Ray Auchterlounie
Tue, 11 Feb 1997

In article <>
Nathan Bryant
>> > > On Fri, 7 Feb 1997 wrote:
>> > > I don't agree. Doom has a known bug which allows any user on your system
>> > > to get root if doom is installed setuid root. Every Linux distribution

>Unfortunately there is no DGA version of Doom. (Doom was released long
>before DGA became available.) It would be nice if X servers other than
>XFree86 supported DGA, too. :(

At least according to a thread on c.o.l.d.s, DGA requires setuid root
as well (or, quake suggests "chmod 666 /dev/mem" - erm...). Also DGA
programs are responsible for dropping permissions themselves (SVGAlib
does it for you).

On that basis I'd say DGA looks worse for security than SVGAlib :-(


