Posted Nov 26, 2004 3:35 UTC (Fri) by spender
Parent article: Civilizing SELinux
"A vulnerability which, on a current Linux system, could lead to a full system compromise is limited to a denial of service problem, or, at worst, the provision of bogus DNS information."
Wow, talk about optimism. Did I miss something, or did the SELinux folks solve the entire problem of kernel exploits?
I'm sure all the stupid administrators using SELinux will have perfect policies as well.
to post comments)