Silently ignore setuid changes in relinked binaries
authorafresh1 <afresh1@openbsd.org>
Sun, 9 Jun 2024 18:31:17 +0000 (18:31 +0000)
committerafresh1 <afresh1@openbsd.org>
Sun, 9 Jun 2024 18:31:17 +0000 (18:31 +0000)
commitc5d0954bd6baeddabc855fdc7c3cecbb70a4d570
tree9fbbf3cedeebf5d9cbf724c9fb2550f508ff3be7
parentd1e36bb876d05f046ab81156294e3d94626131e1
Silently ignore setuid changes in relinked binaries

If these files are being relinked at reboot, this causes false positives
and alert fatigue.

Prompted by florian@
Feedback from millert@ and deraadt@
libexec/security/security