noexec on /dev/shm

Bernie Innocenti bernie at codewiz.org
Wed Jan 5 00:31:12 UTC 2011


On Wed, 2011-01-05 at 00:59 +0100, Lennart Poettering wrote:
> Well, OK, bad wording on my side. Replace "fixed" by "guessable".

What sort of attack would this enable?

Wait... any unprivileged process can create sockets in the abstract
namespace? Uh-oh.

-- 
   // Bernie Innocenti - http://codewiz.org/
 \X/  Sugar Labs       - http://sugarlabs.org/



More information about the devel mailing list