Re: Linux 2.6.17.5

From: Daniel Drake
Date: Sat Jul 15 2006 - 04:20:40 EST


Hi Linus,

Linus Torvalds wrote:
I did a slight modification of the patch I committed initially, in the face of the report from Marcel that the initial sledge-hammer approach broke his hald setup.

See commit 9ee8ab9fbf21e6b87ad227cd46c0a4be41ab749b: "Relax /proc fix a bit", which should still fix the bug (can somebody verify? I'm 100% sure, but still..), but is pretty much guaranteed to not have any secondary side effects.

It still leaves the whole issue of whether /proc should honor chmod AT ALL open, and I'd love to close that one, but from a "minimal fix" standpoint, I think it's a reasonable (and simple) patch.

Marcel, can you check current git?

I can confirm that the new fix prevents the exploit from working, with no immediately visible side effects.

Thanks,
Daniel

-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/