Return-Path: Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S261191AbVAMHzy (ORCPT ); Thu, 13 Jan 2005 02:55:54 -0500 Received: (majordomo@vger.kernel.org) by vger.kernel.org id S261192AbVAMHzy (ORCPT ); Thu, 13 Jan 2005 02:55:54 -0500 Received: from willy.net1.nerim.net ([62.212.114.60]:49935 "EHLO willy.net1.nerim.net") by vger.kernel.org with ESMTP id S261191AbVAMHzt (ORCPT ); Thu, 13 Jan 2005 02:55:49 -0500 Date: Thu, 13 Jan 2005 08:42:34 +0100 From: Willy Tarreau To: Matt Mackall Cc: Linus Torvalds , Dave Jones , Andrew Morton , marcelo.tosatti@cyclades.com, Greg KH , chrisw@osdl.org, Alan Cox , Kernel Mailing List Subject: Re: thoughts on kernel security issues Message-ID: <20050113074234.GJ7048@alpha.home.local> References: <20050112185133.GA10687@kroah.com> <20050112161227.GF32024@logos.cnet> <20050112205350.GM24518@redhat.com> <20050112182838.2aa7eec2.akpm@osdl.org> <20050113033542.GC1212@redhat.com> <20050113072851.GN2995@waste.org> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <20050113072851.GN2995@waste.org> User-Agent: Mutt/1.4i Sender: linux-kernel-owner@vger.kernel.org X-Mailing-List: linux-kernel@vger.kernel.org Content-Length: 1120 Lines: 29 On Wed, Jan 12, 2005 at 11:28:51PM -0800, Matt Mackall wrote: > On Wed, Jan 12, 2005 at 08:48:57PM -0800, Linus Torvalds wrote: > > > > > > On Wed, 12 Jan 2005, Dave Jones wrote: > > > > > > For us thankfully, exec-shield has trapped quite a few remotely > > > exploitable holes, preventing the above. > > > > One thing worth considering, but may be abit _too_ draconian, is a > > capability that says "can execute ELF binaries that you can write to". > > > > Without that capability set, you can only execute binaries that you cannot > > write to, and that you cannot _get_ write permission to (ie you can't be > > the owner of them either - possibly only binaries where the owner is > > root). > > We can do that now with a combination of read-only and no-exec mounts. That's why some hardened distros ship with everything R/O (except var) and /var non-exec. Willy - To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to majordomo@vger.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html Please read the FAQ at http://www.tux.org/lkml/