Re: devpts multiple instances feedback

From: Christoph Hellwig
Date: Sun Feb 01 2009 - 11:30:25 EST


On Mon, Jan 26, 2009 at 09:58:53PM +0000, Alan Cox wrote:
> > > That was also one of the reasons for the default 000 mode on the pts/ptmx
> > > device node
> >
> > So just make it 000 but always created it.
>
> That still allows it to be subverted with some security rulesets -
> remember root can open a 000 file by default.

root can also mknod device nodes by default.
--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/