Re: [PATCH] disallow modular capabilities

From: Christoph Hellwig
Date: Sun Jan 02 2005 - 15:34:20 EST


On Sun, Jan 02, 2005 at 09:28:00PM +0100, Andi Kleen wrote:
> Christoph Hellwig <hch@xxxxxx> writes:
>
> > There's been a bugtraq report about a root exploit with modular
> > capabilities LSM support out for more than a week.
>
> It was a root exploit only triggerable by root. Not exactly
> what I would call a real problem.

At least Debian currently inserts the capabilities module on boot.

-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/