Re: Security Hole?

Andrew Mileski (dmtech@magi.com)
Mon, 4 Mar 1996 10:37:39 -0500 (EST)


>>I've noticed that the linux kernel allows anyone to freely
>>request/release IRQ, DMA, and I/O. Is this a security
>>hole, or am I missing something that only allows root to
>>do these things?
>
>No. You can only call it from within kernel code, and you can only
>install new kernel code if you have root access.
>
>>Or should the status quo be maintained?
>
>Yes. Any sane kernel code is going to do a suser() check if it's going
>to be letting tainted data affect what's accessable.

Okay. Thanks for the info.

-- Andrew E. Mileski --

-------------------------------------------------------
Located in Canada's Capital: Ottawa! (EST)
mailto:dmtech@magi.com http://www.magi.com/~dmtech/