Re: [PATCH 6/7] Add /sys/kernel/notes

From: Linus Torvalds
Date: Wed Jul 11 2007 - 17:46:20 EST




On Wed, 11 Jul 2007, Roland McGrath wrote:
>
> It hadn't really occurred to me that the kernel binary would be
> deliberately hidden from the user.

We don't want to have things like config info, or really preferably
anything that can be used to generate kernel addresses.

Yeah, we've made that mistake before, and I'm not saying we are perfect
here, but if we make this world-readable, I think it needs to guarantee it
doesn't really give any rootkit people any new information.

And yes, I do think normal people shouldn't be able to read the vmlinuz
binary, the same way they are generally not allowed to read /etc/grub.conf
etc.

Linus
-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/