Re: [PATCH 25/27] Lock down /proc/kcore
From: David Howells
Date: Mon Oct 23 2017 - 10:57:05 EST
James Morris <james.l.morris@xxxxxxxxxx> wrote:
> I have to wonder, though, after everything is locked down, how easy will
> it be for new things to slip in which need to be included in the lockdown,
> but are not.
That's always a possibility, and short of reviewing every change, particularly
in the drivers, I'm not sure how to prevent it.
David