Complexity
Complexity
Posted Mar 21, 2013 5:33 UTC (Thu) by dgc (subscriber, #6611)In reply to: Complexity by smurf
Parent article: Anatomy of a user namespaces vulnerability
Yup, consider that there are some filesystem APIs that allow root to have r/w access to all inodes and their attributes in a filesystem because they bypass the filesystem namespace altogether...
-Dave.
