Practical techniques to obviate setuid-to-root binaries
Bhushan Jain, Chia-Che Tsai, Jitin John, Donald E. Porter · 2014
Trusted, setuid-to-root binaries have been a substantial, long-lived source of privilege escalation vulnerabilities on Unix systems. Prior work on limiting privilege escalation has only considered privilege from the perspective of the administrator, neglecting the perspective of regular users---the primary reason for having setuid-to-root binaries.