Re: Heads up on local root escalation

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]



On 12 May 2014 22:15, "Keith Keller" <kkeller@xxxxxxxxxxxxxxxxxxxxxxxxxx>
wrote:
> Actually, I was wondering about mitigation along the lines of
> blacklisting a module, tuning a sysctl parameter, or some other
> mitigation that wouldn't require a new kernel.  Perhaps such mitigation
> isn't even possible with this issue.
>

Yeah I've not seen any mitigations that would work for CentOS.

I wonder if a systemtap module would be feasible like that one a few months
or so ago.

For the time being I guess that doubly vigilant is important.
_______________________________________________
CentOS mailing list
CentOS@xxxxxxxxxx
http://lists.centos.org/mailman/listinfo/centos




[Index of Archives]     [CentOS]     [CentOS Announce]     [CentOS Development]     [CentOS ARM Devel]     [CentOS Docs]     [CentOS Virtualization]     [Carrier Grade Linux]     [Linux Media]     [Asterisk]     [DCCP]     [Netdev]     [Xorg]     [Linux USB]
  Powered by Linux