Hacker News new | ask | show | jobs
by usr1106 737 days ago
You mean non-root local user? We don't have non-trusted users on the system.

Well, unless the http server or our dns resolver has a remote code execution vulnerability.

So directly I don't see the risk you describe. Of course considering maximum defense in depth you might have point.