Re: [kernel-hardening] [PATCH] Yama: add additional ptrace scopes

From: James Morris
Date: Wed Apr 18 2012 - 23:40:42 EST


On Mon, 16 Apr 2012, Kees Cook wrote:

> This expands the available Yama ptrace restrictions to include two more
> modes. Mode 2 requires CAP_SYS_PTRACE for PTRACE_ATTACH, and mode 3
> completely disables PTRACE_ATTACH (and locks the sysctl).
>
> Signed-off-by: Kees Cook <keescook@xxxxxxxxxxxx>

Applied to
git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security.git next


--
James Morris
<jmorris@xxxxxxxxx>
--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/