Defending mounted filesystems from the root user
Defending mounted filesystems from the root user
Posted Aug 23, 2023 17:13 UTC (Wed) by leromarinvit (subscriber, #56850)In reply to: Defending mounted filesystems from the root user by mathstuf
Parent article: Defending mounted filesystems from the root user
I also should probably have qualified the "never crash" with "in a way that potentially allows privilege escalation". If removable media were by default mounted using something like lklfuse, that would IMHO be a big step in the right direction. But I think this should be mainlined, or decoupled from the actual driver code so much that it can use arbitrary kernel images or modules. Using different versions of the same fs driver (with a different set of features and bugs), potentially interchangeably on the same device, sounds like a recipe for compatibility issues.
