--- ezmlm-cgi.c.orig Thu Dec 7 13:26:45 2000 +++ ezmlm-cgi.c Thu Dec 7 13:36:30 2000 @@ -805,31 +805,8 @@ if ((flagspecial & SPC_BANNER) && banner && *banner) { oputs("\n"); } oputs("\n\n"); --- ezmlm-cgi.1.orig Thu Dec 7 13:40:43 2000 +++ ezmlm-cgi.1 Thu Dec 7 13:56:44 2000 @@ -234,16 +234,21 @@ to avoid trapping robots in the archive. .SH EXECUTION .B ezmlm-cgi -can operate in three modes, -.IR SUID\ root , -.IR SUID\ user , +can operate in two modes, +.I SUID\ root and .IR normal . +.B ezmlm-cgi +should not be installed SUID +.I user +other than root. +Please see the +.B SECURITY +section before installing SUID +.IR root . In .I normal -and -.I SUID user mode, .B ezmlm-cgi will read the configuration file @@ -255,9 +260,7 @@ .B ezmlm-cgi is in), then change directory to the list directory. ``uid'' is ignored. -.I SUID user -may be required to read the particular archive if it is not owned by the -httpd user. For user installations or systems where +For user installations or systems where the httpd user has access to all the lists, .I normal mode usually gives sufficient access. @@ -277,22 +280,10 @@ directory is not, it is safest to leave ``uid'' blank. The httpd user will still be able to read the files. .SH "EXECUTION OF BANNER PROGRAMS" -A banner program can be specified in the config file. It is executed -immediately before the end of the text. The formatting for -``'' is active and the banner program output is encapsulated in -a ``