Re: hard links create local DoS vulnerability and security problems

From: Chris Wright
Date: Mon Nov 24 2003 - 13:54:39 EST


* Michael Buesch (mbuesch@xxxxxxxxxx) wrote:
> What about _not_ modifying the mainstream-kernel behaviour,
> but adding an option, to make users unable to create such hard-links,
> to selinux and/or grsec?

It's already in grsec and owl. SELinux has the ability to control this
behaviour, just requires the right policy.

thanks,
-chris
--
Linux Security Modules http://lsm.immunix.org http://lsm.bkbits.net
-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/