suid files
[ KO ] Some suid files are present
[ KO ]  /usr/bin/fusermount3 /usr/lib/dbus-1.0/dbus-daemon-launch-helper 
[INFO] Applying Hardening
[INFO] Removing suid on valid binary may seriously harm your system, report only here

How should I deal with this message, do you recommend removing suid? Can I safely ignore it to keep suid on these two detected files?

ChatGPT:

Is This a Security Issue?
No, not necessarily. These files are typically setuid by design, as they require elevated privileges for functionality (e.g., mounting filesystems or managing DBus services). The warning indicates that these files have setuid permissions, but in this case, these are expected and often harmless. However, improper handling of such files could expose the system to risks.


Worth to read: https://unix.stackexchange.com/a/677770/699434

@perpi perpi changed the title "Removing suid on /usr/bin/fusermount3 may seriously harm your system", Action? [Q/A] "Removing suid on /usr/bin/fusermount3 may seriously harm your system", Action? Feb 12, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant