Re: Question about /dev/mem and /dev/kmem

From: Wichert Akkerman
Date: Mon Nov 29 2004 - 07:53:16 EST


Previously Jim Nelson wrote:
> Isn't that /proc/sys/kernel/cap-bound?

yes, it is.

> And what stops an attacker who's already gained root from doing a "cat "0"
> > /proc/sys/kernel/cap-bound" ?

The fact that you are not allowed to change the cap-bound settings with
that specific bitmask.

Wichert.

--
Wichert Akkerman <wichert@xxxxxxxxx> It is simple to make things.
http://www.wiggy.net/ It is hard to make things simple.
-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/