LWN.net Logo

grsecurity 2.1.0 and kernel vulnerabilities

grsecurity 2.1.0 and kernel vulnerabilities

Posted Jan 7, 2005 22:53 UTC (Fri) by barryn (subscriber, #5996)
Parent article: grsecurity 2.1.0 and kernel vulnerabilities

Andrew Morton just posted his response here. Quote:

An unprivileged local user can DoS a Linux box to death with malloc and
memset, so the RLIMIT_MEMLOCK bug isn't particularly exceptional.  All the
others require root anyway.

I'll pass this on to appropriate people, see if we can get this all fixed
up, thanks.


(Log in to post comments)

grsecurity 2.1.0 and kernel vulnerabilities

Posted Jan 7, 2005 23:26 UTC (Fri) by ringlord (subscriber, #6309) [Link]

Don't all this illustrate why having the source available for all can be so good for security? I really am so glad I have based my business on an open system. Sure, it may have security problem but at least they are will be found and fixed!

The alternative is that you have a closed OS where you just have to trust the publisher (you wish! :D).

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds