logoalt Hacker News

aaronmdjonestoday at 12:57 AM0 repliesview on HN

You don't need any setuid binaries. You could just as easily use the vulnerability to add a job to crontab(5) that causes the cron daemon to run whatever you want as root.