Next privilege escalation policy draft

Björn Persson bjorn at xn--rombobjrn-67a.se
Fri Feb 5 01:02:26 UTC 2010


Adam Jackson wrote:
> - "Read or write directly to or from system memory" is, technically,
> something every process does.  "Device or kernel memory" might be closer
> to the spirit of the law?

That wouldn't cover other users' processes. How about "memory that is not 
allocated to the users' own processes"?

Björn Persson
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 190 bytes
Desc: This is a digitally signed message part.
Url : http://lists.fedoraproject.org/pipermail/devel/attachments/20100205/4cb7f014/attachment.bin 


More information about the devel mailing list