Openwall GNU/*/Linux - a small security-enhanced Linux distro for servers
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Date: Sun, 08 Jan 2017 18:52:40 +0100
From: Martin Carpenter <martin.carpenter@...il.com>
To: oss-security@...ts.openwall.com
Subject: Re: Re: Firejail local root exploit

On Sun, 2017-01-08 at 10:23 -0500, Brad Spengler wrote:
> You're missing an important part here: checking to see whether your binary is running
> with privilege in the first place. 

Aha. Good. The more I thought it over the more awful it seemed, so
that's a relief. Thanks!


> Nothing to see here, but thanks for scaring everyone on a Sunday morning.

Heh, my pleasure :) An epiphany on Epiphany, ha.



Powered by blists - more mailing lists

Your e-mail address:

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Powered by Openwall GNU/*/Linux - Powered by OpenVZ