Re: Non-root chroot

From: Daniel O'Connor <darius_at_dons.net.au>
Date: Mon, 04 Aug 2025 04:41:27 UTC

> On 3 Aug 2025, at 18:39, Dmitry Mikushin <dmitry@kernelgen.org> wrote:
> Important point is that the user is not obliged to hand in any particular "su" program. The user may hand in any "su"-like code suitable for escaping the chroot.

You can’t create a setuid binary owned by root without being root so it doesn’t matter.

--
Daniel O'Connor
"The nice thing about standards is that there
are so many of them to choose from."
-- Andrew Tanenbaum