Comment Re:Note that this is a local exploit (Score 1) 82
Everyone might as well be root, if one with bad intentions gets access to a system, well they should be assumed to just be root anyways?
That's how AWS does it.
I used to run a data ingest system where we gave limited shell accounts to somewhere around 1,000 clients, plenty of similar but much larger systems are out there. No one *at my company* had messed up in any way if one of those accounts went rogue.
If they have hacking skills, the "limited shell access" wouldn't be limited long. Giving someone local access is insecure.